100% Pass Your 312-49 Exam Dumps at First Attempt with Actual4Dumps [Q62-Q79]

Share

100% Pass Your 312-49 Exam Dumps at First Attempt with Actual4Dumps

Penetration testers simulate 312-49 exam PDF

NEW QUESTION 62
If a PDA is seized in an investigation while the device is turned on, what would be the proper procedure?

  • A. Turn off the device immediately
  • B. Remove the battery immediately
  • C. Remove any memory cards immediately
  • D. Keep the device powered on

Answer: D

 

NEW QUESTION 63
You are called by an author who is writing a book and he wants to know how long the copyright for his book will last after he has the book published?

  • A. the life of the author plus 70 years
  • B. 70 years
  • C. copyrights last forever
  • D. the life of the author

Answer: A

 

NEW QUESTION 64
Chris has been called upon to investigate a hacking incident reported by one of his clients. The company suspects the involvement of an insider accomplice in the attack. Upon reaching the incident scene, Chris secures the physical area, records the scene using visual media. He shuts the system down by pulling the power plug so that he does not disturb the system in any way. He labels all cables and connectors prior to disconnecting any. What do you think would be the next sequence of events?

  • A. Secure the evidence; prepare the system for acquisition; Connect the target media; copy the media
  • B. Prepare the system for acquisition; Connect the target media; copy the media; Secure the evidence
  • C. Connect the target media; prepare the system for acquisition; Secure the evidence; Copy the media
  • D. Connect the target media; Prepare the system for acquisition; Secure the evidence; Copy the media

Answer: B

 

NEW QUESTION 65
When should an MD5 hash check be performed when processing evidence?

  • A. Before the evidence examination has been completed
  • B. On an hourly basis during the evidence examination
  • C. After the evidence examination has been completed
  • D. Before and after evidence examination

Answer: D

 

NEW QUESTION 66
What feature of Decryption Collection allows an investigator to crack a password as quickly as possible?

  • A. Distribute processing over 16 or fewer computers
  • B. Support for Encrypted File System
  • C. Cracks every password in 10 minutes
  • D. Support for MD5 hash verification

Answer: A

 

NEW QUESTION 67
The rule of thumb when shutting down a system is to pull the power plug. However, it has certain drawbacks. Which of the following would that be?

  • A. Any data not yet flushed to the system will be lost
  • B. All running processes will be lost
  • C. The /tmp directory will be flushed
  • D. Power interruption will corrupt the pagefile

Answer: A

 

NEW QUESTION 68
George is a senior security analyst working for a state agency in Florida. His state's congress just passed a bill mandating every state agency to undergo a security audit annually. After learning what will be required, George needs to implement an IDS as soon as possible before the first audit occurs. The state bill requires that an IDS with a "time-based induction machine" be used.
What IDS feature must George implement to meet this requirement?

  • A. Real-time anomaly detection
  • B. Signature-based anomaly detection
  • C. Pattern matching
  • D. Statistical-based anomaly detection

Answer: A

 

NEW QUESTION 69
What information do you need to recover when searching a victim's computer for a crime committed with specific e-mail message?

  • A. E-mail header
  • B. Username and password
  • C. Firewall log
  • D. Internet service provider information

Answer: A

 

NEW QUESTION 70
Travis, a computer forensics investigator, is finishing up a case he has been working on for over a month involving copyright infringement and embezzlement. His last task is to prepare an investigative report for the president of the company he has been working for. Travis must submit a hard copy and an electronic copy to this president. In what electronic format should Travis send this report?

  • A. DOC
  • B. WPD
  • C. PDF
  • D. TIFF-8

Answer: C

 

NEW QUESTION 71
Which among the following U.S. laws requires financial institutions-companies that offer consumers financial products or services such as loans, financial or investment advice, or insurance-to protect their customers' information against security threats?

  • A. HIPAA
  • B. FISMA
  • C. SOX
  • D. GLBA

Answer: D

Explanation:
Explanation/Reference:

 

NEW QUESTION 72
Windows identifies which application to open a file with by examining which of the following?

  • A. The File extension
  • B. The file signature at the beginning of the file
  • C. The file Signature at the end of the file
  • D. The file attributes

Answer: A

 

NEW QUESTION 73
When reviewing web logs, you see an entry for esource not found?in the HTTP status code field. What is the actual error code that you wouldWhen reviewing web logs, you see an entry for ?esource not found?in the HTTP status code field. What is the actual error code that you would see in the log for esource not found?see in the log for ?esource not found?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B

 

NEW QUESTION 74
What type of flash memory card comes in either Type I or Type II and consumes only five percent of the power required by small hard drives?

  • A. MMC memory
  • B. CF memory
  • C. SD memory
  • D. SM memory

Answer: B

 

NEW QUESTION 75
Bill is the accounting manager for Grummon and Sons LLC in Chicago. On a regular basis, he needs to send PDF documents containing sensitive information through E-mail to his customers.
Bill protects the PDF documents with a password and sends them to their intended recipients.
Why PDF passwords do not offer maximum protection?

  • A. When sent through E-mail, PDF passwords are stripped from the document completely
  • B. PDF passwords can easily be cracked by software brute force tools
  • C. PDF passwords are not considered safe by Sarbanes-Oxley
  • D. PDF passwords are converted to clear text when sent through E-mail

Answer: B

 

NEW QUESTION 76
Harold is a computer forensics investigator working for a consulting firm out of Atlanta
Georgia. Harold is called upon to help with a corporate espionage case in Miami Florida.
Harold assists in the investigation by pulling all the data from the computers allegedly used in the illegal activities. He finds that two suspects in the company where stealing sensitive corporate information and selling it to competing companies. From the email and instant messenger logs recovered, Harold has discovered that the two employees notified the buyers by writing symbols on the back of specific stop signs. This way, the buyers knew when and where to meet with the alleged suspects to buy the stolen material. What type of steganography did these two suspects use?

  • A. Visual semagram
  • B. Visual cipher
  • C. Grill cipher
  • D. Text semagram

Answer: A

 

NEW QUESTION 77
What are the security risks of running a "repair" installation for Windows XP?

  • A. Pressing Ctrl+F10 gives the user administrative rights
  • B. There are no security risks when running the "repair" installation for Windows XP
  • C. Pressing Shift+F1gives the user administrative rights
  • D. Pressing Shift+F10gives the user administrative rights

Answer: D

 

NEW QUESTION 78
You have been asked to investigate the possibility of computer fraud in the finance department of a company. It is suspected that a staff member has been committing finance fraud by printing cheques that have not been authorized. You have exhaustively searched all data files on a bitmap image of the target computer, but have found no evidence. You suspect the files may not have been saved. What should you examine next in this case?

  • A. The recycle bin
  • B. The swap file
  • C. The metadata
  • D. The registry

Answer: B

 

NEW QUESTION 79
......

All 312-49 Dumps and Training Courses: https://www.actual4dumps.com/312-49-study-material.html