nerdexam
EC-CouncilEC-Council

312-49 · Question #282

312-49 Question #282: Real Exam Question with Answer & Explanation

The correct answer is B: host-based IDS systems (HIDS). NIDS and HIDS are types of IDS systems, Host or Network, and addresses placement of the Anomaly detection is based on behavior analysis, and if you read the question, the question says "behavior" and if the behavior is unporedictable, then the IDS won't know what is normal and

Submitted by noor.lb· Apr 18, 2026Computer Forensics in Today's World

Question

Which Intrusion Detection System (IDS) usually produces the most false alarms due to the unpredictable behaviors of users and networks?

Options

  • Anetwork-based IDS systems (NIDS)
  • Bhost-based IDS systems (HIDS)
  • Canomaly detection
  • Dsignature recognition

Explanation

NIDS and HIDS are types of IDS systems, Host or Network, and addresses placement of the Anomaly detection is based on behavior analysis, and if you read the question, the question says "behavior" and if the behavior is unporedictable, then the IDS won't know what is normal and

Topics

#Intrusion Detection System (IDS)#Anomaly Detection#False Positives#HIDS

Community Discussion

No community discussion yet for this question.

Full 312-49 PracticeBrowse All 312-49 Questions