EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 611:

    One way to defeat a multi-level security solution is to leak data via

    A. a bypass regulator.
    B. steganography.
    C. a covert channel.
    D. asymmetric routing.

  • Question 612:

    What type of session hijacking attack is shown in the exhibit?

    A. Session Sniffing Attack
    B. Cross-site scripting Attack
    C. SQL Injection Attack
    D. Token sniffing Attack

  • Question 613:

    Which initial procedure should an ethical hacker perform after being brought into an organization?

    A. Begin security testing.
    B. Turn over deliverables.
    C. Sign a formal contract with non-disclosure.
    D. Assess what the organization is trying to protect.

  • Question 614:

    Which of the following can take an arbitrary length of input and produce a message digest output of 160 bit?

    A. SHA-1
    B. MD5
    C. HAVAL
    D. MD4

  • Question 615:

    Which of the following algorithms provides better protection against brute force attacks by using a 160-bit message digest?

    A. MD5
    B. SHA-1
    C. RC4
    D. MD4

  • Question 616:

    You have hidden a Trojan file virus.exe inside another file readme.txt using NTFS streaming. Which command would you execute to extract the Trojan to a standalone file?

    A. c:\> type readme.txt:virus.exe > virus.exe
    B. c:\> more readme.txt | virus.exe > virus.exe
    C. c:\> cat readme.txt:virus.exe > virus.exe
    D. c:\> list redme.txt$virus.exe > virus.exe

  • Question 617:

    While examining audit logs, you discover that people are able to telnet into the SMTP server on port 25. You would like to block this, though you do not see any evidence of an attack or other wrong doing. However, you are concerned about affecting the normal functionality of the email server. From the following options choose how best you can achieve this objective?

    A. Block port 25 at the firewall.
    B. Shut off the SMTP service on the server.
    C. Force all connections to use a username and password.
    D. Switch from Windows Exchange to UNIX Sendmail.
    E. None of the above.

  • Question 618:

    Which of the following is NOT part of CEH Scanning Methodology?

    A. Check for Live systems
    B. Check for Open Ports
    C. Banner Grabbing
    D. Prepare Proxies
    E. Social Engineering attacks
    F. Scan for Vulnerabilities
    G. Draw Network Diagrams

  • Question 619:

    Eric notices repeated probes to port 1080. He learns that the protocol being used is designed to allow a host outside of a firewall to connect transparently and securely through the firewall. He wonders if his firewall has been breached. What would be your inference?

    A. Eric network has been penetrated by a firewall breach
    B. The attacker is using the ICMP protocol to have a covert channel
    C. Eric has a Wingate package providing FTP redirection on his network
    D. Somebody is using SOCKS on the network to communicate through the firewall

  • Question 620:

    Which tool would be used to collect wireless packet data?

    A. NetStumbler
    B. John the Ripper
    C. Nessus
    D. Netcat

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.