312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 761:

    The change of a hard drive failure is once every three years. The cost to buy a new hard drive is $300. It will require 10 hours to restore the OS and software to the new hard disk. It will require a further 4 hours to restore the database from the last backup to the new hard disk. The recovery person earns $10/hour. Calculate the SLE, ARO, and ALE. Assume the EF 1(100%). What is the closest approximate cost of this replacement and recovery operation per year?

    A. $1320
    B. $440
    C. $100
    D. $146

  • Question 762:

    What information security law or standard aims at protecting stakeholders and the general public from accounting errors and fraudulent activities within organizations?

    A. PCI-DSS
    B. FISMA
    C. SOX
    D. ISO/IEC 27001:2013

  • Question 763:

    ViruXine.W32 virus hides their presence by changing the underlying executable code.

    This Virus code mutates while keeping the original algorithm intact, the code changes itself each time it runs, but the function of the code (its semantics) will not change at all.

    Here is a section of the Virus code:

    What is this technique called?

    A. Polymorphic Virus
    B. Metamorphic Virus
    C. Dravidic Virus
    D. Stealth Virus

  • Question 764:

    A penetration tester performs a vulnerability scan on a company's network and identifies a critical vulnerability related to an outdated version of a database server. What should the tester prioritize as the next step?

    A. Attempt to exploit the vulnerability using publicly available tools or exploits
    B. Conduct a brute-force attack on the database login page
    C. Ignore the vulnerability and move on to testing other systems
    D. Perform a denial-of-service (DoS) attack on the database server

  • Question 765:

    Scenario1:

    1.Victim opens the attacker's web site.

    2.Attacker sets up a web site which contains interesting and attractive content like 'Do you want to make $1000 in a day?'.

    3.Victim clicks to the interesting and attractive content URL.

    4.Attacker creates a transparent 'iframe' in front of the URL which victim attempts to click, so victim thinks that he/she clicks to the 'Do you want to make $1000 in a day?' URL but actually he/she clicks to the content or URL that exists in the transparent 'iframe' which is setup by the attacker.

    What is the name of the attack which is mentioned in the scenario?

    A. Session Fixation
    B. HTML Injection
    C. HTTP Parameter Pollution
    D. Clickjacking Attack

  • Question 766:

    A group of hackers were roaming around a bank office building in a city, driving a luxury car. They were using hacking tools on their laptop with the intention to find a free-access wireless network.

    What is this hacking process known as?

    A. GPS mapping
    B. Spectrum analysis
    C. Wardriving
    D. Wireless sniffing

  • Question 767:

    Leverox Solutions hired Arnold, a security professional, for the threat intelligence process. Arnold collected information about specific threats against the organization. From this information, he retrieved contextual information about security events and incidents that helped him disclose potential risks and gain insight into attacker methodologies. He collected the information from sources such as humans, social media, and chat rooms as well as from events that resulted in cyberattacks. In this process, he also prepared a report that includes identified malicious activities, recommended courses of action, and warnings for emerging attacks. What is the type of threat intelligence collected by Arnold in the above scenario?

    A. Strategic threat intelligence
    B. Tactical threat intelligence
    C. Operational threat intelligence
    D. Technical threat intelligence

  • Question 768:

    Juliet, a security researcher in an organization, was tasked with checking for the authenticity of images to be used in the organization's magazines. She used these images as a search query and tracked the original source and details of the images, which included photographs, profile pictures, and memes.

    Which of the following footprinting techniques did Rachel use to finish her task?

    A. Reverse image search
    B. Meta search engines
    C. Advanced image search
    D. Google advanced search

  • Question 769:

    Which of the following commands checks for valid users on an SMTP server?

    A. RCPT
    B. CHK
    C. VRFY
    D. EXPN

  • Question 770:

    When discussing passwords, what is considered a brute force attack?

    A. You attempt every single possibility until you exhaust all possible combinations or discover the password
    B. You threaten to use the rubber hose on someone unless they reveal their password
    C. You load a dictionary of words into your cracking program
    D. You create hashes of a large number of words and compare it with the encrypted passwords
    E. You wait until the password expires

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.