EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 281:

    Web servers are often the most targeted and attacked hosts on organizations' networks. Attackers may exploit software bugs in the Web server, underlying operating system, or active content to gain unauthorized access.

    Identify the correct statement related to the above Web Server installation?

    A. Lack of proper security policy, procedures and maintenance
    B. Bugs in server software, OS and web applications
    C. Installing the server with default settings
    D. Unpatched security flaws in the server software, OS and applications

  • Question 282:

    Eve decides to get her hands dirty and tries out a Denial of Service attack that is relatively new to her. This time she envisages using a different kind of method to attack Brownies Inc. Eve tries to forge the packets and uses the broadcast address. She launches an attack similar to that of fraggle. What is the technique that Eve used in the case above?

    A. Smurf
    B. Bubonic
    C. SYN Flood
    D. Ping of Death

  • Question 283:

    If an attacker's computer sends an IPID of 31400 to a zombie (Idle Scanning) computer on an open port, what will be the response?

    A. 31400
    B. 31402
    C. The zombie will not send a response
    D. 31401

  • Question 284:

    Attackers can potentially intercept and modify unsigned SMB packets, modify the traffic and forward it so that the server might perform undesirable actions. Alternatively, the attacker could pose as the server or client after a legitimate authentication and gain unauthorized access to data. Which of the following is NOT a means that can be used to minimize or protect against such an attack?

    A. Timestamps
    B. SMB Signing
    C. File permissions
    D. Sequence numbers monitoring

  • Question 285:

    Which results will be returned with the following Google search query? site:target.com -site:Marketing.target.com accounting

    A. Results matching all words in the query
    B. Results matching "accounting" in domain target.com but not on the site Marketing.target.com
    C. Results from matches on the site marketing.target.com that are in the domain target.com but do not include the word accounting
    D. Results for matches on target.com and Marketing.target.com that include the word "accounting"

  • Question 286:

    Jake works as a system administrator at Acme Corp. Jason, an accountant of the firm befriends him at the canteen and tags along with him on the pretext of appraising him about potential tax benefits. Jason waits for Jake to swipe his access card and follows him through the open door into the secure systems area. How would you describe Jason's behavior within a security context?

    A. Smooth Talking
    B. Swipe Gating
    C. Tailgating
    D. Trailing

  • Question 287:

    The network administrator at Spears Technology, Inc has configured the default gateway Cisco router's access-list as below:

    You are hired to conduct security testing on their network. You successfully brute-force the SNMP community string using a SNMP crack tool. The access-list configured at the router prevents you from establishing a successful connection.

    You want to retrieve the Cisco configuration from the router. How would you proceed?

    A. Use the Cisco's TFTP default password to connect and download the configuration file
    B. Run a network sniffer and capture the returned traffic with the configuration file from the router
    C. Run Generic Routing Encapsulation (GRE) tunneling protocol from your computer to the router masking your IP address
    D. Send a customized SNMP set request with a spoofed source IP address in the range - 192.168.1.0

  • Question 288:

    What is the outcome of the comm"nc -l -p 2222 | nc 10.1.0.43 1234"?

    A. Netcat will listen on the 10.1.0.43 interface for 1234 seconds on port 2222.
    B. Netcat will listen on port 2222 and output anything received to a remote connection on 10.1.0.43 port 1234.
    C. Netcat will listen for a connection from 10.1.0.43 on port 1234 and output anything received to port 2222.
    D. Netcat will listen on port 2222 and then output anything received to local interface 10.1.0.43.

  • Question 289:

    Look at the following SQL query.

    SELECT * FROM product WHERE PCategory='computers' or 1=1--'

    What will it return? Select the best answer.

    A. All computers and all 1's
    B. All computers
    C. All computers and everything else
    D. Everything except computers

  • Question 290:

    Which of the following does proper basic configuration of snort as a network intrusion detection system require?

    A. Limit the packets captured to the snort configuration file.
    B. Capture every packet on the network segment.
    C. Limit the packets captured to a single segment.
    D. Limit the packets captured to the /var/log/snort directory.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.