312-49V10 Exam Details

  • Exam Code
    :312-49V10
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1028 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-49V10 Online Questions & Answers

  • Question 181:

    John is working as a computer forensics investigator for a consulting firm in Canada. He is called to seize a computer at a local web caf purportedly used as a botnet server. John thoroughly scans the computer and finds nothing that would lead him to think the computer was a botnet server. John decides to scan the virtual memory of the computer to possibly find something he had missed.

    What information will the virtual memory scan produce?

    A. It contains the times and dates of when the system was last patched
    B. It is not necessary to scan the virtual memory of a computer
    C. It contains the times and dates of all the system files
    D. Hidden running processes

  • Question 182:

    How will you categorize a cybercrime that took place within a CSP's cloud environment?

    A. Cloud as a Subject
    B. Cloud as a Tool
    C. Cloud as an Audit
    D. Cloud as an Object

  • Question 183:

    Deposition enables opposing counsel to preview an expert witness's testimony at trial. Which of the following deposition is not a standard practice?

    A. Both attorneys are present
    B. Only one attorneys is present
    C. No jury or judge
    D. Opposing counsel asks questions

  • Question 184:

    Which of the following is a requirement for senders as per the CAN-SPAM act?

    A. Emails must not contain information regarding how to stop receiving emails from the sender in future
    B. Senders should never share their physical postal address in the email
    C. Senders cannot use misleading or false header information
    D. Senders must use deceptive subject lines

  • Question 185:

    What is the first step that needs to be carried out to investigate wireless attacks?

    A. Obtain a search warrant
    B. Identify wireless devices at crime scene
    C. Document the scene and maintain a chain of custody
    D. Detect the wireless connections

  • Question 186:

    What is the extension used by Windows OS for shortcut files present on the machine?

    A. .lnk
    B. .dat
    C. .log
    D. .pf

  • Question 187:

    Depending upon the jurisdictional areas, different laws apply to different incidents. Which of the following law is related to fraud and related activity in connection with computers?

    A. 18 USC 7029
    B. 18 USC 7030
    C. 18 USC 7361
    D. 18 USC 7371

  • Question 188:

    Paul is a computer forensics investigator working for Tyler and Company Consultants. Paul has been called upon to help investigate a computer hacking ring broken up by the local police. Paul begins to inventory the PCs found in the hackers hideout. Paul then comes across a PDA left by them that is attached to a number of different peripheral devices.

    What is the first step that Paul must take with the PDA to ensure the integrity of the investigation?

    A. Place PDA, including all devices, in an antistatic bag
    B. Unplug all connected devices
    C. Power off all devices if currently on
    D. Photograph and document the peripheral devices

  • Question 189:

    While working for a prosecutor, what do you think you should do if the evidence you found appears to be exculpatory and is not being released to the defense?

    A. Keep the information of file for later review
    B. Destroy the evidence
    C. Bring the information to the attention of the prosecutor, his or her supervisor or finally to the judge
    D. Present the evidence to the defense attorney

  • Question 190:

    Jim performed a vulnerability analysis on his network and found no potential problems. He runs another utility that executes exploits against his system to verify the results of the vulnerability test. The second utility executes five known exploits against his network in which the vulnerability analysis said were not exploitable.

    What kind of results did Jim receive from his vulnerability analysis?

    A. False negatives
    B. True negatives
    C. True positives
    D. False positives

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.