Free 312-49 Exam Braindumps (page: 55)

Page 54 of 133

An investigator is searching through the firewall logs of a company and notices ICMP packets that are larger than 65,536 bytes. What type of activity is the investigator seeing?

  1. Smurf
  2. Ping of death
  3. Fraggle
  4. Nmap scan

Answer(s): B



When carrying out a forensics investigation, why should you never delete a partition on a dynamic disk?

  1. All virtual memory will be deleted
  2. The wrong partition may be set to active
  3. This action can corrupt the disk
  4. The computer will be set in a constant reboot state

Answer(s): C



When using an iPod and the host computer is running Windows, what file system will be used?

  1. iPod+
  2. HFS
  3. FAT16
  4. FAT32

Answer(s): D



What is one method of bypassing a system BIOS password?

  1. Removing the processor
  2. Removing the CMOS battery
  3. Remove all the system memory
  4. Login to Windows and disable the BIOS password

Answer(s): B






Post your Comments and Discuss EC-Council 312-49 exam with other Community members:

312-49 Exam Discussions & Posts