Exit demo 312-49V9 EC-Council Certified Computer Hacking Forensic Investigator (V9) PDF format · free preview

EC-COUNCIL 312-49V9 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/312-49v9.html

Question 1
Single choice

What is the first step that needs to be carried out to investigate wireless attacks?

A.

Obtain a search warrant

B.

Identify wireless devices at crime scene

C.

Document the scene and maintain a chain of custody

D.

Detect the wireless connections

Question 2
Single choice

During the seizure of digital evidence, the suspect can be allowed touch the computer system.

A.

True

B.

False

Question 3
Single choice

Which one of the following statements is not correct while preparing for testimony?

A.

Go through the documentation thoroughly

B.

Do not determine the basic facts of the case before beginning and examining the evidence

C.

Establish early communication with the attorney

D.

Substantiate the findings with documentation and by collaborating with other computer forensics professionals

Question 4
Single choice

Wireless network discovery tools use two different methodologies to detect, monitor and log a WLAN device (i.e. active scanning and passive scanning). Active scanning methodology involves
____________and waiting for responses from available wireless networks.

A.

Broadcasting a probe request frame

B.

Sniffing the packets from the airwave

C.

Scanning the network

D.

Inspecting WLAN and surrounding networks

Question 5
Single choice

Which root folder (hive) of registry editor contains a vast array of configuration information for the system, including hardware settings and software settings?

A.

HKEY_USERS

B.

HKEY_CURRENT_USER

C.

HKEY_LOCAL_MACHINE

D.

HKEY-CURRENT_CONFIG

Question 6
Single choice

Computer security logs contain information about the events occurring within an organization's systems and networks. Application and Web server log files are useful in detecting web attacks. The source, nature, and time of the attack can be determined by _________of the compromised system.

A.

Analyzing log files

B.

Analyzing SAM file

C.

Analyzing rainbow tables

D.

Analyzing hard disk boot records

Question 7
Single choice

Router log files provide detailed Information about the network traffic on the Internet. It gives information about the attacks to and from the networks. The router stores log files in the____________.

A.

Router cache

B.

Application logs

C.

IDS logs

D.

Audit logs

Question 8
Single choice

System software password cracking is defined as cracking the operating system and all other utilities that enable a computer to function

A.

True

B.

False

Question 9
Single choice

What is a bit-stream copy?

A.

Bit-Stream Copy is a bit-by-bit copy of the original storage medium and exact copy of the original disk

B.

A bit-stream image is the file that contains the NTFS files and folders of all the data on a disk or partition

C.

A bit-stream image is the file that contains the FAT32 files and folders of all the data on a disk or partition

D.

Creating a bit-stream image transfers only non-deleted files from the original disk to the image disk

Question 10
Single choice

Wi-Fi Protected Access (WPA) is a data encryption method for WLANs based on 802.11 standards.
Temporal Key Integrity Protocol (TKIP) enhances WEP by adding a rekeying mechanism to provide fresh encryption and integrity keys. Temporal keys are changed for every____________.

A.

5,000 packets

B.

10.000 packets

C.

15,000 packets

D.

20.000 packets

Showing 10 of 486 questions · Unlock the full set