312-49v10 Dumps

312-49v10 Free Practice Test

EC-Council 312-49v10: Computer Hacking Forensic Investigator (CHFI-v10)

QUESTION 26

- (Exam Topic 3)
Which of the following is a responsibility of the first responder?

Correct Answer: B

QUESTION 27

- (Exam Topic 3)
Raw data acquisition format creates ______ of a data set or suspect drive.

Correct Answer: B

QUESTION 28

- (Exam Topic 1)
To make sure the evidence you recover and analyze with computer forensics software can be admitted in court, you must test and validate the software. What group is actively providing tools and creating procedures for testing and validating computer forensics software?

Correct Answer: C

QUESTION 29

- (Exam Topic 2)
Where does Encase search to recover NTFS files and folders?

Correct Answer: B

QUESTION 30

- (Exam Topic 2)
John is working as a computer forensics investigator for a consulting firm in Canada. He is called to seize a computer at a local web caf purportedly used as a botnet server. John thoroughly scans the computer and finds nothing that would lead him to think the computer was a botnet server. John decides to scan the virtual memory of the computer to possibly find something he had missed. What information will the virtual memory scan produce?

Correct Answer: D