312-50V8 Exam Details

  • Exam Code
    :312-50V8
  • Exam Name
    :Certified Ethical Hacker v8
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1008 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V8 Online Questions & Answers

  • Question 281:

    What file system vulnerability does the following command take advantage of? type c:\anyfile.exe > c:\winnt\system32\calc.exe:anyfile.exe

    A. HFS
    B. Backdoor access
    C. XFS
    D. ADS

  • Question 282:

    Which of the following is a preventive control?

    A. Smart card authentication
    B. Security policy
    C. Audit trail
    D. Continuity of operations plan

  • Question 283:

    Neil is a network administrator working in Istanbul. Neil wants to setup a protocol analyzer on his network that will receive a copy of every packet that passes through the main office switch. What type of port will Neil need to setup in order to accomplish this?

    A. Neil will have to configure a Bridged port that will copy all packets to the protocol analyzer.
    B. Neil will need to setup SPAN port that will copy all network traffic to the protocol analyzer.
    C. He will have to setup an Ether channel port to get a copy of all network traffic to the analyzer.
    D. He should setup a MODS port which will copy all network traffic.

  • Question 284:

    What is the algorithm used by LM for Windows2000 SAM?

    A. MD4
    B. DES
    C. SHA
    D. SSL

  • Question 285:

    Carl has successfully compromised a web server from behind a firewall by exploiting a vulnerability in the web server program. He wants to proceed by installing a backdoor program. However, he is aware that not all inbound ports on the firewall are in the open state.

    From the list given below, identify the port that is most likely to be open and allowed to reach the server that Carl has just compromised.

    A. 53
    B. 110
    C. 25
    D. 69

  • Question 286:

    Bob has been hired to perform a penetration test on XYZ.com. He begins by looking at IP address ranges owned by the company and details of domain name registration. He then goes to News Groups and financial web sites to see if they are leaking any sensitive information of have any technical details online.

    Within the context of penetration testing methodology, what phase is Bob involved with?

    A. Passive information gathering
    B. Active information gathering
    C. Attack phase
    D. Vulnerability Mapping

  • Question 287:

    Which of the following is considered an acceptable option when managing a risk?

    A. Reject the risk.
    B. Deny the risk.
    C. Mitigate the risk.
    D. Initiate the risk.

  • Question 288:

    Attacking well-known system defaults is one of the most common hacker attacks. Most software is shipped with a default configuration that makes it easy to install and setup the application. You should change the default settings to secure the system.

    Which of the following is NOT an example of default installation?

    A. Many systems come with default user accounts with well-known passwords that administrators forget to change
    B. Often,the default location of installation files can be exploited which allows a hacker to retrieve a file from the system
    C. Many software packages come with "samples" that can be exploited,such as the sample programs on IIS web services
    D. Enabling firewall and anti-virus software on the local system

  • Question 289:

    The network administrator for a company is setting up a website with e-commerce capabilities. Packet sniffing is a concern because credit card information will be sent electronically over the Internet. Customers visiting the site will need to encrypt the data with HTTPS.

    Which type of certificate is used to encrypt and decrypt the data?

    A. Asymmetric
    B. Confidential
    C. Symmetric
    D. Non-confidential

  • Question 290:

    The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with a default password of "public". This is the so-called "default public community string".

    How would you keep intruders from getting sensitive information regarding the network devices using SNMP? (Select 2 answers)

    A. Enable SNMPv3 which encrypts username/password authentication
    B. Use your company name as the public community string replacing the default 'public'
    C. Enable IP filtering to limit access to SNMP device
    D. The default configuration provided by device vendors is highly secure and you don't need to change anything

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V8 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.