Exam Details

  • Exam Code
    :312-49V10
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1006 Q&As
  • Last Updated
    :Apr 12, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-49V10 Questions & Answers

  • Question 311:

    After undergoing an external IT audit, George realizes his network is vulnerable to DDoS attacks. What countermeasures could he take to prevent DDoS attacks?

    A. Enable BGP

    B. Enable direct broadcasts

    C. Disable BGP

    D. Disable direct broadcasts

  • Question 312:

    Printing under a Windows Computer normally requires which one of the following files types to be created?

    A. EME

    B. MEM

    C. EMF

    D. CME

  • Question 313:

    Sectors in hard disks typically contain how many bytes?

    A. 256

    B. 512

    C. 1024

    D. 2048

  • Question 314:

    Click on the Exhibit Button To test your website for vulnerabilities, you type in a Quotation mark (? for the username field. After you click Ok, you receive the following error message window: What can you infer from this error window?

    A. SQL injection is not possible

    B. SQL injection is possible

    C. The user for line 3306 in the SQL database has a weak password

    D. The Quotation mark (? is a valid username

  • Question 315:

    Volatile Memory is one of the leading problems for forensics. Worms such as code Red are memory resident and do not write themselves to the hard drive, if you turn the system off they disappear. In a lab environment, which of the following options would you suggest as the most appropriate to overcome the problem of capturing volatile memory?

    A. Use Vmware to be able to capture the data in memory and examine it

    B. Give the Operating System a minimal amount of memory, forcing it to use a swap file

    C. Create a Separate partition of several hundred megabytes and place the swap file there

    D. Use intrusion forensic techniques to study memory resident infections

  • Question 316:

    All Blackberry email is eventually sent and received through what proprietary RIM-operated mechanism?

    A. Blackberry Message Center

    B. Microsoft Exchange

    C. Blackberry WAP gateway

    D. Blackberry WEP gateway

  • Question 317:

    John and Hillary works at the same department in the company. John wants to find out Hillary's network password so he can take a look at her documents on the file server. He enables Lophtcrack program to sniffing mode. John sends Hillary an email with a link to Error! Reference source not found. What information will he be able to gather from this?

    A. The SID of Hillary network account

    B. The SAM file from Hillary computer

    C. The network shares that Hillary has permissions

    D. Hillary network username and password hash

  • Question 318:

    Steven has been given the task of designing a computer forensics lab for the company he works for. He has found documentation on all aspects of how to design a lab except the number of exits needed. How many exits should Steven include in his design for the computer forensics lab?

    A. Three

    B. One

    C. Two

    D. Four

  • Question 319:

    What will the following command accomplish in Linux? fdisk /dev/hda

    A. Partition the hard drive

    B. Format the hard drive

    C. Delete all files under the /dev/hda folder

    D. Fill the disk with zeros

  • Question 320:

    You should make at least how many bit-stream copies of a suspect drive?

    A. 1

    B. 2

    C. 3

    D. 4

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.