EC-Council 312-49v9 ECCouncil Computer Hacking Forensic Investigator (V9) Online Training
EC-Council 312-49v9 Online Training
The questions for 312-49v9 were last updated at Oct 29,2024.
- Exam Code: 312-49v9
- Exam Name: ECCouncil Computer Hacking Forensic Investigator (V9)
- Certification Provider: EC-Council
- Latest update: Oct 29,2024
It takes _____________ mismanaged case/s to ruin your professional reputation as a computer forensics examiner?
- A . by law, three
- B . quite a few
- C . only one
- D . at least two
In a forensic examination of hard drives for digital evidence, what type of user is most likely to have the most file slack to analyze?
- A . one who has NTFS 4 or 5 partitions
- B . one who uses dynamic swap file capability
- C . one who uses hard disk writes on IRQ 13 and 21
- D . one who has lots of allocation units per block or cluster
What type of attack occurs when an attacker can force a router to stop forwarding packets by flooding the router with many open connections simultaneously so that all the hosts behind the router are effectively disabled?
- A . digital attack
- B . denial of service
- C . physical attack
- D . ARP redirect
Jonathan is a network administrator who is currently testing the internal security of his network. He is attempting to hijack a session, using Ettercap, of a user connected to his Web server .
Why will Jonathan not succeed?
- A . Only an HTTPS session can be hijacked
- B . HTTP protocol does not maintain session
- C . Only FTP traffic can be hijacked
- D . Only DNS traffic can be hijacked
How many sectors will a 125 KB file use in a FAT32 file system?
- A . 32
- B . 16
- C . 256
- D . 25
You are running through a series of tests on your network to check for any security vulnerabilities.
After normal working hours, you initiate a DoS attack against your external firewall. The firewall Quickly freezes up and becomes unusable. You then initiate an FTP connection from an external IP into your internal network.
The connection is successful even though you have FTP blocked at the external firewall .
What has happened?
- A . The firewall failed-bypass
- B . The firewall failed-closed
- C . The firewall ACL has been purged
- D . The firewall failed-open
How many bits is Source Port Number in TCP Header packet?
- A . 16
- B . 32
- C . 48
- D . 64
You are employed directly by an attorney to help investigate an alleged sexual harassment case at a large pharmaceutical manufacture. While at the corporate office of the company, the CEO demands to know the status of the investigation .
What prevents you from discussing the case with the CEO?
- A . the attorney-work-product rule
- B . Good manners
- C . Trade secrets
- D . ISO 17799
What binary coding is used most often for e-mail purposes?
- A . MIME
- B . Uuencode
- C . IMAP
- D . SMTP
Printing under a Windows Computer normally requires which one of the following files types to be created?
- A . EME
- B . MEM
- C . EMF
- D . CME