312-49V8 Exam Questions
180 real 312-49V8 exam questions with expert-verified answers and explanations. Page 4 of 4.
- Question #151
Wireless network discovery tools use two different methodologies to detect, monitor and log a WLAN device (i.e. active scanning and passive scanning). Active scanning methodology i...
- Question #152
Damaged portions of a disk on which no read/Write operation can be performed is known as ______________.
- Question #153
BMP (Bitmap) is a standard file format for computers running the Windows operating system. BMP images can range from black and white (1 bit per pixel) up to 24 bit color (16.7 mill...
- Question #154
What is the First Step required in preparing a computer for forensics investigation?
- Question #155
Network forensics can be defined as the sniffing, recording, acquisition and analysis of the network traffic and event logs in order to investigate a network security incident.
- Question #156
Which of the following commands shows you the names of all open shared files on a server and number of file locks on each file?
- Question #157
The Recycle Bin exists as a metaphor for throwing files away, but it also allows user to retrieve and restore files. Once the file is moved to the recycle bin, a record is added to...
- Question #158
Email archiving is a systematic approach to save and protect the data contained in emails so that it can be accessed fast at a later date. There are two main archive types, namely...
- Question #159
Which of the following email headers specifies an address for mailer-generated errors, like "no such user" bounce messages, to go to (instead of the sender's address)?
- Question #160
Which of the following commands shows you all of the network services running on Windows- based servers?
- Question #161
Email archiving is a systematic approach to save and protect the data contained in emails so that it can tie easily accessed at a later date.
- Question #162
Which of the following commands shows you the NetBIOS name table each?
- Question #163
Windows Security Accounts Manager (SAM) is a registry file which stores passwords in a hashed format. SAM file in Windows is located at:
- Question #164
FAT32 is a 32-bit version of FAT file system using smaller clusters and results in efficient storage capacity. What is the maximum drive size supported?
- Question #165
In which step of the computer forensics investigation methodology would you run MD5 checksum on the evidence?
- Question #166
Network forensics allows Investigators 10 inspect network traffic and logs to identify and locate the attack system Network forensics can reveal: (Select three answers)
- Question #167
Determine the message length from following hex viewer record:
- Question #168
TCP/IP (Transmission Control Protocol/Internet Protocol) is a communication protocol used to connect different hosts in the Internet. It contains four layers, namely the network in...
- Question #169
WPA2 provides enterprise and Wi-Fi users with stronger data protection and network access control which of the following encryption algorithm is used DVWPA2?
- Question #170
The disk in the disk drive rotates at high speed, and heads in the disk drive are used only to read data.
- Question #171
What is a bit-stream copy?
- Question #172
System software password cracking is defined as cracking the operating system and all other utilities that enable a computer to function
- Question #173
Which of the following Steganography techniques allows you to encode information that ensures creation of cover for secret communication?
- Question #174
Ron. a computer forensics expert, Is Investigating a case involving corporate espionage. He has recovered several mobile computing devices from the crime scene. One of the evidence...
- Question #175
Who is responsible for the following tasks? - Secure the scene and ensure that it is maintained In a secure state until the Forensic Team advises - Make notes about the scene that...
- Question #176
A system with a simple logging mechanism has not been given much attention during development, this system is now being targeted by attackers, if the attacker wants to perform a ne...
- Question #177
During the seizure of digital evidence, the suspect can be allowed touch the computer system.
- Question #178
Which of the following password cracking techniques works like a dictionary attack, but adds some numbers and symbols to the words from the dictionary and tries to crack the passwo...
- Question #179
Consistency in the investigative report is more important than the exact format in the report to eliminate uncertainty and confusion.
- Question #180
When dealing with the powered-off computers at the crime scene, if the computer is switched off, turn it on