Vendor: ECCouncil
Exam Code: 312-50v10
Exam Name: Certified Ethical Hacker v10 Exam
Date: Jan 28, 2019
File Size: 509 KB

Demo Questions

Question 1
The "white box testing" methodology enforces what kind of restriction?
  1. Only the internal operation of a system is known to the tester.
  2. The internal operation of a system is completely known to the tester.
  3. The internal operation of a system is only partly accessible to the tester.
  4. Only the external operation of a system is accessible to the tester.
Correct answer: B
Question 2
Identify the web application attack where the attackers exploit vulnerabilities in dynamically generated web pages to inject client-side script into web pages viewed by other users.
  1. SQL injection attack
  2. Cross-Site Scripting (XSS)
  3. LDAP Injection attack
  4. Cross-Site Request Forgery (CSRF)
Correct answer: B
Question 3
This tool is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the PTW attack, thus making the attack much faster compared to other WEP cracking tools. 
Which of the following tools is being described?
  1. wificracker
  2. Airguard
  3. WLAN-crack
  4. Aircrack-ng
Correct answer: D
Question 4
The following is part of a log file taken from the machine on the network with the IP address of
What type of activity has been logged?
  1. Teardrop attack targeting
  2. Denial of service attack targeting
  3. Port scan targeting
  4. Port scan targeting
Correct answer: C
Question 5
You are attempting to run an Nmap port scan on a web server. 
Which of the following commands would result in a scan of common ports with the least amount of noise in order to evade IDS?
  1. nmap –A - Pn
  2. nmap –sP –p-65535-T5
  3. nmap –sT –O –T0
  4. nmap –A --host-timeout 99-T1
Correct answer: C
Question 6
Bob, your senior colleague, has sent you a mail regarding aa deal with one of the clients. You are requested to accept the offer and you oblige. 
After 2 days, Bob denies that he had ever sent a mail. 
What do you want to “know” to prove yourself that it was Bob who had send a mail?
  1. Confidentiality
  2. Integrity
  3. Non-Repudiation
  4. Authentication
Correct answer: C
Question 7
What is attempting an injection attack on a web server based on responses to True/False questions called?
  1. DMS-specific SQLi
  2. Compound SQLi
  3. Blind SQLi
  4. Classic SQLi
Correct answer: C
Question 8
The establishment of a TCP connection involves a negotiation called three-way handshake. What type of message does the client send to the server in order to begin this negotiation?
  1. ACK
  2. SYN
  3. RST
  4. SYN-ACK
Correct answer: B
Question 9
You need a tool that can do network intrusion prevention and intrusion detection, function as a network sniffer, and record network activity. What tool would you most likely select?
  1. Snort
  2. Nmap
  3. Cain & Abel
  4. Nessus
Correct answer: A
Question 10
Which of the following will perform an Xmas scan using NMAP?
  1. nmap -sA
  2. nmap -sP
  3. nmap -sX
  4. nmap -sV
Correct answer: C

