
EC-CouncilCertified Ethical Hacker
Domain 3Objective 5
Maintaining Access and Persistence CEH Practice Questions (Page 8)
Part of the System Hacking Phases and Attack Techniques domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~15–26 in this domain), expect 2–3 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
9concepts
Questions 36–40
- 36
How does maintaining access enable continued exploitation of a compromised system?
Select an answer first - 37
A system administrator is reviewing a compromised Linux server and finds that a new user account was created with UID 0 and a valid shell. The account does not appear in the /etc/passwd file when viewed with standard tools. Which persistence mechanism is most likely in use?
Select an answer first - 38
What is the primary purpose of a backdoor in the context of system hacking?
Select an answer first - 39
Why is privilege escalation important for maintaining persistence on a compromised system?
Select an answer first - 40
A penetration tester has compromised a Windows server and established persistence via a scheduled task. The tester now wants to cover tracks, but the SOC has enabled 'Audit Process Creation' and 'Audit Logon' events. Which action is most likely to avoid detection?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.