Exam Details

  • Exam Code
    :312-49V10
  • Exam Name
    :EC-Council Certified Computer Hacking Forensic Investigator (V10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1006 Q&As
  • Last Updated
    :Apr 12, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-49V10 Questions & Answers

  • Question 661:

    Wireless access control attacks aim to penetrate a network by evading WLAN access control measures, such as AP MAC filters and Wi-Fi port access controls.

    Which of the following wireless access control attacks allows the attacker to set up a rogue access point outside the corporate perimeter, and then lure the employees of the organization to connect to it?

    A. War driving

    B. Rogue access points

    C. MAC spoofing

    D. Client mis-association

  • Question 662:

    In an echo data hiding technique, the secret message is embedded into a __________as an echo.

    A. Cover audio signal

    B. Phase spectrum of a digital signal

    C. Pseudo-random signal

    D. Pseudo- spectrum signal

  • Question 663:

    A steganographic file system is a method to store the files in a way that encrypts and hides the data without the knowledge of others

    A. True

    B. False

  • Question 664:

    Mobile phone forensics is the science of recovering digital evidence from a mobile phone under forensically sound conditions.

    A. True

    B. False

  • Question 665:

    Windows Security Event Log contains records of login/logout activity or other security- related events specified by the system's audit policy. What does event ID 531 in Windows Security Event Log indicates?

    A. A user successfully logged on to a computer

    B. The logon attempt was made with an unknown user name or a known user name with a bad password

    C. An attempt was made to log on with the user account outside of the allowed time

    D. A logon attempt was made using a disabled account

  • Question 666:

    Graphics Interchange Format (GIF) is a ___________RGB bitmap Image format for Images with up to 256 distinct colors per frame.

    A. 8-bit

    B. 16-bit

    C. 24-bit

    D. 32-bit

  • Question 667:

    What is cold boot (hard boot)?

    A. It is the process of starting a computer from a powered-down or off state

    B. It is the process of restarting a computer that is already turned on through the operating system

    C. It is the process of shutting down a computer from a powered-on or on state

    D. It is the process of restarting a computer that is already in sleep mode

  • Question 668:

    File signature analysis involves collecting information from the __________ of a file to determine the type and function of the file

    A. First 10 bytes

    B. First 20 bytes

    C. First 30 bytes

    D. First 40 bytes

  • Question 669:

    Why is it Important to consider health and safety factors in the work carried out at all stages of the forensic process conducted by the forensic analysts?

    A. This is to protect the staff and preserve any fingerprints that may need to be recovered at a later date

    B. All forensic teams should wear protective latex gloves which makes them look professional and cool

    C. Local law enforcement agencies compel them to wear latest gloves

    D. It is a part of ANSI 346 forensics standard

  • Question 670:

    TCP/IP (Transmission Control Protocol/Internet Protocol) is a communication protocol used to connect different hosts in the Internet. It contains four layers, namely the network interface layer. Internet layer, transport layer, and application layer.

    Which of the following protocols works under the transport layer of TCP/IP?

    A. UDP

    B. HTTP

    C. FTP

    D. SNMP

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-49V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.