EC-Council 312-49V9 Exam Questions
ECCouncil Computer Hacking Forensic Investigator (V9) (Page 14 )

Updated On: 17-Feb-2026

When collecting electronic evidence at the crime scene, the collection should proceed from the most volatile to the least volatile

  1. True
  2. False

Answer(s): A



Which of the following commands shows you the names of all open shared files on a server and number of file locks on each file?

  1. Net sessions
  2. Net file
  3. Netconfig
  4. Net share

Answer(s): B



Microsoft Security IDs are available in Windows Registry Editor. The path to locate IDs in Windows 7 is:

  1. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\Currentversion \ProfileList
  2. HKEY_LOCAL_MACHlNE\SOFTWARE\Microsoft\Windows NT\CurrentVersion \NetworkList
  3. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentsVersion \setup
  4. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
    NT\CurrentVersion\Schedule

Answer(s): A



Which device in a wireless local area network (WLAN) determines the next network point to which a packet should be forwarded toward its destination?

  1. Wireless router
  2. Wireless modem
  3. Antenna
  4. Mobile station

Answer(s): A



When NTFS Is formatted, the format program assigns the __________ sectors to the boot sectors and to the bootstrap code

  1. First 12
  2. First 16
  3. First 22
  4. First 24

Answer(s): B






Post your Comments and Discuss EC-Council 312-49V9 exam dumps with other Community members:

Join the 312-49V9 Discussion