312-50V7 Exam Details

  • Exam Code
    :312-50V7
  • Exam Name
    :Ethical Hacking and Countermeasures (CEHv7)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :514 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V7 Online Questions & Answers

  • Question 141:

    A majority of attacks come from insiders, people who have direct access to a company's computer system as part of their job function or a business relationship. Who is considered an insider?

    A. A competitor to the company because they can directly benefit from the publicity generated by making such an attack
    B. Disgruntled employee, customers, suppliers, vendors, business partners, contractors, temps, and consultants
    C. The CEO of the company because he has access to all of the computer systems
    D. A government agency since they know the company's computer system strengths and weaknesses

  • Question 142:

    The network administrator for a company is setting up a website with e-commerce capabilities. Packet sniffing is a concern because credit card information will be sent electronically over the Internet. Customers visiting the site will need to encrypt the data with HTTPS. Which type of certificate is used to encrypt and decrypt the data?

    A. Asymmetric
    B. Confidential
    C. Symmetric
    D. Non-confidential

  • Question 143:

    What is a successful method for protecting a router from potential smurf attacks?

    A. Placing the router in broadcast mode
    B. Enabling port forwarding on the router
    C. Installing the router outside of the network's firewall
    D. Disabling the router from accepting broadcast ping messages

  • Question 144:

    How do employers protect assets with security policies pertaining to employee surveillance activities?

    A. Employers promote monitoring activities of employees as long as the employees demonstrate trustworthiness.
    B. Employers use informal verbal communication channels to explain employee monitoring activities to employees.
    C. Employers use network surveillance to monitor employee email traffic, network access, and to record employee keystrokes.
    D. Employers provide employees written statements that clearly discuss the boundaries of monitoring activities and consequences.

  • Question 145:

    Which of the following is a client-server tool utilized to evade firewall inspection?

    A. tcp-over-dns
    B. kismet
    C. nikto
    D. hping

  • Question 146:

    Identify SQL injection attack from the HTTP requests shown below:

    A. http://www.myserver.c0m/search.asp?lname=smith%27%3bupdate%20usertable%20set%20passwd %3d%27hAx0r%27%3b--%00
    B. http://www.myserver.c0m/script.php?mydata=%3cscript%20src=%22
    C. http%3a%2f%2fwww.yourserver.c0m%2fbadscript.js%22%3e%3c%2fscript%3e
    D. http://www.victim.com/example accountnumber=67891andcreditamount=999999999

  • Question 147:

    A pentester is using Metasploit to exploit an FTP server and pivot to a LAN. How will the pentester pivot using Metasploit?

    A. Issue the pivot exploit and set the meterpreter.
    B. Reconfigure the network settings in the meterpreter.
    C. Set the payload to propagate through the meterpreter.
    D. Create a route statement in the meterpreter.

  • Question 148:

    ICMP ping and ping sweeps are used to check for active systems and to check

    A. if ICMP ping traverses a firewall.
    B. the route that the ICMP ping took.
    C. the location of the switchport in relation to the ICMP ping.
    D. the number of hops an ICMP ping takes to reach a destination.

  • Question 149:

    What type of Virus is shown here?

    A. Macro Virus
    B. Cavity Virus
    C. Boot Sector Virus
    D. Metamorphic Virus
    E. Sparse Infector Virus

  • Question 150:

    Which of the following guidelines or standards is associated with the credit card industry?

    A. Control Objectives for Information and Related Technology (COBIT)
    B. Sarbanes-Oxley Act (SOX)
    C. Health Insurance Portability and Accountability Act (HIPAA)
    D. Payment Card Industry Data Security Standards (PCI DSS)

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V7 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.