312-49V10 Exam Details

  • Exam Code
    :312-49V10
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1028 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-49V10 Online Questions & Answers

  • Question 861:

    When using an iPod and the host computer is running Windows, what file system will be used?

    A. iPod+
    B. HFS
    C. FAT16
    D. FAT32

  • Question 862:

    Cyber-crime is defined as any Illegal act involving a gun, ammunition, or its applications.

    A. True
    B. False

  • Question 863:

    Which of the following statements is TRUE about SQL Server error logs?

    A. SQL Server error logs record all the events occurred on the SQL Server and its databases
    B. Forensic investigator uses SQL Server Profiler to view error log files
    C. Error logs contain IP address of SQL Server client connections
    D. Trace files record, user-defined events, and specific system events

  • Question 864:

    Wi-Fi Protected Access (WPA) is a data encryption method for WLANs based on 802. 11 standards. Temporal Key Integrity Protocol (TKIP) enhances WEP by adding a rekeying mechanism to provide fresh encryption and integrity keys. Temporal keys are changed for every____________.

    A. 5,000 packets
    B. 10.000 packets
    C. 15,000 packets
    D. 20.000 packets

  • Question 865:

    Preparing an image drive to copy files to is the first step in Linux forensics. For this purpose, what would the following command accomplish? dcfldd if=/dev/zero of=/dev/hda bs=4096 conv=noerror, sync

    A. Fill the disk with zeros
    B. Low-level format
    C. Fill the disk with 4096 zeros
    D. Copy files from the master disk to the slave disk on the secondary IDE controller

  • Question 866:

    You are a Computer Hacking Forensic Investigator (CHFI) employed by an international tech firm. One of your tasks involves overseeing andproviding guidance on legal considerations during digital forensic investigations across different jurisdictions. One day, you find yourself dealingwith unauthorized system access and data alteration incidents across multiple branches in Germany, Italy, Canada, Singapore, Belgium, Brazil, thePhilippines, and Hong Kong.

    Recognizing that different countries have different laws that can impact the investigation, which of the followinglegal provisions should you apply when the main offence is the unauthorized modification of computer data?

    A. Canada's Criminal Code Section 342. 1 (Obtain any computer service and interception of a computer system)
    B. Italy's Penal Code Article 615 ter (Unauthorized access to a computer or telecommunication systems)
    C. Belgium's Article 550(b) of the Criminal Code (Exceeding power of access to a computer system)
    D. Germany's Penal Code Section 303a (Alteration of Data)

  • Question 867:

    Which set of anti-forensic tools/techniques allows a program to compress and/or encrypt an executable file to hide attack tools from being detected by reverse-engineering or scanning?

    A. Emulators
    B. Botnets
    C. Password crackers
    D. Packers

  • Question 868:

    What does Locard's Exchange Principle state?

    A. Any information of probative value that is either stored or transmitted in a digital form
    B. Digital evidence must have some characteristics to be disclosed in the court of law
    C. Anyone or anything, entering a crime scene takes something of the scene with them, and leaves something of themselves behind when they leave
    D. Forensic investigators face many challenges during forensics investigation of a digital crime, such as extracting, preserving, and analyzing the digital evidence

  • Question 869:

    You are working in the security Department of law firm. One of the attorneys asks you about the topic of sending fake email because he has a client who has been charged with doing just that. His client alleges that he is innocent and that there is no way for a fake email to actually be sent. You inform the attorney that his client is mistaken and that fake email is possibility and that you can prove it. You return to your desk and craft a fake email to the attorney that appears to come from his boss.

    What port do you send the email to on the company SMTP server?

    A. 10
    B. 25
    C. 110
    D. 135

  • Question 870:

    Identify the location of Recycle Bin on a Windows 7 machine that uses NTFS file system to store and retrieve files on the hard disk.

    A. Drive:\RECYCLER
    B. Drive:\RECYCLED
    C. Drive:\$Recycle.Bin
    D. C:\RECYCLED

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.