
EC-CouncilCertified Ethical Hacker
Domain 3Objective 5
Maintaining Access and Persistence CEH Practice Questions (Page 5)
Part of the System Hacking Phases and Attack Techniques domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~15–26 in this domain), expect 2–3 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
9concepts
Questions 21–25
- 21
During a penetration test, the tester has gained initial access to a low-privilege account on a domain-joined workstation. The tester's goal is to maintain access for a long-term assessment. Which combination of actions best supports this goal?
Select an answer first - 22
A security team wants to detect persistence mechanisms that use registry Run keys and scheduled tasks on their Windows endpoints. Which approach is most effective for this purpose?
Select an answer first - 23
Which method can help detect persistence mechanisms such as registry run keys and scheduled tasks?
Select an answer first - 24
A security administrator wants to harden Windows endpoints against persistence mechanisms that use registry run keys. Which configuration is most effective?
Select an answer first - 25
A red team operator has implanted a backdoor on a Linux server that listens on port 4444. The backdoor is configured to start automatically via a systemd service. The operator wants to ensure that the backdoor remains hidden from the system administrator and that the service does not appear in the systemctl list. Which additional technique should the operator use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.