312-50V11 Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :May 28, 2026

EC-COUNCIL 312-50V11 Online Questions & Answers

  • Question 241:

    Which among the following is the best example of the hacking concept called "clearing tracks"?

    A. After a system is breached, a hacker creates a backdoor to allow re-entry into a system.
    B. During a cyberattack, a hacker injects a rootkit into a server.
    C. An attacker gains access to a server through an exploitable vulnerability.
    D. During a cyberattack, a hacker corrupts the event logs on all machines.

  • Question 242:

    You are the Network Admin, and you get a complaint that some of the websites are no longer accessible. You try to ping the servers and find them to be reachable. Then you type the IP address and then you try on the browser, and find it to

    be accessible. But they are not accessible when you try using the URL.

    What may be the problem?

    A. Traffic is Blocked on UDP Port 53
    B. Traffic is Blocked on TCP Port 80
    C. Traffic is Blocked on TCP Port 54
    D. Traffic is Blocked on UDP Port 80

  • Question 243:

    Log monitoring tools performing behavioral analysis have alerted several suspicious logins on a Linux server occurring during non-business hours. After further examination of all login activities, it is noticed that none of the logins have occurred during typical work hours. A Linux administrator who is investigating this problem realizes the system time on the Linux server is wrong by more than twelve hours. What protocol used on Linux servers to synchronize the time has stopped working?

    A. Time Keeper
    B. NTP
    C. PPP
    D. OSPP

  • Question 244:

    Gavin owns a white-hat firm and is performing a website security audit for one of his clients. He begins by running a scan which looks for common misconfigurations and outdated software versions. Which of the following tools is he most likely using?

    A. Nikto
    B. Nmap
    C. Metasploit
    D. Armitage

  • Question 245:

    You are analysing traffic on the network with Wireshark. You want to routinely run a cron job which will run the capture against a specific set of IPs - 192.168.8.0/24. What command you would use?

    A. wireshark --fetch ''192.168.8*''
    B. wireshark --capture --local masked 192.168.8.0 ---range 24
    C. tshark -net 192.255.255.255 mask 192.168.8.0
    D. sudo tshark -f''net 192 .68.8.0/24''

  • Question 246:

    Stella, a professional hacker, performs an attack on web services by exploiting a vulnerability that provides additional routing information in the SOAP header to support asynchronous communication. This further allows the transmission of web-service requests and response messages using different TCP connections. Which of the following attack techniques is used by Stella to compromise the web services?

    A. XML injection
    B. WS-Address spoofing
    C. SOAPAction spoofing
    D. Web services parsing attacks

  • Question 247:

    To create a botnet. the attacker can use several techniques to scan vulnerable machines. The attacker first collects Information about a large number of vulnerable machines to create a list. Subsequently, they infect the machines. The list Is divided by assigning half of the list to the newly compromised machines. The scanning process runs simultaneously. This technique ensures the spreading and installation of malicious code in little time.

    Which technique is discussed here?

    A. Hit-list-scanning technique
    B. Topological scanning technique
    C. Subnet scanning technique
    D. Permutation scanning technique

  • Question 248:

    Session splicing is an IDS evasion technique in which an attacker delivers data in multiple, small sized packets to the target computer, making it very difficult for an IDS to detect the attack signatures. Which tool can be used to perform session splicing attacks?

    A. tcpsplice
    B. Burp
    C. Hydra
    D. Whisker

  • Question 249:

    Which regulation defines security and privacy controls for Federal information systems and organizations?

    A. HIPAA
    B. EU Safe Harbor
    C. PCI-DSS
    D. NIST-800-53

  • Question 250:

    MX record priority increases as the number increases. (True/False.)

    A. True
    B. False

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.