312-50V10 Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V10 Online Questions & Answers

  • Question 631:

    What is the main reason the use of a stored biometric is vulnerable to an attack?

    A. The digital representation of the biometric might not be unique, even if the physical characteristic is unique.
    B. Authentication using a stored biometric compares a copy to a copy instead of the original to a copy.
    C. A stored biometric is no longer "something you are" and instead becomes "something you have".
    D. A stored biometric can be stolen and used by an attacker to impersonate the individual identified by the biometric.

  • Question 632:

    You are performing information gathering for an important penetration test. You have found pdf, doc, and images in your objective. You decide to extract metadata from these files and analyze it. What tool will help you with the task?

    A. Metagoofil
    B. Armitage
    C. Dimitry
    D. cdpsnarf

  • Question 633:

    A hacker was able to sniff packets on a company's wireless network. The following information was discovered:

    Using the Exlcusive OR, what was the original message?

    A. 00101000 11101110
    B. 11010111 00010001
    C. 00001101 10100100
    D. 11110010 01011011

  • Question 634:

    Which of the following BEST describes the mechanism of a Boot Sector Virus?

    A. Moves the MBR to another location on the hard disk and copies itself to the original location of the MBR
    B. Moves the MBR to another location on the RAM and copies itself to the original location of the MBR
    C. Overwrites the original MBR and only executes the new virus code
    D. Modifies directory table entries so that directory entries point to the virus code instead of the actual program

  • Question 635:

    Which of the following lists are valid data-gathering activities associated with a risk assessment?

    A. Threat identification, vulnerability identification, control analysis
    B. Threat identification, response identification, mitigation identification
    C. Attack profile, defense profile, loss profile
    D. System profile, vulnerability identification, security determination

  • Question 636:

    The "black box testing" methodology enforces which kind of restriction?

    A. Only the external operation of a system is accessible to the tester.
    B. Only the internal operation of a system is known to the tester.
    C. The internal operation of a system is only partly accessible to the tester.
    D. The internal operation of a system is completely known to the tester.

  • Question 637:

    Identify the correct terminology that defines the above statement.

    A. Vulnerability Scanning
    B. Penetration Testing
    C. Security Policy Implementation
    D. Designing Network Security

  • Question 638:

    The Payment Card Industry Data Security Standard (PCI DSS) contains six different categories of control objectives. Each objective contains one or more requirements, which must be followed in order to achieve compliance. Which of the following requirements would best fit under the objective, "Implement strong access control measures"?

    A. Regularly test security systems and processes.
    B. Encrypt transmission of cardholder data across open, public networks.
    C. Assign a unique ID to each person with computer access.
    D. Use and regularly update anti-virus software on all systems commonly affected by malware.

  • Question 639:

    You have several plain-text firewall logs that you must review to evaluate network traffic. You know that in order to do fast, efficient searches of the logs you must use regular expressions. Which command-line utility are you most likely to use?

    A. Grep
    B. Notepad
    C. MS Excel
    D. Relational Database

  • Question 640:

    In this attack, a victim receives an e-mail claiming from PayPal stating that their account has been disabled and confirmation is required before activation. The attackers then scam to collect not one but two credit card numbers, ATM PIN number and other personal details. Ignorant users usually fall prey to this scam.

    Which of the following statement is incorrect related to this attack?

    A. Do not reply to email messages or popup ads asking for personal or financial information
    B. Do not trust telephone numbers in e-mails or popup ads
    C. Review credit card and bank account statements regularly
    D. Antivirus, anti-spyware, and firewall software can very easily detect these type of attacks
    E. Do not send credit card numbers, and personal or financial information via e-mail

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.