Exam Details

  • Exam Code
    :312-49V9
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V9)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :531 Q&As
  • Last Updated
    :Apr 14, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-49V9 Questions & Answers

  • Question 391:

    Digital evidence is not fragile in nature.

    A. True

    B. False

  • Question 392:

    Which of the following is the certifying body of forensics labs that investigate criminal cases by analyzing evidence?

    A. The American Society of Crime Laboratory Directors (ASCLD)

    B. International Society of Forensics Laboratory (ISFL)

    C. The American Forensics Laboratory Society (AFLS)

    D. The American Forensics Laboratory for Computer Forensics (AFLCF)

  • Question 393:

    Which Is a Linux journaling file system?

    A. Ext3

    B. HFS

    C. FAT

    D. BFS

  • Question 394:

    Wireless access control attacks aim to penetrate a network by evading WLAN access control measures, such as AP MAC filters and Wi-Fi port access controls.

    Which of the following wireless access control attacks allows the attacker to set up a rogue access point outside the corporate perimeter, and then lure the employees of the organization to connect to it?

    A. War driving

    B. Rogue access points

    C. MAC spoofing

    D. Client mis-association

  • Question 395:

    A steganographic file system is a method to store the files in a way that encrypts and hides the data without the knowledge of others

    A. True

    B. False

  • Question 396:

    In an echo data hiding technique, the secret message is embedded into a __________as an echo.

    A. Cover audio signal

    B. Phase spectrum of a digital signal

    C. Pseudo-random signal

    D. Pseudo- spectrum signal

  • Question 397:

    Mobile phone forensics is the science of recovering digital evidence from a mobile phone under forensically sound conditions.

    A. True

    B. False

  • Question 398:

    Graphics Interchange Format (GIF) is a ___________RGB bitmap Image format for Images with up to 256 distinct colors per frame.

    A. 8-bit

    B. 16-bit

    C. 24-bit

    D. 32-bit

  • Question 399:

    Windows Security Event Log contains records of login/logout activity or other security- related events specified by the system's audit policy. What does event ID 531 in Windows Security Event Log indicates?

    A. A user successfully logged on to a computer

    B. The logon attempt was made with an unknown user name or a known user name with a bad password

    C. An attempt was made to log on with the user account outside of the allowed time

    D. A logon attempt was made using a disabled account

  • Question 400:

    What is cold boot (hard boot)?

    A. It is the process of starting a computer from a powered-down or off state

    B. It is the process of restarting a computer that is already turned on through the operating system

    C. It is the process of shutting down a computer from a powered-on or on state

    D. It is the process of restarting a computer that is already in sleep mode

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V9 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.