nerdexam
EC-CouncilEC-Council

312-49 · Question #575

312-49 Question #575: Real Exam Question with Answer & Explanation

The correct answer is A: Cain & Abel. Cain & Abel is a well-known Windows password recovery and cracking tool used in forensic and security contexts. It supports dictionary attacks, brute-force attacks, and cryptanalysis attacks against various password types and encrypted files. The other tools serve different purpo

Submitted by femi9· Apr 18, 2026Disk Forensics

Question

A forensic examiner is examining a Windows system seized from a crime scene. During the examination of a suspect file, he discovered that the file is password protected. He tried guessing the password using the suspect's available information but without any success. Which of the following tool can help the investigator to solve this issue?

Options

  • ACain & Abel
  • BXplico
  • CRecuva
  • DColasoft's Capsa

Explanation

Cain & Abel is a well-known Windows password recovery and cracking tool used in forensic and security contexts. It supports dictionary attacks, brute-force attacks, and cryptanalysis attacks against various password types and encrypted files. The other tools serve different purposes: Xplico is a network traffic analysis/reconstruction tool, Recuva is a deleted file recovery tool, and Colasoft Capsa is a network packet analyzer. None of those three have password cracking capabilities.

Topics

#Password Recovery#Forensic Tools#Windows Forensics

Community Discussion

No community discussion yet for this question.

Full 312-49 PracticeBrowse All 312-49 Questions