Exam Details

  • Exam Code
    :312-50
  • Exam Name
    :Certified Ethical Hacker
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :614 Q&As
  • Last Updated
    :Apr 16, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-50 Questions & Answers

  • Question 181:

    _____ is found in all versions of NTFS and is described as the ability to fork file data into existing files without affecting their functionality, size, or display to traditional file browsing utilities like dir or Windows Explorer

    A. Steganography

    B. Merge Streams

    C. NetBIOS vulnerability

    D. Alternate Data Streams

  • Question 182:

    Which of the following steganography utilities exploits the nature of white space and allows the user to conceal information in these white spaces?

    A. Snow

    B. Gif-It-Up

    C. NiceText

    D. Image Hide

  • Question 183:

    Attackers can potentially intercept and modify unsigned SMB packets, modify the traffic and forward it so that the server might perform undesirable actions. Alternatively, the attacker could pose as the server or client after a legitimate authentication and gain unauthorized access to data. Which of the following is NOT a means that can be used to minimize or protect against such an attack?

    A. Timestamps

    B. SMB Signing

    C. File permissions

    D. Sequence numbers monitoring

  • Question 184:

    What file system vulnerability does the following command take advantage of?

    type c:\anyfile.exe > c:\winnt\system32\calc.exe:anyfile.exe

    A. HFS

    B. ADS

    C. NTFS

    D. Backdoor access

  • Question 185:

    What hacking attack is challenge/response authentication used to prevent?

    A. Replay attacks

    B. Scanning attacks

    C. Session hijacking attacks

    D. Password cracking attacks

  • Question 186:

    What does the following command in netcat do?

    nc -l -u -p 55555 < /etc/passwd

    A. logs the incoming connections to /etc/passwd file

    B. loads the /etc/passwd file to the UDP port 55555

    C. grabs the /etc/passwd file when connected to UDP port 55555

    D. deletes the /etc/passwd file when connected to the UDP port 55555

  • Question 187:

    In the context of Windows Security, what is a 'null' user?

    A. A user that has no skills

    B. An account that has been suspended by the admin

    C. A pseudo account that has no username and password

    D. A pseudo account that was created for security administration purpose

  • Question 188:

    Fingerprinting an Operating System helps a cracker because:

    A. It defines exactly what software you have installed

    B. It opens a security-delayed window based on the port being scanned

    C. It doesn't depend on the patches that have been applied to fix existing security holes

    D. It informs the cracker of which vulnerabilities he may be able to exploit on your system

  • Question 189:

    What is GINA?

    A. Gateway Interface Network Application

    B. GUI Installed Network Application CLASS

    C. Global Internet National Authority (G-USA)

    D. Graphical Identification and Authentication DLL

  • Question 190:

    You are the Security Administrator of Xtrinity, Inc. You write security policies and conduct assesments to protect the company's network. During one of your periodic checks to see how well policy is being observed by the employees, you discover an employee has attached a modem to his telephone line and workstation. He has used this modem to dial in to his workstation, thereby bypassing your firewall. A security breach has occurred as a direct result of this activity. The employee explains that he used the modem because he had to download software for a department project. How would you resolve this situation?

    A. Reconfigure the firewall

    B. Conduct a needs analysis

    C. Install a network-based IDS

    D. Enforce the corporate security policy

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.