Official Bank 0/1404

Computer Hacking Forensic Investigator (CHFI) (312-49) - EC Council Actual Exam Questions

Last updated on May 13, 2026

97% Exam Compliance
1404 Total Questions
1
Question

George is a senior security analyst working for a state agency in Florid

Options
A

His state's congress just passed a bill mandating every state agency to undergo a security audit annually. After learning what will be required, George needs to implement an IDS as soon as possible before the first audit occurs. The state bill requires that an IDS with a "time-based induction machine" be used. What IDS feature must George implement to meet this requirement?

B

Signature-based anomaly detection

C

Pattern matching

D

Real-time anomaly detection

E

Statistical-based anomaly detection

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question

You have been given the task to investigate web attacks on a Windows-based server. Which of the following commands will you use to look at the sessions the machine has opened with other systems?

Options
A

Net sessions

B

Net config

C

Net share

D

Net use

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question

Edgar is part of the FBI's forensic media and malware analysis team; he Is analyzing a current malware and Is conducting a thorough examination of the suspect system, network, and other connected devices. Edgar's approach Is to execute the malware code to know how It Interacts with the host system and Its Impacts on It. He is also using a virtual machine and a sandbox environment. What type of malware analysis is Edgar performing?

Options
A

Malware disassembly

B

VirusTotal analysis

C

Static analysis

D

Dynamic malware analysis/behavioral analysis

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question

What feature of Windows is the following command trying to utilize?

Question image
Options
A

White space

B

AFS

C

ADS

D

Slack file

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question

Bob works as information security analyst for a big finance company. One day, the anomaly-based intrusion detection system alerted that a volumetric DDOS targeting the main IP of the main web server was occurring. What kind of attack is it?

Options
A

IDS attack

B

APT

C

Web application attack

D

Network attack

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.