312-50V10 Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V10 Online Questions & Answers

  • Question 151:

    A virus that attempts to install itself inside the file it is infecting is called?

    A. Tunneling virus
    B. Cavity virus
    C. Polymorphic virus
    D. Stealth virus

  • Question 152:

    What attack is used to crack passwords by using a precomputed table of hashed passwords?

    A. Brute Force Attack
    B. Hybrid Attack
    C. Rainbow Table Attack D. Dictionary Attack

  • Question 153:

    One of the Forbes 500 companies has been subjected to a large scale attack. You are one of the shortlisted pen testers that they may hire. During the interview with the CIO, he emphasized that he wants to totally eliminate all risks. What is one of the first things you should do when hired?

    A. Interview all employees in the company to rule out possible insider threats.
    B. Establish attribution to suspected attackers.
    C. Explain to the CIO that you cannot eliminate all risk, but you will be able to reduce risk to acceptable levels.
    D. Start the Wireshark application to start sniffing network traffic.

  • Question 154:

    While doing a technical assessment to determine network vulnerabilities, you used the TCP XMAS scan. What would be the response of all open ports?

    A. The port will send an ACK
    B. The port will send a SYN
    C. The port will ignore the packets
    D. The port will send an RST

  • Question 155:

    Cross-site request forgery involves:

    A. A request sent by a malicious user from a browser to a server
    B. Modification of a request by a proxy between client and server
    C. A browser making a request to a server without the user's knowledge
    D. A server making a request to another server without the user's knowledge

  • Question 156:

    What is the primary drawback to using advanced encryption standard (AES) algorithm with a 256 bit key to share sensitive data?

    A. Due to the key size, the time it will take to encrypt and decrypt the message hinders efficient communication.
    B. To get messaging programs to function with this algorithm requires complex configurations.
    C. It has been proven to be a weak cipher; therefore, should not be trusted to protect sensitive data.
    D. It is a symmetric key algorithm, meaning each recipient must receive the key through a different channel than the message.

  • Question 157:

    What kind of detection techniques is being used in antivirus softwares that identifies malware by collecting data from multiple protected systems and instead of analyzing files locally it's made on the premiers environment-

    A. VCloud based
    B. Honypot based
    C. Behaviour based
    D. Heuristics based

  • Question 158:

    This international organization regulates billions of transactions daily and provides security guidelines to protect personally identifiable information (PII). These security controls provide a baseline and prevent low-level hackers sometimes known as script kiddies from causing a data breach.

    Which of the following organizations is being described?

    A. Payment Card Industry (PCI)
    B. Center for Disease Control (CDC)
    C. Institute of Electrical and Electronics Engineers (IEEE)
    D. International Security Industry Organization (ISIO)

  • Question 159:

    A user on your Windows 2000 network has discovered that he can use L0phtcrack to sniff the SMB exchanges which carry user logons. The user is plugged into a hub with 23 other systems.

    However, he is unable to capture any logons though he knows that other users are logging in.

    What do you think is the most likely reason behind this?

    A. There is a NIDS present on that segment.
    B. Kerberos is preventing it.
    C. Windows logons cannot be sniffed.
    D. L0phtcrack only sniffs logons to web servers.

  • Question 160:

    A recent security audit revealed that there were indeed several occasions that the company's network was breached. After investigating, you discover that your IDS is not configured properly and therefore is unable to trigger alarms when needed. What type of alert is the IDS giving?

    A. True Positive
    B. False Negative
    C. False Positive
    D. False Positive

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.