Exam Details

  • Exam Code
    :312-50V7
  • Exam Name
    :Ethical Hacking and Countermeasures (CEHv7)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :514 Q&As
  • Last Updated
    :Jun 14, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-50V7 Questions & Answers

  • Question 181:

    Windows file servers commonly hold sensitive files, databases, passwords and more. Which of the following choices would be a common vulnerability that usually exposes them?

    A. Cross-site scripting

    B. SQL injection

    C. Missing patches

    D. CRLF injection

  • Question 182:

    Which type of access control is used on a router or firewall to limit network activity?

    A. Mandatory

    B. Discretionary

    C. Rule-based

    D. Role-based

  • Question 183:

    When comparing the testing methodologies of Open Web Application Security Project (OWASP) and Open Source Security Testing Methodology Manual (OSSTMM) the main difference is

    A. OWASP is for web applications and OSSTMM does not include web applications.

    B. OSSTMM is gray box testing and OWASP is black box testing.

    C. OWASP addresses controls and OSSTMM does not.

    D. OSSTMM addresses controls and OWASP does not.

  • Question 184:

    Which of the following is a protocol that is prone to a man-in-the-middle (MITM) attack and maps a 32-bit address to a 48-bit address?

    A. ICPM

    B. ARP

    C. RARP

    D. ICMP

  • Question 185:

    Which of the following ensures that updates to policies, procedures, and configurations are made in a controlled and documented fashion?

    A. Regulatory compliance

    B. Peer review

    C. Change management

    D. Penetration testing

  • Question 186:

    Data hiding analysis can be useful in

    A. determining the level of encryption used to encrypt the data.

    B. detecting and recovering data that may indicate knowledge, ownership or intent.

    C. identifying the amount of central processing unit (cpu) usage over time to process the data.

    D. preventing a denial of service attack on a set of enterprise servers to prevent users from accessing the data.

  • Question 187:

    Smart cards use which protocol to transfer the certificate in a secure manner?

    A. Extensible Authentication Protocol (EAP)

    B. Point to Point Protocol (PPP)

    C. Point to Point Tunneling Protocol (PPTP)

    D. Layer 2 Tunneling Protocol (L2TP)

  • Question 188:

    A company firewall engineer has configured a new DMZ to allow public systems to be located away from the internal network. The engineer has three security

    zones set:

    Untrust (Internet) (Remote network = 217.77.88.0/24)

    DMZ (DMZ) (11.12.13.0/24)

    Trust (Intranet) (192.168.0.0/24)

    The engineer wants to configure remote desktop access from a fixed IP on the remote network to a remote desktop server in the DMZ. Which rule would best fit

    this requirement?

    A. Permit 217.77.88.0/24 11.12.13.0/24 RDP 3389

    B. Permit 217.77.88.12 11.12.13.50 RDP 3389

    C. Permit 217.77.88.12 11.12.13.0/24 RDP 3389

    D. Permit 217.77.88.0/24 11.12.13.50 RDP 3389

  • Question 189:

    How does an operating system protect the passwords used for account logins?

    A. The operating system performs a one-way hash of the passwords.

    B. The operating system stores the passwords in a secret file that users cannot find.

    C. The operating system encrypts the passwords, and decrypts them when needed.

    D. The operating system stores all passwords in a protected segment of non-volatile memory.

  • Question 190:

    Which of the following programs is usually targeted at Microsoft Office products?

    A. Polymorphic virus

    B. Multipart virus

    C. Macro virus

    D. Stealth virus

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V7 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.