312-50V10 Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V10 Online Questions & Answers

  • Question 551:

    What is the main security service a cryptographic hash provides?

    A. Integrity and ease of computation
    B. Message authentication and collision resistance
    C. Integrity and collision resistance
    D. Integrity and computational in-feasibility

  • Question 552:

    The chance of a hard drive failure is once every three years. The cost to buy a new hard drive is $300. It will require 10 hours to restore the OS and software to the new hard disk. It will require a further 4 hours to restore the database from the last backup to the new hard disk. The recovery person earns $10/hour. Calculate the SLE, ARO, and ALE. Assume the EF = 1 (100%).

    What is the closest approximate cost of this replacement and recovery operation per year?

    A. $146
    B. $1320
    C. $440
    D. $100

  • Question 553:

    An engineer is learning to write exploits in C++ and is using the exploit tool Backtrack. The engineer wants to compile the newest C++ exploit and name it calc.exe. Which command would the engineer use to accomplish this?

    A. g++ hackersExploit.cpp -o calc.exe
    B. g++ hackersExploit.py -o calc.exe
    C. g++ -i hackersExploit.pl -o calc.exe
    D. g++ --compile

  • Question 554:

    What is a "Collision attack" in cryptography?

    A. Collision attacks try to find two inputs producing the same hash.
    B. Collision attacks try to break the hash into two parts, with the same bytes in each part to get the private key.
    C. Collision attacks try to get the public key.
    D. Collision attacks try to break the hash into three parts to get the plaintext value.

  • Question 555:

    A penetration tester is attempting to scan an internal corporate network from the internet without alerting the border sensor. Which is the most efficient technique should the tester consider using?

    A. Spoofing an IP address
    B. Tunneling scan over SSH
    C. Tunneling over high port numbers
    D. Scanning using fragmented IP packets

  • Question 556:

    Which of the following describes the characteristics of a Boot Sector Virus?

    A. Moves the MBR to another location on the hard disk and copies itself to the original location of the MBR
    B. Moves the MBR to another location on the RAM and copies itself to the original location of the MBR
    C. Modifies directory table entries so that directory entries point to the virus code instead of the actual program
    D. Overwrites the original MBR and only executes the new virus code

  • Question 557:

    The network team has well-established procedures to follow for creating new rules on the firewall. This includes having approval from a manager prior to implementing any new rules. While reviewing the firewall configuration, you notice a recently implemented rule but cannot locate manager approval for it. What would be a good step to have in the procedures for a situation like this?

    A. Have the network team document the reason why the rule was implemented without prior manager approval.
    B. Monitor all traffic using the firewall rule until a manager can approve it.
    C. Do not roll back the firewall rule as the business may be relying upon it, but try to get manager approval as soon as possible.
    D. Immediately roll back the firewall rule until a manager can approve it

  • Question 558:

    You are a Network Security Officer. You have two machines. The first machine (192.168.0.99) has snort installed, and the second machine (192.168.0.150) has kiwi syslog installed. You perform a syn scan in your network, and you notice that kiwi syslog is not receiving the alert message from snort. You decide to run wireshark in the snort machine to check if the messages are going to the kiwi syslog machine.

    What wireshark filter will show the connections from the snort machine to kiwi syslog machine?

    A. tcp.dstport==514 andand ip.dst==192.168.0.150
    B. tcp.srcport==514 andand ip.src==192.168.0.99
    C. tcp.dstport==514 andand ip.dst==192.168.0.0/16
    D. tcp.srcport==514 andand ip.src==192.168.150

  • Question 559:

    You are logged in as a local admin on a Windows 7 system and you need to launch the Computer Management Console from command line. Which command would you use?

    A. c:\compmgmt.msc
    B. c:\services.msc
    C. c:\ncpa.cp
    D. c:\gpedit

  • Question 560:

    Which of the following processes evaluates the adherence of an organization to its stated security policy?

    A. Vulnerability assessment
    B. Penetration testing
    C. Risk assessment
    D. Security auditing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.