Skip to main content

312-50V8 Real Exam Questions

Certified Ethical Hacker v8

1,008 questions available · Page 1 of 101

Updated Exam DumpsVerified AnswersPass Guarantee

Get Complete Exam Dumps
Question 1 Single choice

What ICMP message types are used by the ping command?

  1. A

    Timestamp request (13) and timestamp reply (14)

  2. B

    Echo request (8) and Echo reply (0)

  3. C

    Echo request (0) and Echo reply (1)

  4. D

    Ping request (1) and Ping reply (2)

Show answer and explanation

Correct answer: B

Question 2 Single choice

Which of the following is a primary service of the U.S.
Computer Security Incident Response Team (CSIRT)?

  1. A

    CSIRT provides an incident response service to enable a reliable and trusted single point of contact for
    reporting computer security incidents worldwide.

  2. B

    CSIRT provides a computer security surveillance service to supply a government with important intelligence information on individuals travelling abroad.

  3. C

    CSIRT provides a penetration testing service to support exception reporting on incidents worldwide by individuals and multi-national corporations.

  4. D

    CSIRT provides a vulnerability assessment service to assist law enforcement agencies with profiling an individual's property or company's asset.

Show answer and explanation

Correct answer: A

Question 3 Single choice

Maintaining a secure Web server requires constant effort, resources, and vigilance from an organization.
Securely administering a Web server on a daily basis is an essential aspect of Web server security.

Maintaining the security of a Web server will usually involve the following steps:

1. Configuring, protecting, and analyzing log files

2. Backing up critical information frequently

3. Maintaining a protected authoritative copy of the organization's Web content

4. Establishing and following procedures for recovering from compromise

5. Testing and applying patches in a timely manner

6. Testing security periodically.

In which step would you engage a forensic investigator?

  1. A

    1

  2. B

    2

  3. C

    3

  4. D

    4

  5. E

    5

  6. F

    6

Show answer and explanation

Correct answer: D

Question 4 Multiple choice

What techniques would you use to evade IDS during a Port Scan? (Select 4 answers)

  1. A

    Use fragmented IP packets

  2. B

    Spoof your IP address when launching attacks and sniff responses from the server

  3. C

    Overload the IDS with Junk traffic to mask your scan

  4. D

    Use source routing (if possible)

  5. E

    Connect to proxy servers or compromised Trojaned machines to launch attacks

Show answer and explanation

Correct answers: A, B, D, E

Question 5 Single choice

Which of the following is an example of an asymmetric encryption implementation?

  1. A

    SHA1

  2. B

    PGP

  3. C

    3DES

  4. D

    MD5

Show answer and explanation

Correct answer: B

Question 6 Multiple choice

Which of the following techniques can be used to mitigate the risk of an on-site attacker from connecting to an unused network port and gaining full access to the network? (Choose three.)

  1. A

    Port Security

  2. B

    IPSec Encryption

  3. C

    Network Admission Control (NAC)

  4. D

    802.1q Port Based Authentication

  5. E

    802.1x Port Based Authentication

  6. F

    Intrusion Detection System (IDS)

Show answer and explanation

Correct answers: A, C, E

Question 7 Single choice

Which type of attack is port scanning?

  1. A

    Web server attack

  2. B

    Information gathering

  3. C

    Unauthorized access

  4. D

    Denial of service attack

Show answer and explanation

Correct answer: B

Question 8 Single choice

What type of session hijacking attack is shown in the exhibit?

  1. A

    Session Sniffing Attack

  2. B

    Cross-site scripting Attack

  3. C

    SQL Injection Attack

  4. D

    Token sniffing Attack

Show answer and explanation

Correct answer: A

Question 9 Single choice

One of your team members has asked you to analyze the following SOA record. What is the TTL?

Rutgers.edu.SOA NS1.Rutgers.edu ipad.college.edu (200302028 3600

3600 604800 2400.

  1. A

    200303028

  2. B

    3600

  3. C

    604800

  4. D

    2400

  5. E

    60

  6. F

    4800

Show answer and explanation

Correct answer: D

Question 10 Single choice

Network Administrator Patricia is doing an audit of the network. Below are some of her findings concerning DNS. Which of these would be a cause for alarm?

Select the best answer.

  1. A

    There are two external DNS Servers for Internet domains. Both are AD integrated.

  2. B

    All external DNS is done by an ISP.

  3. C

    Internal AD Integrated DNS servers are using private DNS names that are

  4. D

    unregistered.

  5. E

    Private IP addresses are used on the internal network and are registered with the internal AD integrated DNS server.

Show answer and explanation

Correct answer: A