Free 312-49V9 Exam Braindumps (page: 49)

Page 49 of 122

What type of equipment would a forensics investigator store in a StrongHold bag?

  1. PDAPDA?
  2. Backup tapes
  3. Hard drives
  4. Wireless cards

Answer(s): D



What method of copying should always be performed first before carrying out an investigation?

  1. Parity-bit copy
  2. Bit-stream copy
  3. MS-DOS disc copy
  4. System level copy

Answer(s): B



You are working in the Security Department of a law firm. One of the attorneys asks you about the topic of sending fake email because he has a client who has been charged with doing just that. His client alleges that he is innocent and that there is no way for a fake email to actually be sent. You inform the attorney that his client is mistaken and that fake email is a possibility and that you can prove it. You return to your desk and craft a fake email to the attorney that appears to come from his boss. What port do you send the email to on the company SMTP server?fake email to the attorney that appears to come from his boss. What port do you send the email to on the company? SMTP server?

  1. 10
  2. 25
  3. 110
  4. 135

Answer(s): B



With regard to using an antivirus scanner during a computer forensics investigation, you should:

  1. Scan the suspect hard drive before beginning an investigation
  2. Never run a scan on your forensics workstation because it could change your system configurationNever run a scan on your forensics workstation because it could change your system? configuration
  3. Scan your forensics workstation at intervals of no more than once every five minutes during an investigation
  4. Scan your forensics workstation before beginning an investigation

Answer(s): D



Page 49 of 122



Post your Comments and Discuss EC-Council 312-49V9 exam with other Community members:

Olu commented on October 16, 2023
Question 235: 22,164 x 80 x 63 x 512 = 57.19 GB
UNITED STATES
upvote