あなたを合格させる312-49v11お手軽に試験合格リアル312-49v11練習問題集で更新されたのは2025年03月19日 [Q586-Q609]

Share

あなたを合格させる312-49v11お手軽に試験合格リアル312-49v11練習問題集で更新されたのは2025年03月19日

2025年最新の実際に出ると確認されたで無料EC-COUNCIL 312-49v11試験問題

質問 # 586
The status of the network interface cards (NICs) connected to a system gives information about whether the system is connected to a wireless access point and what IP address is being used.
Which command displays the network configuration of the NICs on the system?

  • A. tasklist
  • B. netstat
  • C. ipconfig /all
  • D. net session

正解:C


質問 # 587
A security firm investigating an IoT-based cybercrime involving an Android smartwatch found on the crime scene. The smartwatch is suspected of capturing sensitive information such as PINs and passwords through motion sensors and GPS tracking. The paired smartphone is not available. Which of the following steps should the investigator undertake first to proceed with the forensics process effectively?

  • A. Extract data from the smartwatch's memory before it gets volatile
  • B. Identify APIs like Data API, Message API, and Node API on the smartwatch
  • C. Generate forensic images of the evidence found on the crime scene
  • D. Look for cloud data and mobile data linked to the smartwatch

正解:A


質問 # 588
A master boot record (MBR) is the first sector ("sector zero") of a data storage device. What is the size of MBR?

  • A. Depends on the capacity of the storage device
  • B. 1048 Bytes
  • C. 512 Bytes
  • D. 4092 Bytes

正解:C


質問 # 589
Which cloud model allows an investigator to acquire the instance of a virtual machine and initiate the forensics examination process?

  • A. IaaS model
  • B. SecaaS model
  • C. SaaS model
  • D. PaaS model

正解:A


質問 # 590
A computer forensics investigator is handling a case where the suspect destroyed a potential piece of digital evidence. The investigator has obtained a duplicate copy of the destroyed evidence and believes it's crucial to the case. What is the correct procedure under the Federal Rules of Evidence to ensure this duplicate copy can be submitted in court?

  • A. The investigator must recreate the original piece of evidence from the duplicate copy
  • B. The investigator must take the suspect to court to prove the authenticity of the duplicate evidence
  • C. A third party must testify and confirm that the submitted duplicate is a copy of the original evidence
  • D. The investigator must prove that the suspect intentionally tampered with the destroyed evidence

正解:C


質問 # 591
You are running known exploits against your network to test for possible vulnerabilities. To test the strength of your virus software, you load a test network to mimic your production network.
Your software successfully blocks some simple macro and encrypted viruses. You decide to really test the software by using virus code where the code rewrites itself entirely and the signatures change from child to child, but the functionality stays the same. What type of virus is this that you are testing?

  • A. Metamorphic
  • B. Oligomorhic
  • C. Polymorphic
  • D. Transmorphic

正解:A


質問 # 592
After attending a CEH security seminar, you make a list of changes you would like to perform on your network to increase its security. One of the first things you change is to switch the RestrictAnonymous setting from 0 to 1 on your servers. This, as you were told, would prevent anonymous users from establishing a null session on the server. Using Userinfo tool mentioned at the seminar, you succeed in establishing a null session with one of the servers. Why is that?

  • A. RestrictAnonymous must be set to "10" for complete security
  • B. RestrictAnonymous must be set to "2" for complete security
  • C. There is no way to always prevent an anonymous null session from establishing
  • D. RestrictAnonymous must be set to "3" for complete security

正解:B


質問 # 593
Why would a company issue a dongle with the software they sell?

  • A. To provide wireless functionality with the software
  • B. To provide source code protection
  • C. To provide copyright protection
  • D. To ensure that keyloggers cannot be used

正解:C


質問 # 594
Before performing a logical or physical search of a drive in Encase, what must be added to the program?

  • A. Keywords
  • B. Hash sets
  • C. File signatures
  • D. Bookmarks

正解:A


質問 # 595
Julie is a college student majoring in Information Systems and Computer Science. She is currently writing an essay for her computer crimes class. Julie paper focuses on white-collar crimes in America and how forensics investigators investigate the cases. Julie would like to focus the subject. Julie would like to focus the subject of the essay on the most common type of crime found in corporate America. What crime should Julie focus on?

  • A. Industrial espionage
  • B. Copyright infringement
  • C. Denial of Service attacks
  • D. Physical theft

正解:A


質問 # 596
A computer forensic report is a report which provides detailed information on the complete forensics investigation process.

  • A. True
  • B. False

正解:A


質問 # 597
One technique for hiding information is to change the file extension from the correct one to one that might not be noticed by an investigator. For example, changing a .jpg extension to a .doc extension so that a picture file appears to be a document. What can an investigator examine to verify that a file has the correct extension?

  • A. the file header
  • B. the sector map
  • C. the file footer
  • D. the File Allocation Table

正解:A


質問 # 598
What is the investigator trying to analyze if the system gives the following image as output?

  • A. All the logon sessions
  • B. Inactive logon sessions
  • C. Currently active logon sessions
  • D. Details of users who can logon

正解:C


質問 # 599
When reviewing web logs, you see an entry for resource not found in the HTTP status code field.
What is the actual error code that you would see in the log for resource not found?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

正解:D


質問 # 600
What will the following command produce on a website login page?
SELECT email, passwd, login_id, full_name FROM members
WHERE email = '[email protected]';
DROP TABLE members; --'

  • A. Retrieves the password for the first user in the members table
  • B. This command will not produce anything since the syntax is incorrect
  • C. Deletes the entire members table
  • D. Inserts the Error! Reference source not found. email address into the members table

正解:C

解説:
The third line deletes the table named members.


質問 # 601
Computer security logs contain information about the events occurring within an organization's systems and networks. Which of the following security logs contains Logs of network and host- based security software?

  • A. Application logs
  • B. Audit logs
  • C. Security software logs
  • D. Operating System (OS) logs

正解:C


質問 # 602
A cybercrime investigator is evaluating a data breach in a company's AWS infrastructure. The breached service was categorized as an AWS container service. What primary security aspects were likely managed by the company and not by AWS, which the investigator should first focus on?

  • A. Data management and firewall configuration
  • B. Physical infrastructure and foundational services
  • C. Network configuration of the container services
  • D. Application platform and Operating System (OS) security

正解:D


質問 # 603
Which of the following protocols allows non-ASCII files, such as video, graphics, and audio, to be sent through the email messages?

  • A. MIME
  • B. UT-16
  • C. UUCODE
  • D. BINHEX

正解:A


質問 # 604
This law sets the rules for commercial email, establishes requirements for commercial messages, gives recipients the right to have you stop emailing them, and spells out tough penalties for violations.

  • A. Telemarketing act
  • B. The CAN-SPAM act
  • C. Federal Spam act
  • D. European Anti-Spam act

正解:B


質問 # 605
Which of the following should a computer forensics lab used for investigations have?

  • A. isolation
  • B. open access
  • C. an entry log
  • D. restricted access

正解:D


質問 # 606
Which of the following files stores information about a local Google Drive installation such as User email ID, Local Sync Root Path, and Client version installed?

  • A. config.db
  • B. sigstore.db
  • C. filecache.db
  • D. Sync_config.db

正解:D


質問 # 607
An employee is attempting to wipe out data stored on a couple of compact discs (CDs) and digital video discs (DVDs) by using a large magnet. You inform him that this method will not be effective in wiping out the data because CDs and DVDs are _________ media used to store large amounts of data and are not affected by the magnet.

  • A. Logical
  • B. Magnetic
  • C. Optical
  • D. Anti-Magnetic

正解:C


質問 # 608
A system with a simple logging mechanism has not been given much attention during development, this system is now being targeted by attackers, if the attacker wants to perform a new line injection attack, what will he/she inject into the log file?

  • A. Multiple pipe characters
  • B. Plaintext
  • C. Single pipe character
  • D. HTML tags

正解:B


質問 # 609
......

312-49v11リアル試験問題解答は無料:https://www.passtest.jp/EC-COUNCIL/312-49v11-shiken.html

312-49v11試験問題、リアル312-49v11練習問題集:https://drive.google.com/open?id=1CxBgxBnkeF8kfN_iAv7sMVC85nkerLnf