
EC-CouncilComputer Hacking Forensic Investigator
Domain 7Objective 1
Mobile Forensics CHFI Practice Questions (Page 9)
Part of the Mobile and IoT Forensics domain, which makes up ~14% of our current practice bank.
49questions here
10free pages
13concepts
Questions 41–45
- 41
A forensic examiner is faced with a high-end Android phone that is locked and encrypted. The examiner has a warrant and needs to extract data. The device is not rooted, and the bootloader is locked. Which acquisition method is most likely to succeed?
Select an answer first - 42
A forensic examiner is documenting the seizure of a mobile device at a crime scene. The device is powered on and unlocked. Which action should the examiner take to preserve evidence and maintain a proper chain of custody?
Select an answer first - 43
What information is stored on a SIM card that is useful for forensic investigation?
Select an answer first - 44
When testifying in court about mobile forensics findings, what should an examiner do?
Select an answer first - 45
A forensic examiner is preparing a report for a court case involving mobile device evidence. The examiner used a physical acquisition method and a commercial tool. What should the report include to ensure admissibility?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CHFI” is a trademark of its owner, used for identification only.