Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :Apr 14, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-50V10 Questions & Answers

  • Question 161:

    Which of the following Nmap commands would be used to perform a stack fingerprinting?

    A. Nmap -O -p80

    B. Nmap -hU -Q

    C. Nmap -sT -p

    D. Nmap -u -o -w2

    E. Nmap -sS -0p targe

  • Question 162:

    While doing a technical assessment to determine network vulnerabilities, you used the TCP XMAS scan. What would be the response of all open ports?

    A. The port will send an ACK

    B. The port will send a SYN

    C. The port will ignore the packets

    D. The port will send an RST

  • Question 163:

    Why would an attacker want to perform a scan on port 137?

    A. To discover proxy servers on a network

    B. To disrupt the NetBIOS SMB service on the target host

    C. To check for file and print sharing on Windows systems

    D. To discover information about a target host using NBTSTAT

  • Question 164:

    Which of the following command line switch would you use for OS detection in Nmap?

    A.-D

    B. -O

    C. -P

    D. -X

  • Question 165:

    Which specific element of security testing is being assured by using hash?

    A. Authentication

    B. Integrity

    C. Confidentiality

    D. Availability

  • Question 166:

    ........is an attack type for a rogue Wi-Fi access point that appears to be a legitimate one offered on the premises, but actually has been set up to eavesdrop on wireless communications. It is the wireless version of the phishing scam. An attacker fools wireless users into connecting a laptop or mobile phone to a tainted hotspot by posing as a legitimate provider. This type of attack may be used to steal the passwords of unsuspecting users by either snooping the communication link or by phishing, which involves setting up a fraudulent web site and luring people there.

    Fill in the blank with appropriate choice.

    A. Collision Attack

    B. Evil Twin Attack

    C. Sinkhole Attack

    D. Signal Jamming Attack

  • Question 167:

    (Note: the student is being tested on concepts learnt during passive OS fingerprinting, basic TCP/IP connection concepts and the ability to read packet signatures from a sniff dump.). Snort has been used to capture packets on the network. On studying the packets, the penetration tester finds it to be abnormal. If you were the penetration tester, why would you find this abnormal?

    What is odd about this attack? Choose the best answer.

    A. This is not a spoofed packet as the IP stack has increasing numbers for the three flags.

    B. This is back orifice activity as the scan comes from port 31337.

    C. The attacker wants to avoid creating a sub-carries connection that is not normally valid.

    D. These packets were crafted by a tool, they were not created by a standard IP stack.

  • Question 168:

    Which of the following is a vulnerability in GNU's bash shell (discovered in September of 2014) that gives attackers access to run remote commands on a vulnerable system?

    A. Shellshock

    B. Rootshell

    C. Rootshock

    D. Shellbash

  • Question 169:

    Suppose you've gained access to your client's hybrid network. On which port should you listen to in order to know which Microsoft Windows workstations has its file sharing enabled?

    A. 1433

    B. 161

    C. 445

    D. 3389

  • Question 170:

    Which service in a PKI will vouch for the identity of an individual or company?

    A. KDC

    B. CA

    C. CR

    D. CBC

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.