312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 611:

    This TCP flag instructs the sending system to transmit all buffered data immediately.

    A. SYN
    B. RST
    C. PSH
    D. URG
    E. FIN

  • Question 612:

    You work for Acme Corporation as Sales Manager. The company has tight network security restrictions. You are trying to steal data from the company's Sales database (Sales.xls) and transfer them to your home computer. Your company filters and monitors traffic that leaves from the internal network to the Internet.

    How will you achieve this without raising suspicion?

    A. Encrypt the Sales.xls using PGP and e-mail it to your personal gmail account
    B. Package the Sales.xls using Trojan wrappers and telnet them back to your home computer
    C. You can conceal the Sales.xls database in another file like photo.jpg or other files and send it out in an innocent-looking email or file transfer using Steganography techniques
    D. Change the extension of Sales.xls to sales.txt and upload them as attachment to your Hotmail account

  • Question 613:

    An attacker scans a host with the below command. Which three flags are set?

    # nmap -sX host.domain.com

    A. This is SYN scan. SYN flag is set.
    B. This is Xmas scan. URG, PUSH and FIN are set.
    C. This is ACK scan. ACK flag is set.
    D. This is Xmas scan. SYN and ACK flags are set.

  • Question 614:

    Which of the following tools are used for enumeration? (Choose three.)

    A. SolarWinds
    B. USER2SID
    C. Cheops
    D. SID2USER
    E. DumpSec

  • Question 615:

    What tool can crack Windows SMB passwords simply by listening to network traffic?

    A. This is not possible
    B. Netbus
    C. NTFSDOS
    D. L0phtcrack

  • Question 616:

    A Nessus scan reveals a critical SSH vulnerability (CVSS 9.0) allowing potential remote code execution on a Linux server. What action should be immediately prioritized?

    A. Redirect SSH traffic to another server
    B. Treat the finding as a possible false positive
    C. Immediately apply vendor patches and reboot during scheduled downtime
    D. Temporarily isolate the affected server, conduct a forensic audit, and then patch

  • Question 617:

    A penetration tester is assessing an organization's cloud infrastructure and discovers misconfigured IAM policies on storage buckets. The IAM settings grant read and write permissions to any authenticated user. What is the most effective way to exploit this misconfiguration?

    A. Use leaked API keys to access the cloud storage buckets and exfiltrate data
    B. Execute a SQL injection attack on the organization's website to retrieve sensitive information
    C. Create a personal cloud account to authenticate and access the misconfigured storage buckets
    D. Perform a Cross-Site Scripting (XSS) attack on the cloud management portal to gain access

  • Question 618:

    A security analyst is preparing to analyze a potentially malicious program believed to have infiltrated an organization's network. To ensure the safety and integrity of the production environment, the analyst decided to use a sheep dip computer for the analysis. Before initiating the analysis, what key step should the analyst take?

    A. Run the potentially malicious program on the sheep dip computer to determine its behavior
    B. Store the potentially malicious program on an external medium, such as a CD-ROM
    C. Connect the sheep dip computer to the organization's internal network
    D. install the potentially malicious program on the sheep dip computer

  • Question 619:

    Which of the following programs is usually targeted at Microsoft Office products?

    A. Polymorphic virus
    B. Multipart virus
    C. Macro virus
    D. Stealth virus

  • Question 620:

    A penetration tester discovers malware on a system that disguises itself as legitimate software but performs malicious actions in the background. What type of malware is this?

    A. Trojan
    B. Spyware
    C. Worm
    D. Rootkit

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.