312-50V11 Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :May 28, 2026

EC-COUNCIL 312-50V11 Online Questions & Answers

  • Question 441:

    Nedved is an IT Security Manager of a bank in his country. One day. he found out that there is a security breach to his company's email server based on analysis of a suspicious connection from the email server to an unknown IP Address. What is the first thing that Nedved needs to do before contacting the incident response team?

    A. Leave it as it Is and contact the incident response te3m right away
    B. Block the connection to the suspicious IP Address from the firewall
    C. Disconnect the email server from the network
    D. Migrate the connection to the backup email server

  • Question 442:

    Andrew is an Ethical Hacker who was assigned the task of discovering all the active devices hidden by a restrictive firewall in the IPv4 range in a given target network. Which of the following host discovery techniques must he use to perform the given task?

    A. UDP scan
    B. TCP Maimon scan
    C. arp ping scan
    D. ACK flag probe scan

  • Question 443:

    You are performing a penetration test for a client and have gained shell access to a Windows machine on the internal network. You intend to retrieve all DNS records for the internal domain, if the DNS server is at 192.168.10.2 and the domain name is abccorp.local, what command would you type at the nslookup prompt to attempt a zone transfer?

    A. list server=192.168.10.2 type=all
    B. is-d abccorp.local
    C. Iserver 192.168.10.2-t all
    D. List domain=Abccorp.local type=zone

  • Question 444:

    Alice, a professional hacker, targeted an organization's cloud services. She infiltrated the targets MSP provider by sending spear-phishing emails and distributed custom-made malware to compromise user accounts and gain remote access to the cloud service. Further, she accessed the target customer profiles with her MSP account, compressed the customer data, and stored them in the MSP. Then, she used this information to launch further attacks on the target organization. Which of the following cloud attacks did Alice perform in the above scenario?

    A. Cloud hopper attack
    B. Cloud cryptojacking
    C. Cloudborne attack
    D. Man-in-the-cloud (MITC) attack

  • Question 445:

    An Internet Service Provider (ISP) has a need to authenticate users connecting via analog modems, Digital Subscriber Lines (DSL), wireless data services, and Virtual Private Networks (VPN) over a Frame Relay network. Which AAA protocol is the most likely able to handle this requirement?

    A. TACACS+
    B. DIAMETER
    C. Kerberos
    D. RADIUS

  • Question 446:

    Dorian Is sending a digitally signed email to Polly, with which key is Dorian signing this message and how is Poly validating It?

    A. Dorian is signing the message with his public key. and Poly will verify that the message came from Dorian by using Dorian's private key.
    B. Dorian Is signing the message with Polys public key. and Poly will verify that the message came from Dorian by using Dorian's public key.
    C. Dorian is signing the message with his private key. and Poly will verify that the message came from Dorian by using Dorian's public key.
    D. Dorian is signing the message with Polys private key. and Poly will verify mat the message came from Dorian by using Dorian's public key.

  • Question 447:

    You are using a public Wi-Fi network inside a coffee shop. Before surfing the web, you use your VPN to prevent intruders from sniffing your traffic. If you did not have a VPN, how would you identify whether someone is performing an ARP spoofing attack on your laptop?

    A. You should check your ARP table and see if there is one IP address with two different MAC addresses.
    B. You should scan the network using Nmap to check the MAC addresses of all the hosts and look for duplicates.
    C. You should use netstat to check for any suspicious connections with another IP address within the LAN.
    D. You cannot identify such an attack and must use a VPN to protect your traffic, r

  • Question 448:

    What is the proper response for a NULL scan if the port is open?

    A. SYN
    B. ACK
    C. FIN
    D. PSH
    E. RST
    F. No response

  • Question 449:

    Firewalk has just completed the second phase (the scanning phase) and a technician receives the output shown below. What conclusions can be drawn based on these scan results? TCP port 21 no response TCP port 22 no response TCP port 23 Time-to-live exceeded

    A. The lack of response from ports 21 and 22 indicate that those services are not running on the destination server
    B. The scan on port 23 was able to make a connection to the destination host prompting the firewall to respond with a TTL error
    C. The scan on port 23 passed through the filtering device. This indicates that port 23 was not blocked at the firewall
    D. The firewall itself is blocking ports 21 through 23 and a service is listening on port 23 of the target host

  • Question 450:

    Which Metasploit Framework tool can help penetration tester for evading Anti-virus Systems?

    A. msfpayload
    B. msfcli
    C. msfd
    D. msfencode

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.