[Aug 25, 2023] New EC-COUNCIL 312-49v10 Dumps with Test Engine and PDF (New Questions)
Pass Your 312-49v10 Exam Easily - Real 312-49v10 Practice Dump Updated
NEW QUESTION # 91
What is the slave device connected to the secondary IDE controller on a Linux OS referred to?
- A. hda
- B. hdc
- C. hdb
- D. hdd
Answer: D
NEW QUESTION # 92
Your company uses Cisco routers exclusively throughout the network. After securing the routers to the best of your knowledge, an outside security firm is brought in to assess the network security.
Although they found very few issues, they were able to enumerate the model, OS version, and capabilities for all your Cisco routers with very little effort. Which feature will you disable to eliminate the ability to enumerate this information on your Cisco routers?
- A. Cisco Discovery Protocol
- B. Border Gateway Protocol
- C. Simple Network Management Protocol
- D. Broadcast System Protocol
Answer: A
NEW QUESTION # 93
Jacky encrypts her documents using a password. It is known that she uses her daughter's year of birth as part of the password. Which password cracking technique would be optimal to crack her password?
- A. Rule-based attack
- B. Syllable attack
- C. Hybrid attack
- D. Brute force attack
Answer: A
NEW QUESTION # 94
SO/IEC 17025 is an accreditation for which of the following:
- A. Encryption
- B. Chain of custody
- C. Forensics lab licensing
- D. CHFI issuing agency
Answer: C
NEW QUESTION # 95
In a forensic examination of hard drives for digital evidence, what type of user is most likely to have the most file slack to analyze?
- A. one who has NTFS 4 or 5 partitions
- B. one who uses hard disk writes on IRQ 13 and 21
- C. one who uses dynamic swap file capability
- D. one who has lots of allocation units per block or cluster
Answer: D
NEW QUESTION # 96
Consider a scenario where the perpetrator of a dark web crime has unlnstalled Tor browser from their computer after committing the crime. The computer has been seized by law enforcement so they can Investigate It for artifacts of Tor browser usage. Which of the following should the Investigators examine to establish the use of Tor browser on the suspect machine?
- A. Files in Recycle Bin
- B. Security logs
- C. Swap files
- D. Prefetch files
Answer: D
NEW QUESTION # 97
When investigating a Windows System, it is important to view the contents of the page or swap file because:
- A. Windows stores all of the systems configuration information in this file
- B. This is the file that windows use to store the history of the last 100 commands that were run from the command line
- C. This is file that windows use to communicate directly with Registry
- D. A Large volume of data can exist within the swap file of which the computer user has no knowledge
Answer: D
NEW QUESTION # 98
A file requires 10 KB space to be saved on a hard disk partition. An entire cluster of 32 KB has been allocated for this file. The remaining, unused space of 22 KB on this cluster will be Identified as______.
- A. Swap space
- B. Slack space
- C. Cluster space
- D. Sector space
Answer: B
NEW QUESTION # 99
The process of restarting a computer that is already turned on through the operating system is called?
- A. Warm boot
- B. Ice boot
- C. Hot Boot
- D. Cold boot
Answer: A
NEW QUESTION # 100
Which list contains the most recent actions performed by a Windows User?
- A. MRU
- B. Activity
- C. Recents
- D. Windows Error Log
Answer: A
NEW QUESTION # 101
After attending a CEH security seminar, you make a list of changes you would like to perform on your network to increase its security. One of the first things you change is to switch the RestrictAnonymous setting from 0 to 1 on your servers. This, as you were told, would prevent anonymous users from establishing a null session on the server. Using Userinfo tool mentioned at the seminar, you succeed in establishing a null session with one of the servers. Why is that?
- A. RestrictAnonymous must be set to "10" for complete security
- B. RestrictAnonymous must be set to "3" for complete security
- C. RestrictAnonymous must be set to "2" for complete security
- D. There is no way to always prevent an anonymous null session from establishing
Answer: C
NEW QUESTION # 102
In a Fllesystem Hierarchy Standard (FHS), which of the following directories contains the binary files required for working?
- A. /mm
- B. /media
- C. /sbin
- D. /proc
Answer: C
NEW QUESTION # 103
What is considered a grant of a property right given to an individual who discovers or invents a new machine, process, useful composition of matter or manufacture?
- A. Utility patent
- B. Trademark
- C. Design patent
- D. Copyright
Answer: A
NEW QUESTION # 104
After undergoing an external IT audit, George realizes his network is vulnerable to DDoS attacks.
What countermeasures could he take to prevent DDoS attacks?
- A. Enable BGP
- B. Disable BGP
- C. Enable direct broadcasts
- D. Disable direct broadcasts
Answer: D
NEW QUESTION # 105
A computer forensics Investigator or forensic analyst Is a specially trained professional who works with law enforcement as well as private businesses to retrieve Information from computers and other types of data storage devices. For this, the analyst should have an excellent working knowledge of all aspects of the computer. Which of the following is not a duty of the analyst during a criminal investigation?
- A. To fill the chain of custody
- B. To create an investigation report
- C. To enforce the security of all devices and software in the scene
- D. To recover data from suspect devices
Answer: A
NEW QUESTION # 106
James is testing the ability of his routers to withstand DoS attacks. James sends ICMP ECHO requests to the broadcast address of his network. What type of DoS attack is James testing against his network?
- A. Trinoo
- B. SYN flood
- C. Smurf
- D. Fraggle
Answer: C
NEW QUESTION # 107
Which of the following Perl scripts will help an investigator to access the executable image of a process?
- A. Lpsi.pl
- B. Lspd.pl
- C. Lspm.pl
- D. Lspi.pl
Answer: D
NEW QUESTION # 108
What is the investigator trying to analyze if the system gives the following image as output?
- A. Details of users who can logon
- B. All the logon sessions
- C. Inactive logon sessions
- D. Currently active logon sessions
Answer: D
NEW QUESTION # 109
Using Internet logging software to investigate a case of malicious use of computers, the investigator comes across some entries that appear odd.
From the log, the investigator can see where the person in question went on the Internet. From the log, it appears that the user was manually typing in different user ID numbers. What technique this user was trying?
- A. Cookie Poisoning
- B. Parameter tampering
- C. SQL injection
- D. Cross site scripting
Answer: B
NEW QUESTION # 110
......
ExamTorrent just published the EC-COUNCIL 312-49v10 exam dumps!: https://vcetorrent.examtorrent.com/312-49v10-prep4sure-dumps.html
