312-50V12 Exam Details

  • Exam Code
    :312-50V12
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v12)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :596 Q&As
  • Last Updated
    :May 30, 2026

EC-COUNCIL 312-50V12 Online Questions & Answers

  • Question 491:

    An Intrusion Detection System (IDS) has alerted the network administrator to a possibly malicious sequence of packets sent to a Web server in the network's external DMZ. The packet traffic was captured by the IDS and saved to a PCAP file. What type of network tool can be used to determine if these packets are genuinely malicious or simply a false positive?

    A. Protocol analyzer
    B. Network sniffer
    C. Intrusion Prevention System (IPS)
    D. Vulnerability scanner

  • Question 492:

    What did the following commands determine?

    A. That the Joe account has a SID of 500
    B. These commands demonstrate that the guest account has NOT been disabled
    C. These commands demonstrate that the guest account has been disabled
    D. That the true administrator is Joe
    E. Issued alone, these commands prove nothing

  • Question 493:

    Mary, a penetration tester, has found password hashes in a client system she managed to breach. She needs to use these passwords to continue with the test, but she does not have time to find the passwords that correspond to these

    hashes.

    Which type of attack can she implement in order to continue?

    A. LLMNR/NBT-NS poisoning
    B. Internal monologue attack
    C. Pass the ticket
    D. Pass the hash

  • Question 494:

    If you want to only scan fewer ports than the default scan using Nmap tool, which option would you use?

    A. -r
    B. -F
    C. -P
    D. -sP

  • Question 495:

    Jake, a network security specialist, is trying to prevent network-level session hijacking attacks in his company. While studying different types of such attacks, he learns about a technique where an attacker inserts their machine into the communication between a client and a server, making it seem like the packets are flowing through the original path. This technique is primarily used to reroute the packets. Which of the following types of network-level session hijacking attacks is Jake studying?

    A. RST Hijacking
    B. Man-in-the-middle Attack Using Forged ICMP and ARP Spoofing
    C. UDP Hijacking
    D. TCP/IP Hijacking

  • Question 496:

    A new wireless client is configured to join an 802.11 network. This client uses the same hardware and software as many of the other clients on the network. The client can see the network but cannot connect. A wireless packet sniffer shows that the Wireless Access Point (WAP) is not responding to the association requests being sent by the wireless client. What is a possible source of this problem?

    A. The WAP does not recognize the client's MAC address
    B. The client cannot see the SSID of the wireless network
    C. Client is configured for the wrong channel
    D. The wireless client is not configured to use DHCP

  • Question 497:

    While browsing his Facebook feed, Matt sees a picture one of his friends posted with the caption, "Learn more about your friends!" along with a number of personal questions. Matt is suspicious and texts his friend, who confirms that he did indeed post it. With assurance that the post is legitimate, Matt responds to the questions in the post. A few days later, Matt's bank account is accessed, and the password is changed. What most likely happened?

    A. Matt inadvertently provided the answers to his security questions when responding to the post.
    B. Matt's bank-account login information was brute forced.
    C. Matt Inadvertently provided his password when responding to the post.
    D. Matt's computer was infected with a keylogger.

  • Question 498:

    What is correct about digital signatures?

    A. A digital signature cannot be moved from one signed document to another because it is the hash of the original document encrypted with the private key of the signing party.
    B. Digital signatures may be used in different documents of the same type.
    C. A digital signature cannot be moved from one signed document to another because it is a plain hash of the document content.
    D. Digital signatures are issued once for each user and can be used everywhere until they expire.

  • Question 499:

    During the process of encryption and decryption, what keys are shared?

    A. Private keys
    B. User passwords
    C. Public keys
    D. Public and private keys

  • Question 500:

    Which of the following commands checks for valid users on an SMTP server?

    A. RCPT
    B. CHK
    C. VRFY
    D. EXPN

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V12 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.