EC-Council
312-50V12 · Question #264
John, a security analyst, is analyzing a server suspected of being compromised. The attacker has used a non admin account and has already gained a foothold on the system. John discovers that a new Dyn
Sign in or unlock 312-50V12 to reveal the answer and full explanation for question #264. The question stem and answer options stay visible for context.
Submitted by salim_om· Mar 4, 2026System Hacking Phases and Attack Techniques
Question
John, a security analyst, is analyzing a server suspected of being compromised. The attacker has used a non admin account and has already gained a foothold on the system. John discovers that a new Dynamic Link Library is loaded in the application directory of the affected server. This DLL does not have a fully qualified path and seems to be malicious. What privilege escalation technique has the attacker likely used to compromise this server?
Options
- ADLL Hijacking
- BNamed Pipe Impersonation
- CSpectre and Meltdown Vulnerabilities
- DExploiting Misconfigured Services
Unlock 312-50V12 to see the answer
You've previewed enough free 312-50V12 questions. Unlock 312-50V12 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#DLL Hijacking#privilege escalation#non-admin compromise#malicious DLL