312-49V9 Exam Questions
696 real 312-49V9 exam questions with expert-verified answers and explanations. Page 8 of 14.
- Question #351
You are running known exploits against your network to test for possible vulnerabilities. To test the strength of your virus software, you load a test network to mimic your product...
- Question #352
You are working on a thesis for your doctorate degree in Computer Science. Your thesis is based on HTML, DHTML, and other web-based languages and how they have evolved over the yea...
- Question #353
From the following spam mail header, identify the host IP that sent this spam? From [email protected] [email protected] Tue Nov 27 17:27:11 2001 Received: from viruswall.ie.c...
- Question #354
While presenting his case to the court, Simon calls many witnesses to the stand to testify. Simon decides to call Hillary Taft, a lay witness, to the stand. Since Hillary is a lay...
- Question #355
With the standard Linux second extended file system (Ext2fs), a file is deleted when the inode internal link count reaches ______
- Question #356
What does ICMP Type 3/Code 13 mean?
- Question #357
Under which Federal Statutes does FBI investigate for computer crimes involving e- mail scams and mail fraud?
- Question #358
Click on the Exhibit Button To test your website for vulnerabilities, you type in a Quotation mark (? for the username field. After you click Ok, you receive the following error me...
- Question #359
This organization maintains a database of hash signatures for known software
- Question #360
Paul's company is in the process of undergoing a complete security audit including logical and physical security testing. After all logical tests were performed; it is now time for...
- Question #361
Your company uses Cisco routers exclusively throughout the network. After securing the routers to the best of your knowledge, an outside security firm is brought in to assess the n...
- Question #362
To calculate the number of bytes on a disk, the formula is: CHS**
- Question #363
You setup SNMP in multiple offices of your company. Your SNMP software manager is not receiving data from other offices like it is for your main office. You suspect that firewall c...
- Question #364
You work as a penetration tester for Hammond Security Consultants. You are currently working on a contract for the state government of California. Your next step is to initiate a D...
- Question #365
Bill is the accounting manager for Grummon and Sons LLC in Chicago. On a regular basis, he needs to send PDF documents containing sensitive information through E-mail to his custom...
- Question #366
Madison is on trial for allegedly breaking into her university internal network. The police raided her dorm room and seized all of her computerMadison is on trial for allegedly bre...
- Question #367
What file structure database would you expect to find on floppy disks?
- Question #368
You have completed a forensic investigation case. You would like to destroy the data contained in various disks at the forensics lab due to sensitivity of the case. How would you p...
- Question #369
Before performing a logical or physical search of a drive in Encase, what must be added to the program?
- Question #370
You are working as Computer Forensics investigator and are called by the owner of an accounting firm to investigate possible computer abuse by one of the firm's employees. You meet...
- Question #371
Using Linux to carry out a forensics investigation, what would the following command accomplish? dd if=/usr/home/partition.image of=/dev/sdb2 bs=4096 conv=notrunc,noerror
- Question #372
While looking through the IIS log file of a web server, you find the following entries: What is evident from this log file?
- Question #373
When investigating a Windows System, it is important to view the contents of the page or swap file because:
- Question #374
You are assigned to work in the computer forensics lab of a state police agency. While working on a high profile criminal case, you have followed every applicable procedure, howeve...
- Question #375
Jason has set up a honeypot environment by creating a DMZ that has no physical or logical access to his production network. In this honeypot, he has placed a server running Windows...
- Question #376
Why is it a good idea to perform a penetration test from the inside?
- Question #377
What is a good security method to prevent unauthorized users from "tailgating"?
- Question #378
What are the security risks of running a "repair" installation for Windows XP?
- Question #379
You are running through a series of tests on your network to check for any security vulnerabilities. After normal working hours, you initiate a DoS attack against your external fir...
- Question #380
When an investigator contacts by telephone the domain administrator or controller listed by a whois lookup to request all e-mails sent and received for a user account be preserved,...
- Question #381
Which of the following filesystem is used by Mac OS X?
- Question #382
What will the following command accomplish? C:\> nmap -v -sS -Po 172.16.28.251 - data_length 66000 - packet_trace
- Question #383
When reviewing web logs, you see an entry for resource not found in the HTTP status code filed. What is the actual error code that you would see in the log for resource not found?
- Question #384
When a router receives an update for its routing table, what is the metric value change to that path?
- Question #386
What is considered a grant of a property right given to an individual who discovers or invents a new machine, process, useful composition of matter or manufacture?
- Question #387
Jessica works as systems administrator for a large electronics firm. She wants to scan her network quickly to detect live hosts by using ICMP ECHO Requests. What type of scan is Je...
- Question #388
You have used a newly released forensic investigation tool, which doesn't meet the Daubert Test, during a case. The case has ended-up in court. What argument could the defense make...
- Question #389
In handling computer-related incidents, which IT role should be responsible for recovery, containment, and prevention to constituents?
- Question #390
When obtaining a warrant it is important to:
- Question #391
A packet is sent to a router that does not have the packet destination address in its route table, how will the packet get to its properA packet is sent to a router that does not h...
- Question #392
An employee is suspected of stealing proprietary information belonging to your company that he had no rights to possess. The information was stored on the employee computer that wa...
- Question #393
Jones had been trying to penetrate a remote production system for the past two weeks. This time however, he is able to get into the system. He was able to use the system for a peri...
- Question #394
What TCP/UDP port does the toolkit program netstat use?
- Question #395
John is using Firewalk to test the security of his Cisco PIX firewall. He is also utilizing a sniffer located on a subnet that resides deep inside his network. After analyzing the...
- Question #396
After passing her CEH exam, Carol wants to ensure that her network is completely secure. She implements a DMZ, statefull firewall, NAT, IPSEC, and a packet filtering firewall. Sinc...
- Question #397
When you carve an image, recovering the image depends on which of the following skills?
- Question #398
When investigating a potential e-mail crime, what is your first step in the investigation?
- Question #399
When cataloging digital evidence, the primary goal is to
- Question #400
What should you do when approached by a reporter about a case that you are working on or have worked on?
- Question #401
What is the name of the standard Linux command that can be used to create bit-stream images?