EC1-349 Exam Details

  • Exam Code
    :EC1-349
  • Exam Name
    :Computer Hacking Forensic Investigator (CHFI)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :486 Q&As
  • Last Updated
    :Dec 19, 2024

EC-COUNCIL EC1-349 Online Questions & Answers

  • Question 271:

    Which of the following network attacks refers to sending huge volumes of email to an address in an attempt to overflow the mailbox, or overwhelm the server where the email address is hosted, to cause a denial-of-service attack?

    A. Email spamming
    B. Mail bombing
    C. Phishing
    D. Email spoofing

  • Question 272:

    When is it appropriate to use computer forensics?

    A. If copyright and intellectual property theft/misuse has occurred
    B. If employees do not care for their boss?management techniques
    C. If sales drop off for no apparent reason for an extended period of time
    D. If a financial institution is burglarized by robbers

  • Question 273:

    Network forensics can be defined as the sniffing, recording, acquisition and analysis of the network traffic and event logs in order to investigate a network security incident.

    A. True
    B. False

  • Question 274:

    As a security analyst you setup a false survey website that will reQuire users to create a username and a strong password. You send the link to all the employees of the company. What information will you be able to gather?

    A. The IP address of the employees computers
    B. Bank account numbers and the corresponding routing numbers
    C. The employees network usernames and passwords
    D. The MAC address of theemployees?computers

  • Question 275:

    Why would you need to find out the gateway of a device when investigating a wireless attack?

    A. The gateway will be the IP of the proxy server used by the attacker to launch the attack
    B. The gateway will be the IP of the attacker computerThe gateway will be the IP of the attacker? computer
    C. The gateway will be the IP used to manage the RADIUS server
    D. The gateway will be the IP used to manage the access point

  • Question 276:

    When the operating system marks cluster as used, but does not allocate them to any file, such clusters are known as ___________.

    A. Lost clusters
    B. Bad clusters
    C. Empty clusters
    D. Unused clusters

  • Question 277:

    Which of the following log injection attacks uses white space padding to create unusual log entries?

    A. Word wrap abuse attack
    B. HTML injection attack
    C. Terminal injection attack
    D. Timestamp injection attack

  • Question 278:

    JPEG is a commonly used method of compressing photographic Images. It uses a compression algorithm to minimize the size of the natural image, without affecting the quality of the image. The JPEG lossy algorithm divides the image in separate blocks of____________.

    A. 4x4 pixels
    B. 8x8 pixels
    C. 16x16 pixels
    D. 32x32 pixels

  • Question 279:

    Which of the following passwords are sent over the wire (and wireless) network, or stored on some media as it is typed without any alteration?

    A. Clear text passwords
    B. Obfuscated passwords
    C. Hashed passwords
    D. Hex passwords

  • Question 280:

    What is the first step that needs to be carried out to investigate wireless attacks?

    A. Obtain a search warrant
    B. Identify wireless devices at crime scene
    C. Document the scene and maintain a chain of custody
    D. Detect the wireless connections

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC1-349 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.