312-50V11 Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :May 28, 2026

EC-COUNCIL 312-50V11 Online Questions & Answers

  • Question 451:

    Which of the following statements is FALSE with respect to Intrusion Detection Systems?

    A. Intrusion Detection Systems can be configured to distinguish specific content in network packets
    B. Intrusion Detection Systems can easily distinguish a malicious payload in an encrypted traffic
    C. Intrusion Detection Systems require constant update of the signature library
    D. Intrusion Detection Systems can examine the contents of the data n context of the network protocol

  • Question 452:

    Attacker Rony Installed a rogue access point within an organization's perimeter and attempted to Intrude into its internal network. Johnson, a security auditor, identified some unusual traffic in the internal network that is aimed at cracking the authentication mechanism. He immediately turned off the targeted network and tested for any weak and outdated security mechanisms that are open to attack. What is the type of vulnerability assessment performed by Johnson in the above scenario?

    A. Distributed assessment
    B. Wireless network assessment
    C. Most-based assessment
    D. Application assessment

  • Question 453:

    If you want to only scan fewer ports than the default scan using Nmap tool, which option would you use?

    A. -r
    B. -F
    C. -P
    D. -sP

  • Question 454:

    Which type of sniffing technique is generally referred as MiTM attack?

    A. Password Sniffing
    B. ARP Poisoning
    C. Mac Flooding
    D. DHCP Sniffing

  • Question 455:

    Stephen, an attacker, targeted the industrial control systems of an organization. He generated a fraudulent email with a malicious attachment and sent it to employees of the target organization. An employee who manages the sales software of the operational plant opened the fraudulent email and clicked on the malicious attachment. This resulted in the malicious attachment being downloaded and malware being injected into the sales software maintained in the victim's system. Further, the malware propagated itself to other networked systems, finally damaging the industrial automation components. What is the attack technique used by Stephen to damage the industrial systems?

    A. Spear-phishing attack
    B. SMishing attack
    C. Reconnaissance attack
    D. HMI-based attack

  • Question 456:

    _________ is a tool that can hide processes from the process list, can hide files, registry entries, and intercept keystrokes.

    A. Trojan
    B. RootKit
    C. DoS tool
    D. Scanner
    E. Backdoor

  • Question 457:

    Susan has attached to her company's network. She has managed to synchronize her boss's sessions with that of the file server. She then intercepted his traffic destined for the server, changed it the way she wanted to and then placed it on the server in his home directory.

    What kind of attack is Susan carrying on?

    A. A sniffing attack
    B. A spoofing attack
    C. A man in the middle attack
    D. A denial of service attack

  • Question 458:

    Boney, a professional hacker, targets an organization for financial benefits. He performs an attack by sending his session ID using an MITM attack technique. Boney first obtains a valid session ID by logging into a service and later feeds the same session 10 to the target employee. The session ID links the target employee to Boneys account page without disclosing any information to the victim. When the target employee clicks on the link, all the sensitive payment details entered in a form are linked to Boneys account. What is the attack performed by Boney in the above scenario?

    A. Session donation attack
    B. Session fixation attack
    C. Forbidden attack
    D. CRIME attack

  • Question 459:

    What useful information is gathered during a successful Simple Mail Transfer Protocol (SMTP) enumeration?

    A. The two internal commands VRFY and EXPN provide a confirmation of valid users, email addresses, aliases, and mailing lists.
    B. Reveals the daily outgoing message limits before mailboxes are locked
    C. The internal command RCPT provides a list of ports open to message traffic.
    D. A list of all mail proxy server addresses used by the targeted host

  • Question 460:

    Shellshock allowed an unauthorized user to gain access to a server. It affected many Internet-facing services, which OS did it not directly affect?

    A. Linux
    B. Unix
    C. OS X
    D. Windows

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.