Spring Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

312-49 Computer Hacking Forensic Investigator is now Stable and With Pass Result | Test Your Knowledge for Free

312-49 Practice Questions

Computer Hacking Forensic Investigator

Last Update 4 days ago
Total Questions : 531

Dive into our fully updated and stable 312-49 practice test platform, featuring all the latest exam questions added this week. Our preparation tool is more than just a ECCouncil study aid; it's a strategic advantage.

Our free practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about 312-49. Use this test to pinpoint which areas you need to focus your study on.

312-49 PDF

312-49 PDF (Printable)
$43.75
$124.99

312-49 Testing Engine

312-49 PDF (Printable)
$50.75
$144.99

312-49 PDF + Testing Engine

312-49 PDF (Printable)
$63.7
$181.99
Question # 61

Which of the following Event Correlation Approach checks and compares all the fields systematically and intentionally for positive and negative correlation with each other to determine the correlation across one or multiple fields?

Options:

A.  

Rule-Based Approach

B.  

Automated Field Correlation

C.  

Field-Based Approach

D.  

Graph-Based Approach

Discussion 0
Question # 62

An International Mobile Equipment Identifier (IMEI) is a 15-digit number that indicates the manufacturer, model type, and country of approval for GSM devices. The first eight digits of an IMEI number that provide information about the model and origin of the mobile device is also known as:

Options:

A.  

Type Allocation Code (TAC)

B.  

Integrated Circuit Code (ICC)

C.  

Manufacturer Identification Code (MIC)

D.  

Device Origin Code (DOC)

Discussion 0
Question # 63

Which password cracking technique uses every possible combination of character sets?

Options:

A.  

Rainbow table attack

B.  

Brute force attack

C.  

Rule-based attack

D.  

Dictionary attack

Discussion 0
Question # 64

In a FAT32 system, a 123 KB file will use how many sectors?

Options:

A.  

34

B.  

25

C.  

11

D.  

56

Discussion 0
Question # 65

What does the acronym POST mean as it relates to a PC?

Options:

A.  

Primary Operations Short Test

B.  

PowerOn Self Test

C.  

Pre Operational Situation Test

D.  

Primary Operating System Test

Discussion 0
Question # 66

When investigating a computer forensics case where Microsoft Exchange and Blackberry Enterprise server are used, where would investigator need to search to find email sent from a Blackberry device?

Options:

A.  

RIM Messaging center

B.  

Blackberry Enterprise server

C.  

Microsoft Exchange server

D.  

Blackberry desktop redirector

Discussion 0
Question # 67

Which of the following is a MAC-based File Recovery Tool?

Options:

A.  

VirtualLab

B.  

GetDataBack

C.  

Cisdem DataRecovery 3

D.  

Smart Undeleter

Discussion 0
Question # 68

Which rule requires an original recording to be provided to prove the content of a recording?

Options:

A.  

1004

B.  

1002

C.  

1003

D.  

1005

Discussion 0
Question # 69

Your company's network just finished going through a SAS 70 audit. This audit reported that overall, your network is secure, but there are some areas that needs improvement. The major area was SNMP security. The audit company recommended turning off SNMP, but that is not an option since you have so many remote nodes to keep track of. What step could you take to help secure SNMP on your network?

Options:

A.  

Block all internal MAC address from using SNMP

B.  

Block access to UDP port 171

C.  

Block access to TCP port 171

D.  

Change the default community string names

Discussion 0
Question # 70

An investigator is searching through the firewall logs of a company and notices ICMP packets that are larger than 65,536 bytes. What type of activity is the investigator seeing?

Options:

A.  

Smurf

B.  

Ping of death

C.  

Fraggle

D.  

Nmap scan

Discussion 0
Get 312-49 dumps and pass your exam in 24 hours!

Free Exams Sample Questions