Official Bank 0/125

Certified Ethical Hacker Exam V9 (312-50v9) - EC-Council Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
125 Total Questions
1
Question
When you are testing a web application, it is very useful to employ a prosy tool to save every request and response. Nyou can manually test every request and analyze the response to find vulnerabilities. You can test parameter and headers manually to get more precise results than if using web vulnerability scanners.

What proxy tool will help you find web vulnerabilities?
Options
A Burpsuite
B Dimitry
C Maskgen
D Proxychains
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Jesse receives an email with an attachment labeled “Court_Notice_21206.zip”. Inside the zip file is a file named “Court_Notice_21206.docx.exe” disguised as a word document. Upon execution, a windows appears stating, “This word document is corrupt.” In the background, the file copies itself to Jesse APPDATA\local directory and begins to beacon to a C2 server to download additional malicious binaries. What type of malware has Jesse encountered?
Options
A Trojan
B Micro Virus
C Key-Logger
D Worm
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
You have compromised a server and successfully gained a root access. You want to pivot and pass traffic undetected over the network and evade any possible Intrusion Detection System.

What is the best approach?
Options
A Install and use Telnet to encrypt all outgoing traffic from this server.
B Install Cryptcat and encrypt outgoing packets from this server
C Use HTTP so that all traffic can be routed via a browser, thus evading the internal Intrusion Detection Systems.
D Use Alternate Data Streams to hide the outgoing packets from this server.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
While performing online banking using a web browser, a user receives an email that contains a link
to an interesting Web site. When the user clicks on the link, another web browser session starts and displays a video of cats playing a piano. The next business day, the user receives what looks like an email from his bank, indicating that his bank account has been accessed from a foreign country. The email asks the user to call his bank and verify the authorization of a funds transfer that took place.

What web browser-based security vulnerability was exploited to compromise the user?
Options
A Cross-Site Request Forgery
B Clickjacking
C Web form input validation
D Cross-Site Scripting
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
As a Certified Ethical hacker, you were contracted by a private firm to conduct an external security assessment through penetration testing.

What document describes the specified of the testing, the associated violations, and essentially protects both the organization’s interest and your li abilities as a tester?
Options
A Term of Engagement
B Service Level Agreement
C Project Scope
D Non-Disclosure Agreement
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.