312-49v9 Dumps

312-49v9 Free Practice Test

EC-Council 312-49v9: ECCouncil Computer Hacking Forensic Investigator (V9)

QUESTION 21

- (Topic 2)
An employee is attempting to wipe out data stored on a couple of compact discs (CDs) and digital video discs (DVDs) by using a large magnet. You inform him that this method will not be effective in wiping out the data because CDs and DVDs are ____ media used to store large amounts of data and are not affected by the magnet.

Correct Answer: B

QUESTION 22

- (Topic 3)
Harold is a security analyst who has just run the rdisk /s command to grab the backup SAM file on a computer. Where should Harold navigate on the computer to find the file?

Correct Answer: C

QUESTION 23

- (Topic 3)
When using Windows acquisitions tools to acquire digital evidence, it is important to use a well-tested hardware write- blocking device to ___

Correct Answer: D

QUESTION 24

- (Topic 1)
Centralized logging is defined as gathering the computer system logs for a group of systems in a centralized location. It is used to efficiently monitor computer system logs with the frequency required to detect security violations and unusual activity.

Correct Answer: A

QUESTION 25

- (Topic 1)
An expert witness is a witness, who by virtue of education, profession, or experience, is believed to have special knowledge of his/her subject beyond that of the average person, sufficient that others legally depend upon his/her opinion.

Correct Answer: A