312-49V9 Exam Details

  • Exam Code
    :312-49V9
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V9)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :486 Q&As
  • Last Updated
    :May 26, 2026

EC-COUNCIL 312-49V9 Online Questions & Answers

  • Question 121:

    Raw data acquisition format creates ____________of a data set or suspect drive.

    A. Simple sequential flat files
    B. Segmented files
    C. Compressed image files
    D. Segmented image files

  • Question 122:

    George is performing security analysis for Hammond and Sons LLC. He is testing security vulnerabilities of their wireless network. He plans on remaining as "stealthy" as possible during the scan. Why would a scanner like Nessus is not recommended in this situation?

    A. Nessus cannot perform wireless testing
    B. Nessus is too loud
    C. There are no ways of performing a "stealthy" wireless scan
    D. Nessus is not a network scanner

  • Question 123:

    A system with a simple logging mechanism has not been given much attention during development, this system is now being targeted by attackers, if the attacker wants to perform a new line injection attack, what will he/she inject into the log file?

    A. Plaintext
    B. Single pipe character
    C. Multiple pipe characters
    D. HTML tags

  • Question 124:

    What will the following URL produce in an unpatched IIS Web Server? http://www.thetargetsite.com/scripts/..% co%af../..%co%af../windows/system32/cmd.exe?/c+dir+c:\

    A. Directory listing of C: drive on the web server
    B. Execute a buffer flow in the C: drive of the web server
    C. Directory listing of the C:\windows\system32 folder on the web server
    D. Insert a Trojan horse into the C: drive of the web server

  • Question 125:

    Tyler is setting up a wireless network for his business that he runs out of his home. He has followed all the directions from the ISP as well as the wireless router manual. He does not have any encryption set and the SSID is being broadcast. On his laptop, he can pick up the wireless signal for short periods of time, but then the connection drops and the signal goes away. Eventually the wireless signal shows back up, but drops intermittently. What could be Tyler issue with his home wireless network?

    A. CB radio
    B. 2.4Ghz Cordless phones
    C. Satellite television
    D. Computers on his wired network

  • Question 126:

    What is static executable file analysis?

    A. It is a process that consists of collecting information about and from an executable file without actually launching the file under any circumstances
    B. It is a process that consists of collecting information about and from an executable file by launching the file under any circumstances
    C. It is a process that consists of collecting information about and from an executable file without actually launching an executable file in a controlled and monitored environment
    D. It is a process that consists of collecting information about and from an executable file by launching an executable file in a controlled and monitored environment

  • Question 127:

    Wireless network discovery tools use two different methodologies to detect, monitor and log a WLAN device (i.e. active scanning and passive scanning). Active scanning methodology involves ____________and waiting for responses from available wireless networks.

    A. Broadcasting a probe request frame
    B. Sniffing the packets from the airwave
    C. Scanning the network
    D. Inspecting WLAN and surrounding networks

  • Question 128:

    Email archiving is a systematic approach to save and protect the data contained in emails so that it can tie easily accessed at a later date.

    A. True
    B. False

  • Question 129:

    To make sure the evidence you recover and analyze with computer forensics software can be admitted in court, you must test and validate the software. What group is actively providing tools and creating procedures for testing and validating computer forensics software ?

    A. Computer Forensics Tools and Validation Committee (CFTVC)
    B. Association of Computer Forensics Software Manufactures (ACFSM)
    C. National Institute of Standards and Technology (NIST)
    D. Society for Valid Forensics Tools and Testing (SVFTT)

  • Question 130:

    Under which Federal Statutes does FBI investigate for computer crimes involving e- mail scams and mail fraud?

    A. 18 U.S.C. 1029 Possession of Access Devices
    B. 18 U.S.C. 1030 Fraud and related activity in connection with computers
    C. 18 U.S.C. 1343 Fraud by wire, radio or television
    D. 18 U.S.C. 1361 Injury to Government Property
    E. 18 U.S.C. 1362 Government communication systems
    F. 18 U.S.C. 1831 Economic Espionage Act
    G. 18 U.S.C. 1832 Trade Secrets Act

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V9 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.