EC1-349 Exam Details

  • Exam Code
    :EC1-349
  • Exam Name
    :Computer Hacking Forensic Investigator (CHFI)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :486 Q&As
  • Last Updated
    :Dec 19, 2024

EC-COUNCIL EC1-349 Online Questions & Answers

  • Question 291:

    After passively scanning the network of Department of Defense (DoD), you switch over to active scanning to identify live hosts on their network. DoD is a large organization and should respond to any number of scans. You start an ICMP ping sweep by sending an IP packet to the broadcast address. Only five hosts responds to your ICMP pings; definitely not the number of hosts you were expecting. Why did this ping sweep only produce a few responses?

    A. Only IBM AS/400 will reply to this scan
    B. Only Windows systems will reply to this scan
    C. Only Unix and Unix-like systems will reply to this scan
    D. A switched network will not respond to packets sent to the broadcast address

  • Question 292:

    Under which Federal Statutes does FBI investigate for computer crimes involving e- mail scams and mail fraud?

    A. 18 U.S.C. 1029 Possession of Access Devices
    B. 18 U.S.C. 1030 Fraud and related activity in connection with computers
    C. 18 U.S.C. 1343 Fraud by wire, radio or television
    D. 18 U.S.C. 1361 Injury to Government Property
    E. 18 U.S.C. 1362 Government communication systems
    F. 18 U.S.C. 1831 Economic Espionage Act
    G. 18 U.S.C. 1832 Trade Secrets Act

  • Question 293:

    On an Active Directory network using NTLM authentication, where on the domain controllers are the passwords stored?

    A. SAM
    B. AMS
    C. Shadow file
    D. Password.conf

  • Question 294:

    What will the following command accomplish? C:\> nmap -v -sS -Po 172.16.28.251 - data_length 66000 packet_trace

    A. Test the ability of a router to handle under-sized packets
    B. Test ability of a router to handle over-sized packets
    C. Test the ability of a WLAN to handle fragmented packets
    D. Test the ability of a router to handle fragmented packets

  • Question 295:

    Which of the following commands shows you all of the network services running on Windows- based servers?

    A. Net start
    B. Net use
    C. Net Session
    D. Net share

  • Question 296:

    What is the CIDR from the following screenshot?

    A. /24A./24A./24
    B. /32 B./32 B./32
    C. /16 C./16 C./16
    D. /8D./8D./8

  • Question 297:

    Smith, an employee of a reputed forensic Investigation firm, has been hired by a private organization to investigate a laptop that is suspected to be involved in hacking of organization DC server. Smith wants to find all the values typed into the Run box in the Start menu. Which of the following registry key Smith will check to find the above information?

    A. UserAssist Key
    B. MountedDevices key
    C. RunMRU key
    D. TypedURLs key

  • Question 298:

    When examining the log files from a Windows IIS Web Server, how often is a new log file created?

    A. the same log is used at all times
    B. a new log file is created everyday
    C. a new log file is created each week
    D. a new log is created each time the Web Server is started

  • Question 299:

    When using an iPod and the host computer is running Windows, what file system will be used?

    A. iPod+
    B. HFS
    C. FAT16
    D. FAT32

  • Question 300:

    The Electronic Serial Number (ESN) is a unique __________ recorded on a secure chip in a mobile phone by the manufacturer.

    A. 16-bit identifier
    B. 24-bit identifier
    C. 32-bit identifier
    D. 64-bit identifier

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC1-349 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.