EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 271:

    What is the best means of prevention against viruses?

    A. Assign read only permission to all files on your system.
    B. Remove any external devices such as floppy and USB connectors.
    C. Install a rootkit detection tool.
    D. Install and update anti-virus scanner.

  • Question 272:

    WEP is used on 802.11 networks, what was it designed for?

    A. WEP is designed to provide a wireless local area network (WLAN) with a level of security and privacy comparable to what it usually expected of a wired LAN.
    B. WEP is designed to provide strong encryption to a wireless local area network (WLAN) with a lever of integrity and privacy adequate for sensible but unclassified information.
    C. WEP is designed to provide a wireless local area network (WLAN) with a level of availability and privacy comparable to what is usually expected of a wired LAN.
    D. WEOP is designed to provide a wireless local area network (WLAN) with a level of privacy comparable to what it usually expected of a wired LAN.

  • Question 273:

    MX record priority increases as the number increases. (True/False.

    A. True
    B. False

  • Question 274:

    Harold works for Jacobson Unlimited in the IT department as the security manager. Harold has created a security policy requiring all employees to use complex 14 character passwords. Unfortunately, the members of management do not want to have to use such long complicated passwords so they tell Harold's boss this new password policy should not apply to them. To comply with the management's wishes, the IT department creates another Windows domain and moves all the management users to that domain. This new domain has a password policy only requiring 8 characters.

    Harold is concerned about having to accommodate the managers, but cannot do anything about it. Harold is also concerned about using LanManager security on his network instead of NTLM or NTLMv2, but the many legacy applications on the network prevent using the more secure NTLM and NTLMv2. Harold pulls the SAM files from the DC's on the original domain and the new domain using Pwdump6. Harold uses the password cracking software John the Ripper to crack users' passwords to make sure they are strong enough. Harold expects that the users' passwords in the original domain will take much longer to crack than the management's passwords in the new domain. After running the software, Harold discovers that the 14 character passwords only took a short time longer to crack than the 8 character passwords.

    Why did the 14 character passwords not take much longer to crack than the 8 character passwords?

    A. Harold should have used Dumpsec instead of Pwdump6
    B. Harold's dictionary file was not large enough
    C. Harold should use LC4 instead of John the Ripper
    D. LanManger hashes are broken up into two 7 character fields

  • Question 275:

    What is SYSKEY # of bits used for encryption?

    A. 40
    B. 64
    C. 128
    D. 256

  • Question 276:

    What type of attack is shown here?

    A. Bandwidth exhaust Attack
    B. Denial of Service Attack
    C. Cluster Service Attack
    D. Distributed Denial of Service Attack

  • Question 277:

    What did the following commands determine?

    C:

    user2sid \earth guest S-1-5-21-343818398-789336058-1343024091-501 C:sid2user 5 21 343818398 789336058 1343024091 500 Name is Joe Domain is EARTH

    A. That the Joe account has a SID of 500
    B. These commands demonstrate that the guest account has NOT been disabled
    C. These commands demonstrate that the guest account has been disabled
    D. That the true administrator is Joe
    E. Issued alone, these commands prove nothing

  • Question 278:

    A distributed port scan operates by:

    A. Blocking access to the scanning clients by the targeted host
    B. Using denial-of-service software against a range of TCP ports
    C. Blocking access to the targeted host by each of the distributed scanning clients
    D. Having multiple computers each scan a small number of ports, then correlating the results

  • Question 279:

    802.11b is considered a ____________ protocol.

    A. Connectionless
    B. Secure
    C. Unsecure
    D. Token ring based
    E. Unreliable

  • Question 280:

    Which of the following Exclusive OR transforms bits is NOT correct?

    A. 0 xor 0 = 0
    B. 1 xor 0 = 1
    C. 1 xor 1 = 1
    D. 0 xor 1 = 1

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.