312-50V10 Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V10 Online Questions & Answers

  • Question 441:

    A security consultant is trying to bid on a large contract that involves penetration testing and reporting. The company accepting bids wants proof of work so the consultant prints out several audits that have been performed. Which of the following is likely to occur as a result?

    A. The consultant will ask for money on the bid because of great work.
    B. The consultant may expose vulnerabilities of other companies.
    C. The company accepting bids will want the same type of format of testing.
    D. The company accepting bids will hire the consultant because of the great work performed.

  • Question 442:

    Fred is the network administrator for his company. Fred is testing an internal switch.

    From an external IP address, Fred wants to try and trick this switch into thinking it already has established a session with his computer. How can Fred accomplish this?

    A. Fred can accomplish this by sending an IP packet with the RST/SIN bit and the source address of his computer.
    B. He can send an IP packet with the SYN bit and the source address of his computer.
    C. Fred can send an IP packet with the ACK bit set to zero and the source address of the switch.
    D. Fred can send an IP packet to the switch with the ACK bit and the source address of his machine.

  • Question 443:

    While you were gathering information as part of security assessments for one of your clients, you were able to gather data that show your client is involved with fraudulent activities. What should you do?

    A. Immediately stop work and contact the proper legal authorities
    B. Ignore the data and continue the assessment until completed as agreed
    C. Confront the client in a respectful manner and ask her about the data
    D. Copy the data to removable media and keep it in case you need it

  • Question 444:

    What is one thing a tester can do to ensure that the software is trusted and is not changing or tampering with critical data on the back end of a system it is loaded on?

    A. Proper testing
    B. Secure coding principles
    C. Systems security and architecture review
    D. Analysis of interrupts within the software

  • Question 445:

    A certified ethical hacker (CEH) completed a penetration test of the main headquarters of a company almost two months ago, but has yet to get paid. The customer is suffering from financial problems, and the CEH is worried that the company will go out of business and end up not paying. What actions should the CEH take?

    A. Threaten to publish the penetration test results if not paid.
    B. Follow proper legal procedures against the company to request payment.
    C. Tell other customers of the financial problems with payments from this company.
    D. Exploit some of the vulnerabilities found on the company webserver to deface it.

  • Question 446:

    Passive reconnaissance involves collecting information through which of the following?

    A. Social engineering
    B. Network traffic sniffing
    C. Man in the middle attacks
    D. Publicly accessible sources

  • Question 447:

    Chandler works as a pen-tester in an IT-firm in New York. As a part of detecting viruses in the systems, he uses a detection method where the anti-virus executes the malicious codes on a virtual machine to simulate CPU and memory activities. Which type of virus detection method did Chandler use in this context?

    A. Heuristic Analysis
    B. Code Emulation
    C. Integrity checking
    D. Scanning

  • Question 448:

    Which of the following LM hashes represent a password of less than 8 characters? (Choose two.)

    A. BA810DBA98995F1817306D272A9441BB
    B. 44EFCE164AB921CQAAD3B435B51404EE
    C. 0182BD0BD4444BF836077A718CCDF409
    D. CEC52EB9C8E3455DC2265B23734E0DAC
    E. B757BF5C0D87772FAAD3B435B51404EE
    F. E52CAC67419A9A224A3B108F3FA6CB6D

  • Question 449:

    A company's Web development team has become aware of a certain type of security vulnerability in their Web software. To mitigate the possibility of this vulnerability being exploited, the team wants to modify the software requirements to disallow users from entering HTML as input into their Web application.

    What kind of Web application vulnerability likely exists in their software?

    A. Cross-site scripting vulnerability
    B. Cross-site Request Forgery vulnerability
    C. SQL injection vulnerability
    D. Web site defacement vulnerability

  • Question 450:

    Bob received this text message on his mobile phone: ""Hello, this is Scott Smelby from the Yahoo Bank. Kindly contact me for a vital transaction on: [email protected]"". Which statement below is true?

    A. This is probably a legitimate message as it comes from a respectable organization.
    B. Bob should write to [email protected] to verify the identity of Scott.
    C. This is a scam as everybody can get a @yahoo address, not the Yahoo customer service employees.
    D. This is a scam because Bob does not know Scott.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.