Download Free EC-COUNCIL 312-50v11 Real Exam Questions Download [Q203-Q221]

Share

Download Free EC-COUNCIL 312-50v11 Real Exam Questions Download

Latest EC-COUNCIL 312-50v11 Real Exam Dumps PDF


Exam Overview

EC-Council 312-50v11 is a 4-hour test with 125 questions. The exam is made up of mainly multiple-choice questions, and you must gain the passing score (70%) to qualify for the associated certification. To gain competence in answering the questions, it is recommended to sign up for the official courseware to adequately prepare for the test.


EC-COUNCIL 312-50v11 (Certified Ethical Hacker Exam (CEH v11)) certification exam is a valuable certification for those who want to become certified ethical hackers. 312-50v11 exam covers a wide range of topics and tests the candidate's knowledge and skills in real-world scenarios. Certified Ethical Hacker Exam (CEH v11) certification is recognized worldwide and can help professionals stand out in a competitive job market.

 

NEW QUESTION # 203
Which of the following is not a Bluetooth attack?

  • A. Bluejacking
  • B. Bluesnarfing
  • C. Bluesmacking
  • D. Bluedriving

Answer: D


NEW QUESTION # 204
You are a penetration tester and are about to perform a scan on a specific server. The agreement that you signed with the client contains the following specific condition for the scan: "The attacker must scan every port on the server several times using a set of spoofed sources IP addresses. " Suppose that you are using Nmap to perform this scan. What flag will you use to satisfy this requirement?

  • A. The -f flag
  • B. The -g flag
  • C. The -A flag
  • D. The -D flag

Answer: B

Explanation:
flags -source-port and -g are equivalent and instruct nmap to send packets through a selected port. this option is used to try to cheat firewalls whitelisting traffic from specific ports. the following example can scan the target from the port twenty to ports eighty, 22, 21,23 and 25 sending fragmented packets to LinuxHint.


NEW QUESTION # 205
George is a security professional working for iTech Solutions. He was tasked with securely transferring sensitive data of the organization between industrial systems. In this process, he used a short-range communication protocol based on the IEEE 203.15.4 standard. This protocol is used in devices that transfer data infrequently at a low rate in a restricted area, within a range of 10-100 m. What is the short-range wireless communication technology George employed in the above scenario?

  • A. Zigbee
  • B. MQTT
  • C. LPWAN
  • D. NB-IoT

Answer: A

Explanation:
Zigbee could be a wireless technology developed as associate open international normal to deal with the unique desires of affordable, low-power wireless IoT networks. The Zigbee normal operates on the IEEE 802.15.4 physical radio specification and operates in unauthorised bands as well as a pair of.4 GHz, 900 MHz and 868 MHz.
The 802.15.4 specification upon that the Zigbee stack operates gained confirmation by the Institute of Electrical and physical science Engineers (IEEE) in 2003. The specification could be a packet-based radio protocol supposed for affordable, battery-operated devices. The protocol permits devices to speak in an exceedingly kind of network topologies and may have battery life lasting many years.
The Zigbee three.0 Protocol
The Zigbee protocol has been created and ratified by member corporations of the Zigbee Alliance.Over three hundred leading semiconductor makers, technology corporations, OEMs and repair corporations comprise the Zigbee Alliance membership. The Zigbee protocol was designed to supply associate easy-to-use wireless information answer characterised by secure, reliable wireless network architectures.
THE ZIGBEE ADVANTAGE
The Zigbee 3.0 protocol is intended to speak information through rip-roaring RF environments that area unit common in business and industrial applications. Version 3.0 builds on the prevailing Zigbee normal however unifies the market-specific application profiles to permit all devices to be wirelessly connected within the same network, no matter their market designation and performance. what is more, a Zigbee 3.0 certification theme ensures the ability of product from completely different makers. Connecting Zigbee three.0 networks to the information science domain unveil observance and management from devices like smartphones and tablets on a local area network or WAN, as well as the web, and brings verity net of Things to fruition.
Zigbee protocol options include:
Support for multiple network topologies like point-to-point, point-to-multipoint and mesh networks Low duty cycle - provides long battery life Low latency Direct Sequence unfold Spectrum (DSSS) Up to 65,000 nodes per network
128-bit AES encryption for secure information connections
Collision avoidance, retries and acknowledgements


NEW QUESTION # 206
Allen, a professional pen tester, was hired by xpertTech solutWns to perform an attack simulation on the organization's network resources. To perform the attack, he took advantage of the NetBIOS API and targeted the NetBIOS service. B/enumerating NetBIOS, he found that port 139 was open and could see the resources that could be accessed or viewed on a remote system. He came across many NetBIOS codes during enumeration.
identify the NetBIOS code used for obtaining the messenger service running for the logged-in user?

  • A. <1B>
  • B. <03>
  • C. <20>
  • D. <00>

Answer: B

Explanation:
<03>Windows Messenger administrationCourier administration is an organization based framework notice Windows administration by Microsoft that was remembered for some prior forms of Microsoft Windows.
This resigned innovation, despite the fact that it has a comparable name, isn't connected in any capacity to the later, Internet-based Microsoft Messenger administration for texting or to Windows Messenger and Windows Live Messenger (earlier named MSN Messenger) customer programming.
The Messenger Service was initially intended for use by framework managers to tell Windows clients about their networks.[1] It has been utilized malevolently to introduce spring up commercials to clients over the Internet (by utilizing mass-informing frameworks which sent an ideal message to a predetermined scope of IP addresses). Despite the fact that Windows XP incorporates a firewall, it isn't empowered naturally. Along these lines, numerous clients got such messages. Because of this maltreatment, the Messenger Service has been debilitated as a matter of course in Windows XP Service Pack 2.


NEW QUESTION # 207
An attacker utilizes a Wi-Fi Pineapple to run an access point with a legitimate-looking SSID for a nearby business in order to capture the wireless password. What kind of attack is this?

  • A. MAC spoofing attack
  • B. Phishing attack
  • C. Evil-twin attack
  • D. War driving attack

Answer: C


NEW QUESTION # 208
Null sessions are un-authenticated connections (not using a username or password.) to an NT or 2000 system.
Which TCP and UDP ports must you filter to check null sessions on your network?

  • A. 139 and 445
  • B. 139 and 443
  • C. 137 and 443
  • D. 137 and 139

Answer: A


NEW QUESTION # 209
If you want to only scan fewer ports than the default scan using Nmap tool, which option would you use?

  • A. -F
  • B. -sP
  • C. -P
  • D. -r

Answer: A


NEW QUESTION # 210
During the enumeration phase. Lawrence performs banner grabbing to obtain information such as OS details and versions of services running. The service that he enumerated runs directly on TCP port 445.
Which of the following services is enumerated by Lawrence in this scenario?

  • A. Telnet
  • B. Remote procedure call (RPC)
  • C. Network File System (NFS)
  • D. Server Message Block (SMB)

Answer: D

Explanation:
Worker Message Block (SMB) is an organization document sharing and information texture convention. SMB is utilized by billions of gadgets in a different arrangement of working frameworks, including Windows, MacOS, iOS , Linux, and Android. Customers use SMB to get to information on workers. This permits sharing of records, unified information the board, and brought down capacity limit needs for cell phones. Workers additionally use SMB as a feature of the Software-characterized Data Center for outstanding burdens like grouping and replication.
Since SMB is a far off record framework, it requires security from assaults where a Windows PC may be fooled into reaching a pernicious worker running inside a confided in organization or to a far off worker outside the organization edge. Firewall best practices and arrangements can upgrade security keeping malevolent traffic from leaving the PC or its organization.
For Windows customers and workers that don't have SMB shares, you can obstruct all inbound SMB traffic utilizing the Windows Defender Firewall to keep far off associations from malignant or bargained gadgets. In the Windows Defender Firewall, this incorporates the accompanying inbound principles.

You should also create a new blocking rule to override any other inbound firewall rules. Use the following suggested settings for any Windows clients or servers that do not host SMB Shares:
Name: Block all inbound SMB 445
Description: Blocks all inbound SMB TCP 445 traffic. Not to be applied to domain controllers or computers that host SMB shares.
Action: Block the connection
Programs: All
Remote Computers: Any
Protocol Type: TCP
Local Port: 445
Remote Port: Any
Profiles: All
Scope (Local IP Address): Any
Scope (Remote IP Address): Any
Edge Traversal: Block edge traversal
You must not globally block inbound SMB traffic to domain controllers or file servers. However, you can restrict access to them from trusted IP ranges and devices to lower their attack surface. They should also be restricted to Domain or Private firewall profiles and not allow Guest/Public traffic.


NEW QUESTION # 211
When you are testing a web application, it is very useful to employ a proxy tool to save every request and response. You can manually test every request and analyze the response to find vulnerabilities. You can test parameter and headers manually to get more precise results than if using web vulnerability scanners.
What proxy tool will help you find web vulnerabilities?

  • A. Proxychains
  • B. Maskgen
  • C. Dimitry
  • D. Burpsuite

Answer: D


NEW QUESTION # 212
Bill is a network administrator. He wants to eliminate unencrypted traffic inside his company's network. He decides to setup a SPAN port and capture all traffic to the datacenter. He immediately discovers unencrypted traffic in port UDP 161.
What protocol is this port using and how can he secure that traffic?

  • A. It is not necessary to perform any actions, as SNMP is not carrying important information.
  • B. RPC and the best practice is to disable RPC completely.
  • C. SNMP and he should change it to SNMP V2, which is encrypted.
  • D. SNMP and he should change it to SNMP V3.

Answer: D


NEW QUESTION # 213
What is the least important information when you analyze a public IP address in a security alert?

  • A. Geolocation
  • B. ARP
  • C. DNS
  • D. Whois

Answer: B


NEW QUESTION # 214
Andrew is an Ethical Hacker who was assigned the task of discovering all the active devices hidden by a restrictive firewall in the IPv4 range in a given target network.
Which of the following host discovery techniques must he use to perform the given task?

  • A. UDP scan
  • B. TCP Maimon scan
  • C. app ping scan
  • D. ACK flag probe scan

Answer: C


NEW QUESTION # 215
The tools which receive event logs from servers, network equipment, and applications, and perform analysis and correlation on those logs, and can generate alarms for security relevant issues, are known as what?

  • A. Intrusion prevention Server
  • B. Security incident and event Monitoring
  • C. network Sniffer
  • D. Vulnerability Scanner

Answer: B


NEW QUESTION # 216
which of the following protocols can be used to secure an LDAP service against anonymous queries?

  • A. NTLM
  • B. SSO
  • C. RADIUS
  • D. WPA

Answer: C

Explanation:
Explanation
Remote Authentication Dial-In User Service (RADIUS) could be a networking protocols, in operation on ports
1812 and 1813, that gives centralized Authentication, Authorization, and Accounting (AAA or Triple A) management for users who connect and use a network service. RADIUS was developed by American Revolutionary leader Enterprises, Inc. in 1991 as an access server authentication and accounting protocol and later brought into the net Engineering Task Force (IETF) standards.
RADIUS could be a client/server protocol that runs within the application layer, and might use either protocol or UDP as transport. Network access servers, the gateways that management access to a network, sometimes contain a RADIUS consumer element that communicates with the RADIUS server . RADIUS is commonly the back-end of alternative for 802.1X authentication moreover.
The RADIUS server is sometimes a background method running on a UNIX system or Microsoft Windows server.


NEW QUESTION # 217
Allen, a professional pen tester, was hired by xpertTech solutWns to perform an attack simulation on the organization's network resources. To perform the attack, he took advantage of the NetBIOS API and targeted the NetBIOS service. B/enumerating NetBIOS, he found that port 139 was open and could see the resources that could be accessed or viewed on a remote system. He came across many NetBIOS codes during enumeration.
identify the NetBIOS code used for obtaining the messenger service running for the logged-in user?

  • A. <1B>
  • B. <03>
  • C. <20>
  • D. <00>

Answer: B

Explanation:
<03>
Windows Messenger administration
Courier administration is an organization based framework notice Windows administration by Microsoft that was remembered for some prior forms of Microsoft Windows.
This resigned innovation, despite the fact that it has a comparable name, isn't connected in any capacity to the later, Internet-based Microsoft Messenger administration for texting or to Windows Messenger and Windows Live Messenger (earlier named MSN Messenger) customer programming.
The Messenger Service was initially intended for use by framework managers to tell Windows clients about their networks.[1] It has been utilized malevolently to introduce spring up commercials to clients over the Internet (by utilizing mass-informing frameworks which sent an ideal message to a predetermined scope of IP addresses). Despite the fact that Windows XP incorporates a firewall, it isn't empowered naturally. Along these lines, numerous clients got such messages. Because of this maltreatment, the Messenger Service has been debilitated as a matter of course in Windows XP Service Pack 2.


NEW QUESTION # 218
What firewall evasion scanning technique make use of a zombie system that has low network activity as well as its fragment identification numbers?

  • A. Packet fragmentation scanning
  • B. Spoof source address scanning
  • C. Idle scanning
  • D. Decoy scanning

Answer: C


NEW QUESTION # 219
Mirai malware targets loT devices. After infiltration, it uses them to propagate and create botnets that then used to launch which types of attack?

  • A. Password attack
  • B. Birthday attack
  • C. MITM attack
  • D. DDoS attack

Answer: D


NEW QUESTION # 220
Which type of sniffing technique is generally referred as MiTM attack?

  • A. Mac Flooding
  • B. DHCP Sniffing
  • C. ARP Poisoning
  • D. Password Sniffing

Answer: C


NEW QUESTION # 221
......


EC-COUNCIL 312-50v11 (Certified Ethical Hacker Exam (CEH v11)) is a certification exam that validates the skills and knowledge of individuals in the field of ethical hacking. 312-50v11 exam is designed to test the abilities of cybersecurity professionals to identify vulnerabilities in computer systems, networks, and applications, and to use their knowledge to prevent and mitigate cyber attacks.

 

PDF (New 2024) Actual EC-COUNCIL 312-50v11 Exam Questions: https://www.prep4sureguide.com/312-50v11-prep4sure-exam-guide.html

312-50v11 Exam Dumps, 312-50v11 Practice Test Questions: https://drive.google.com/open?id=1pmro52vOsybsVm1OEfmiJJa-Hv4_KcYd