EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 531:

    In which of the following should be performed first in any penetration test?

    A. System identification
    B. Intrusion Detection System testing
    C. Passive information gathering
    D. Firewall testing

  • Question 532:

    Which of the following is used to indicate a single-line comment in structured query language (SQL)?

    A. -
    B. ||
    C. %%
    D. ''

  • Question 533:

    You visit a website to retrieve the listing of a company's staff members. But you can not find it on the website. You know the listing was certainly present one year before. How can you retrieve information from the outdated website?

    A. Through Google searching cached files
    B. Through Archive.org
    C. Download the website and crawl it
    D. Visit customers' and prtners' websites

  • Question 534:

    A security engineer is attempting to map a company's internal network. The engineer enters in the following NMAP commanD.

    NMAP S 0 80 ***.***.**.**

    What type of scan is this?

    A. Quick scan
    B. Intense scan
    C. Stealth scan
    D. Comprehensive scan

  • Question 535:

    How does an operating system protect the passwords used for account logins?

    A. The operating system performs a one-way hash of the passwords.
    B. The operating system stores the passwords in a secret file that users cannot find.
    C. The operating system encrypts the passwords, and decrypts them when needed.
    D. The operating system stores all passwords in a protected segment of non-volatile memory.

  • Question 536:

    In order to attack a wireless network, you put up an access point and override the signal of the real access point. As users send authentication data, you are able to capture it. What kind of attack is this?

    A. WEP attack
    B. Drive by hacking
    C. Rogue access point attack
    D. Unauthorized access point attack

  • Question 537:

    Rebecca has noted multiple entries in her logs about users attempting to connect on ports that are either not opened or ports that are not for public usage. How can she restrict this type of abuse by limiting access to only specific IP addresses that are trusted by using one of the built-in Linux Operating System tools?

    A. Ensure all files have at least a 755 or more restrictive permissions.
    B. Configure rules using ipchains.
    C. Configure and enable portsentry on his server.
    D. Install an intrusion detection system on her computer such as Snort.

  • Question 538:

    A penetration tester is attempting to scan an internal corporate network from the internet without alerting the border sensor. Which is the most efficient technique should the tester consider using?

    A. Spoofing an IP address
    B. Tunneling scan over SSH
    C. Tunneling over high port numbers
    D. Scanning using fragmented IP packets

  • Question 539:

    The intrusion detection system at a software development company suddenly generates multiple alerts regarding attacks against the company's external webserver, VPN concentrator, and DNS servers. What should the security team do to determine which alerts to check first?

    A. Investigate based on the maintenance schedule of the affected systems.
    B. Investigate based on the service level agreements of the systems.
    C. Investigate based on the potential effect of the incident.
    D. Investigate based on the order that the alerts arrived in.

  • Question 540:

    Finding tools to run dictionary and brute forcing attacks against FTP and Web servers is an easy task for hackers. They use tools such as arhontus or brutus to break into remote servers.

    A command such as this, will attack a given 10.0.0.34 FTP and Telnet servers simultaneously with a list of passwords and a single login namE. linksys. Many FTP- specific password-guessing tools are also available from major security sites. What defensive measures will you take to protect your network from these attacks?

    A. Never leave a default password
    B. Never use a password that can be found in a dictionary
    C. Never use a password related to your hobbies, pets, relatives, or date of birth.
    D. Use a word that has more than 21 characters from a dictionary as the password
    E. Never use a password related to the hostname, domain name, or anything else that can be found with whois

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.