312-50 Exam Details

  • Exam Code
    :312-50
  • Exam Name
    :Certified Ethical Hacker
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :765 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50 Online Questions & Answers

  • Question 91:

    ViruXine.W32 virus hides their presence by changing the underlying executable code. This Virus code mutates while keeping the original algorithm intact, the code changes itself each time it runs, but the function of the code (its semantics) will not change at all.

    Here is a section of the Virus code:

    What is this technique called?

    A. Polymorphic Virus
    B. Metamorphic Virus
    C. Dravidic Virus
    D. Stealth Virus

  • Question 92:

    Your company trainee Sandra asks you which are the four existing Regional Internet Registry (RIR's)?

    A. APNIC, PICNIC, ARIN, LACNIC
    B. RIPE NCC, LACNIC, ARIN, APNIC
    C. RIPE NCC, NANIC, ARIN, APNIC
    D. RIPE NCC, ARIN, APNIC, LATNIC

  • Question 93:

    What is the proper response for a X-MAS scan if the port is closed?

    A. SYN
    B. ACK
    C. FIN
    D. PSH
    E. RST
    F. No response

  • Question 94:

    You are scanning the target network for the first time. You are able to detect few convention open ports. While attempting to perform conventional service identification by connecting to the open ports, the scan yields either bad or no result. As you are unsure of the protocols in use, you want to discover as many different protocols as possible. Which of the following scan options can help you achieve this?

    A. Nessus sacn with TCP based pings
    B. Netcat scan with the switches
    C. Nmap scan with the P (ping scan) switch
    D. Nmap with the O (Raw IP Packets switch

  • Question 95:

    Ann would like to perform a reliable scan against a remote target. She is not concerned about being stealth at this point. Which of the following type of scans would be the most accurate and reliable option?

    A. A half-scan
    B. A UDP scan
    C. A TCP Connect scan
    D. A FIN scan

  • Question 96:

    What does the following command in "Ettercap" do? ettercap NCLzs quiet

    A. This command will provide you the entire list of hosts in the LAN
    B. This command will check if someone is poisoning you and will report its IP
    C. This command will detach ettercap from console and log all the sniffed passwords to a file
    D. This command broadcasts ping to scan the LAN instead of ARP request all the subset IPs

  • Question 97:

    One of your junior administrator is concerned with Windows LM hashes and password cracking. In your discussion with them, which of the following are true statements that you would point out? Select the best answers.

    A. John the Ripper can be used to crack a variety of passwords, but one limitation is that the output doesn't show if the password is upper or lower case.
    B. BY using NTLMV1, you have implemented an effective countermeasure to password cracking.
    C. SYSKEY is an effective countermeasure.
    D. If a Windows LM password is 7 characters or less, the hash will be passed with the following characters, in HEX- 00112233445566778899.
    E. Enforcing Windows complex passwords is an effective countermeasure.

  • Question 98:

    Destination unreachable administratively prohibited messages can inform the hacker to what?

    A. That a circuit level proxy has been installed and is filtering traffic
    B. That his/her scans are being blocked by a honeypot or jail
    C. That the packets are being malformed by the scanning software
    D. That a router or other packet-filtering device is blocking traffic
    E. That the network is functioning normally

  • Question 99:

    If you perform a port scan with a TCP ACK packet, what should an OPEN port return?

    A. RST
    B. No Reply
    C. SYN/ACK
    D. FIN

  • Question 100:

    What is a sniffing performed on a switched network called?

    A. Spoofed sniffing
    B. Passive sniffing
    C. Direct sniffing
    D. Active sniffing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.