ExamGecko
Home / ECCouncil / 312-49v10 / List of questions
Ask Question

ECCouncil 312-49v10 Practice Test - Questions Answers, Page 52

List of questions

Question 511

Report
Export
Collapse

What is an investigator looking for in the rp.log file stored in a system running on Windows 10 operating system?

Restore point interval
Restore point interval
Automatically created restore points
Automatically created restore points
System CheckPoints required for restoring
System CheckPoints required for restoring
Restore point functions
Restore point functions
Suggested answer: C
asked 18/09/2024
David Looby
37 questions

Question 512

Report
Export
Collapse

Email archiving is a systematic approach to save and protect the data contained in emails so that it can be accessed fast at a later date. There are two main archive types, namely Local Archive and Server Storage Archive. Which of the following statements is correct while dealing with local archives?

Server storage archives are the server information and settings stored on a local system, whereas the local archives are the local email client information stored on the mail server
Server storage archives are the server information and settings stored on a local system, whereas the local archives are the local email client information stored on the mail server
It is difficult to deal with the webmail as there is no offline archive in most cases. So consult your counsel on the case as to the best way to approach and gain access to the required data on servers
It is difficult to deal with the webmail as there is no offline archive in most cases. So consult your counsel on the case as to the best way to approach and gain access to the required data on servers
Local archives should be stored together with the server storage archives in order to be admissible in a court of law
Local archives should be stored together with the server storage archives in order to be admissible in a court of law
Local archives do not have evidentiary value as the email client may alter the message data
Local archives do not have evidentiary value as the email client may alter the message data
Suggested answer: B
asked 18/09/2024
Srikrushna Patro
34 questions

Question 513

Report
Export
Collapse

Which of the following tool is used to locate IP addresses?

SmartWhois
SmartWhois
Deep Log Analyzer
Deep Log Analyzer
Towelroot
Towelroot
XRY LOGICAL
XRY LOGICAL
Suggested answer: A
asked 18/09/2024
Daniel Yontz
44 questions

Question 514

Report
Export
Collapse

Which of the following protocols allows non-ASCII files, such as video, graphics, and audio, to be sent through the email messages?

MIME
MIME
BINHEX
BINHEX
UT-16
UT-16
UUCODE
UUCODE
Suggested answer: A
asked 18/09/2024
Brent Kehoe
34 questions

Question 515

Report
Export
Collapse

What is the framework used for application development for iOS-based mobile devices?

Cocoa Touch
Cocoa Touch
Dalvik
Dalvik
Zygote
Zygote
AirPlay
AirPlay
Suggested answer: A
asked 18/09/2024
luis lozano
40 questions

Question 516

Report
Export
Collapse

Chong-lee, a forensics executive, suspects that a malware is continuously making copies of files and folders on a victim system to consume the available disk space. What type of test would confirm his claim?

File fingerprinting
File fingerprinting
Identifying file obfuscation
Identifying file obfuscation
Static analysis
Static analysis
Dynamic analysis
Dynamic analysis
Suggested answer: A
asked 18/09/2024
Mitesh Solanki
47 questions

Question 517

Report
Export
Collapse

Which of the following tools is not a data acquisition hardware tool?

UltraKit
UltraKit
Atola Insight Forensic
Atola Insight Forensic
F-Response Imager
F-Response Imager
Triage-Responder
Triage-Responder
Suggested answer: C
asked 18/09/2024
Aur ROULIC
34 questions

Question 518

Report
Export
Collapse

The given image displays information about date and time of installation of the OS along with service packs, patches, and sub-directories. What command or tool did the investigator use to view this output?

ECCouncil 312-49v10 image Question 518 24544 09182024185500000000

dir /o:d
dir /o:d
dir /o:s
dir /o:s
dir /o:e
dir /o:e
dir /o:n
dir /o:n
Suggested answer: A
asked 18/09/2024
Gage Adams
37 questions

Question 519

Report
Export
Collapse

Which list contains the most recent actions performed by a Windows User?

MRU
MRU
Activity
Activity
Recents
Recents
Windows Error Log
Windows Error Log
Suggested answer: A
asked 18/09/2024
Hans Walter Katzengruber
27 questions

Question 520

Report
Export
Collapse

Joshua is analyzing an MSSQL database for finding the attack evidence and other details, where should he look for the database logs?

Model.log
Model.log
Model.txt
Model.txt
Model.ldf
Model.ldf
Model.lgf
Model.lgf
Suggested answer: C
asked 18/09/2024
Robert Aghten
34 questions
Total 704 questions
Go to page: of 71

Related questions