EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 641:

    Assuring two systems that are using IPSec to protect traffic over the internet, what type of general attack could compromise the data?

    A. Spoof Attack
    B. Smurf Attack
    C. Man inthe Middle Attack
    D. Trojan Horse Attack
    E. Back Orifice Attack

  • Question 642:

    What is the term 8 to describe an attack that falsifies a broadcast ICMP echo request and includes a primary and secondary victim?

    A. Fraggle Attack
    B. Man in the Middle Attack
    C. Trojan Horse Attack
    D. Smurf Attack
    E. Back Orifice Attack

  • Question 643:

    Which of the following viruses tries to hide from anti-virus programs by actively altering and corrupting the chosen service call interruptions when they are being run?

    A. Cavity virus
    B. Polymorphic virus
    C. Tunneling virus
    D. Stealth virus

  • Question 644:

    An engineer is learning to write exploits in C++ and is using the exploit tool Backtrack. The engineer wants to compile the newest C++ exploit and name it calc.exe. Which command would the engineer use to accomplish this?

    A. g++ hackersExploit.cpp -o calc.exe
    B. g++ hackersExploit.py -o calc.exe
    C. g++ -i hackersExploit.pl -o calc.exe
    D. g++ --compile hackersExploit.cpp -o calc.exe

  • Question 645:

    How is sniffing broadly categorized?

    A. Active and passive
    B. Broadcast and unicast
    C. Unmanaged and managed
    D. Filtered and unfiltered

  • Question 646:

    Scanning for services is an easy job for Bob as there are so many tools available from the Internet. In order for him to check the vulnerability of XYZ, he went through a few scanners that are currently available. Here are the scanners that he uses:

    1.Axent's NetRecon (http://www.axent.com)

    2.SARA, by Advanced Research Organization (http://www-arc.com/sara)

    3.VLAD the Scanner, by Razor (http://razor.bindview.com/tools/)

    However, there are many other alternative ways to make sure that the services that have been scanned will be more accurate and detailed for Bob.

    What would be the best method to accurately identify the services running on a victim host?

    A. Using Cheops-ng to identify the devices of XYZ.
    B. Using the manual method of telnet to each of the open ports of XYZ.
    C. Using a vulnerability scanner to try to probe each port to verify or figure out which service is running for XYZ.
    D. Using the default port and OS to make a best guess of what services are running on each port for XYZ.

  • Question 647:

    Exhibit

    (Note: the student is being tested on concepts learnt during passive OS fingerprinting, basic TCP/IP connection concepts and the ability to read packet signatures from a sniff dump.)

    Snort has been used to capture packets on the network. On studying the packets, the penetration tester finds it to be abnormal. If you were the penetration tester, why would you find this abnormal?

    What is odd about this attack? Choose the best answer.

    A. This is not a spoofed packet as the IP stack has increasing numbers for the three flags.
    B. This is back orifice activity as the scan comes form port 31337.
    C. The attacker wants to avoid creating a sub-carries connection that is not normally valid.
    D. These packets were crafted by a tool, they were not created by a standard IP stack.

  • Question 648:

    WinDump is a popular sniffer which results from the porting to Windows of TcpDump for Linux. What library does it use?

    A. LibPcap
    B. WinPcap
    C. Wincap
    D. None of the above

  • Question 649:

    What do you call a system where users need to remember only one username and password, and be authenticated for multiple services?

    A. Simple Sign-on
    B. Unique Sign-on
    C. Single Sign-on
    D. Digital Certificate

  • Question 650:

    You have successfully run a buffer overflow attack against a default IIS installation running on a Windows 2000 Server. The server allows you to spawn a shell. In order to perform the actions you intend to do, you need elevated permission. You need to know what your current privileges are within the shell. Which of the following options would be your current privileges?

    A. Administrator
    B. IUSR_COMPUTERNAME
    C. LOCAL_SYSTEM
    D. Whatever account IIS was installed with

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.