EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 631:

    David is a security administrator working in Boston. David has been asked by the office's manager to block all POP3 traffic at the firewall because he believes employees are spending too much time reading personal email. How can David block POP3 at the firewall?

    A. David can block port 125 at the firewall.
    B. David can block all EHLO requests that originate from inside the office.
    C. David can stop POP3 traffic by blocking all HELO requests that originate from inside the office.
    D. David can block port 110 to block all POP3 traffic.

  • Question 632:

    What are common signs that a system has been compromised or hacked? (Choose three.)

    A. Increased amount of failed logon events
    B. Patterns in time gaps in system and/or event logs
    C. New user accounts created
    D. Consistency in usage baselines
    E. Partitions are encrypted
    F. Server hard drives become fragmented

  • Question 633:

    Which of the following wireless technologies can be detected by NetStumbler? (Select all that apply)

    A. 802.11b
    B. 802.11e
    C. 802.11a
    D. 802.11g
    E. 802.11

  • Question 634:

    Which of the following programming languages is most vulnerable to buffer overflow attacks?

    A. Perl
    B. C++
    C. Python
    D. Java

  • Question 635:

    Peter is a Network Admin. He is concerned that his network is vulnerable to a smurf attack. What should Peter do to prevent a smurf attack?

    Select the best answer.

    A. He should disable unicast on all routers
    B. Disable multicast on the router
    C. Turn off fragmentation on his router
    D. Make sure all anti-virus protection is updated on all systems
    E. Make sure his router won't take a directed broadcast

  • Question 636:

    Bryan notices the error on the web page and asks Liza to enter liza' or '1'='1 in the email field. They are greeted with a message "Your login information has been mailed to [email protected]". What do you think has occurred?

    A. The web application picked up a record at random
    B. The web application returned the first record it found
    C. The server error has caused the application to malfunction
    D. The web application emailed the administrator about the error

  • Question 637:

    What does a type 3 code 13 represent?(Choose two.

    A. Echo request
    B. Destination unreachable
    C. Network unreachable
    D. Administratively prohibited
    E. Port unreachable
    F. Time exceeded

  • Question 638:

    What type of attack changes its signature and/or payload to avoid detection by antivirus programs?

    A. Polymorphic
    B. Rootkit
    C. Boot sector
    D. File infecting

  • Question 639:

    Lori is a Certified Ethical Hacker as well as a Certified Hacking Forensics Investigator working as an IT security consultant. Lori has been hired on by Kiley Innovators, a large marketing firm that recently underwent a string of thefts and corporate espionage incidents. Lori is told that a rival marketing company came out with an exact duplicate product right before Kiley Innovators was about to release it. The executive team believes that an employee is leaking information to the rival company. Lori questions all employees, reviews server logs, and firewall logs; after which she finds nothing. Lori is then given permission to search through the corporate email system. She searches by email being sent to and sent from the rival marketing company.

    She finds one employee that appears to be sending very large email to this other marketing company, even though they should have no reason to be communicating with them. Lori tracks down the actual emails sent and upon opening them, only finds picture files attached to them. These files seem perfectly harmless, usually containing some kind of joke. Lori decides to use some special software to further examine the pictures and finds that each one had hidden text that was stored in each picture.

    What technique was used by the Kiley Innovators employee to send information to the rival marketing company?

    A. The Kiley Innovators employee used cryptography to hide the information in the emails sent
    B. The method used by the employee to hide the information was logical watermarking
    C. The employee used steganography to hide information in the picture attachments
    D. By using the pictures to hide information, the employee utilized picture fuzzing

  • Question 640:

    John the hacker is sniffing the network to inject ARP packets. He injects broadcast frames onto the wire to conduct MiTM attack. What is the destination MAC address of a broadcast frame?

    A. 0xFFFFFFFFFFFF
    B. 0xDDDDDDDDDDDD
    C. 0xAAAAAAAAAAAA
    D. 0xBBBBBBBBBBBB

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.