312-49V10 Exam Details

  • Exam Code
    :312-49V10
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1028 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-49V10 Online Questions & Answers

  • Question 91:

    Meyer Electronics Systems just recently had a number of laptops stolen out of their office. On these laptops contained sensitive corporate information regarding patents and company strategies. A month after the laptops were stolen, a competing company was found to have just developed products that almost exactly duplicated products that Meyer produces.

    What could have prevented this information from being stolen from the laptops?

    A. DFS Encryption
    B. EFS Encryption
    C. SDW Encryption
    D. IPS Encryption

  • Question 92:

    Frank is working on a vulnerability assessment for a company on the West coast. The company hired Frank to assess its network security through scanning, pen tests, and vulnerability assessments. After discovering numerous known vulnerabilities detected by a temporary IDS he set up, he notices a number of items that show up as unknown but Questionable in the logs. He looks up the behavior on the Internet, but cannot find anything related.

    What organization should Frank submit the log to find out if it is a new vulnerability or not?

    A. CVE
    B. IANA
    C. RIPE
    D. APIPA

  • Question 93:

    In a cyber-forensic investigation, a CHFI expert found a Linux system unexpectedly booting into a different OS kernel. The system was configured with the Grand Unified Bootloader (GRUB). The expert suspects that an attacker may have tampered with the bootloader stage of the Linux bootprocess.

    Which one of the following is NOT a step performed during the bootloader stage in a normal Linux boot process?

    A. Execution of the Linuxrc program to generate the real file system for the kernel
    B. Detecting the device that contains the file system and loading the necessary modules
    C. Loading the kernel into memory
    D. Loading the Linux kernel and optional initial RAM disk

  • Question 94:

    Networks are vulnerable to an attack which occurs due to overextension of bandwidth, bottlenecks, network data interception, etc.

    Which of the following network attacks refers to a process in which an attacker changes his or her IP address so that he or she appears to be someone else?

    A. IP address spoofing
    B. Man-in-the-middle attack
    C. Denial of Service attack
    D. Session sniffing

  • Question 95:

    George is the network administrator of a large Internet company on the west coast. Per corporate policy, none of the employees in the company are allowed to use FTP or SFTP programs without obtaining approval from the IT department. Few managers are using SFTP program on their computers. Before talking to his boss, George wants to have some proof of their activity. George wants to use Ethereal to monitor network traffic, but only SFTP traffic to and from his network.

    What filter should George use in Ethereal?

    A. src port 23 and dst port 23
    B. src port 22 and dst port 22
    C. udp port 22 and host 172. 16. 28.1/24
    D. net port 22

  • Question 96:

    When carrying out a forensics investigation, why should you never delete a partition on a dynamic disk?

    A. All virtual memory will be deleted
    B. The wrong partition may be set to active
    C. This action can corrupt the disk
    D. The computer will be set in a constant reboot state

  • Question 97:

    Which of the following tool enables a user to reset his/her lost admin password in a Windows system?

    A. Advanced Office Password Recovery
    B. Active@ Password Changer
    C. Smartkey Password Recovery Bundle Standard
    D. Passware Kit Forensic

  • Question 98:

    In an ongoing cybercrime investigation, Laura, a certified Computer Hacking Forensics Investigator (CHFI), has identified a system involved inillegal activities. The system is connected to a network with many other users. Laura needs to gather evidence related to the identified system'sinternet usage.

    Which legal and privacy considerations should be her utmost priority?

    A. Maintaining the anonymity of non-target users connected to the system
    B. Informing the authorities about the identified illegal activities
    C. Acquiring a search warrant specifically mentioning the identified system
    D. Obtaining explicit consent from the system owner before starting the investigation

  • Question 99:

    What will the following command produce on a website login page?

    SELECT email, passwd, login_id, full_name FROM members

    WHERE email = '[email protected]'; DROP TABLE members; --'

    A. Retrieves the password for the first user in the members table
    B. This command will not produce anything since the syntax is incorrect
    C. Deletes the entire members table
    D. Inserts the Error! Reference source not found. email address into the members table

  • Question 100:

    Which of the following is a responsibility of the first responder?

    A. Determine the severity of the incident
    B. Collect as much information about the incident as possible
    C. Share the collected information to determine the root cause
    D. Document the findings

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.