ExamGecko
Home Home / ECCouncil / 312-49v10

ECCouncil 312-49v10 Practice Test - Questions Answers, Page 35

Question list
Search
Search

List of questions

Search

Related questions











Data is striped at a byte level across multiple drives, and parity information is distributed among all member drives.

What RAID level is represented here?

A.
RAID Level 0
A.
RAID Level 0
Answers
B.
RAID Level 5
B.
RAID Level 5
Answers
C.
RAID Level 3
C.
RAID Level 3
Answers
D.
RAID Level 1
D.
RAID Level 1
Answers
Suggested answer: B

What is the location of the binary files required for the functioning of the OS in a Linux system?

A.
/run
A.
/run
Answers
B.
/bin
B.
/bin
Answers
C.
/root
C.
/root
Answers
D.
/sbin
D.
/sbin
Answers
Suggested answer: B

Which of the following files DOES NOT use Object Linking and Embedding (OLE) technology to embed and link to other objects?

A.
Portable Document Format
A.
Portable Document Format
Answers
B.
MS-office Word Document
B.
MS-office Word Document
Answers
C.
MS-office Word OneNote
C.
MS-office Word OneNote
Answers
D.
MS-office Word PowerPoint
D.
MS-office Word PowerPoint
Answers
Suggested answer: A

Ivanovich, a forensics investigator, is trying to extract complete information about running processes from a system. Where should he look apart from the RAM and virtual memory?

A.
Swap space
A.
Swap space
Answers
B.
Application data
B.
Application data
Answers
C.
Files and documents
C.
Files and documents
Answers
D.
Slack space
D.
Slack space
Answers
Suggested answer: A

When marking evidence that has been collected with the "aaa/ddmmyy/nnnn/zz" format, what does the "nnnn" denote?

A.
The initials of the forensics analyst
A.
The initials of the forensics analyst
Answers
B.
The sequence number for the parts of the same exhibit
B.
The sequence number for the parts of the same exhibit
Answers
C.
The year he evidence was taken
C.
The year he evidence was taken
Answers
D.
The sequential number of the exhibits seized by the analyst
D.
The sequential number of the exhibits seized by the analyst
Answers
Suggested answer: D

Which MySQL log file contains information on server start and stop?

A.
Slow query log file
A.
Slow query log file
Answers
B.
General query log file
B.
General query log file
Answers
C.
Binary log
C.
Binary log
Answers
D.
Error log file
D.
Error log file
Answers
Suggested answer: D

Which of the following is a record of the characteristics of a file system, including its size, the block size, the empty and the filled blocks and their respective counts, the size and location of the inode tables, the disk block map and usage information, and the size of the block groups?

A.
Inode bitmap block
A.
Inode bitmap block
Answers
B.
Superblock
B.
Superblock
Answers
C.
Block bitmap block
C.
Block bitmap block
Answers
D.
Data block
D.
Data block
Answers
Suggested answer: B

Bob works as information security analyst for a big finance company. One day, the anomaly-based intrusion detection system alerted that a volumetric DDOS targeting the main IP of the main web server was occurring. What kind of attack is it?

A.
IDS attack
A.
IDS attack
Answers
B.
APT
B.
APT
Answers
C.
Web application attack
C.
Web application attack
Answers
D.
Network attack
D.
Network attack
Answers
Suggested answer: D

Which of the following refers to the process of the witness being questioned by the attorney who called the latter to the stand?

A.
Witness Authentication
A.
Witness Authentication
Answers
B.
Direct Examination
B.
Direct Examination
Answers
C.
Expert Witness
C.
Expert Witness
Answers
D.
Cross Questioning
D.
Cross Questioning
Answers
Suggested answer: B

Which rule requires an original recording to be provided to prove the content of a recording?

A.
1004
A.
1004
Answers
B.
1002
B.
1002
Answers
C.
1003
C.
1003
Answers
D.
1005
D.
1005
Answers
Suggested answer: B
Total 704 questions
Go to page: of 71