
EC-CouncilCertified Ethical Hacker
Domain 3Objective 3
Vulnerability Exploitation and Metasploit CEH Practice Questions (Page 3)
Part of the System Hacking Phases and Attack Techniques domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~15–26 in this domain), expect 2–3 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
14concepts
Questions 11–15
- 11
What is the purpose of the Metasploit database integration?
Select an answer first - 12
You are performing a client-side attack and need to deliver a payload to a Windows user. The target machine is behind a NAT that blocks inbound connections, but outbound connections are allowed. You also need to avoid detection by the user's antivirus. Which payload and delivery method is most appropriate?
Select an answer first - 13
After selecting a Metasploit module with the 'use' command, which command is used to view the module's configurable options?
Select an answer first - 14
You are using Metasploit to perform a comprehensive assessment. You need to run a module that does not directly exploit a vulnerability but instead performs a brute-force attack against an SSH service. Which type of Metasploit module should you use?
Select an answer first - 15
What is the purpose of the 'background' command in Metasploit when working with a session?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.