Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 10, 2025

GAQM GAQM Certifications CEH-001 Questions & Answers

  • Question 351:

    Your XYZ trainee Sandra asks you which are the four existing Regional Internet Registry (RIR's)?

    A. APNIC, PICNIC, ARIN, LACNIC

    B. RIPE NCC, LACNIC, ARIN, APNIC

    C. RIPE NCC, NANIC, ARIN, APNIC

    D. RIPE NCC, ARIN, APNIC, LATNIC

  • Question 352:

    A very useful resource for passively gathering information about a target company is:

    A. Host scanning

    B. Whois search

    C. Traceroute

    D. Ping sweep

  • Question 353:

    Which one of the following is defined as the process of distributing incorrect Internet Protocol (IP) addresses/names with the intent of diverting traffic?

    A. Network aliasing

    B. Domain Name Server (DNS) poisoning

    C. Reverse Address Resolution Protocol (ARP)

    D. Port scanning

  • Question 354:

    A XYZ security System Administrator is reviewing the network system log files.

    He notes the following:

    Network log files are at 5 MB at 12:00 noon. At 14:00 hours, the log files at 3 MB.

    What should he assume has happened and what should he do about the situation?

    A. He should contact the attacker's ISP as soon as possible and have the connection disconnected.

    B. He should log the event as suspicious activity, continue to investigate, and take further steps according to site security policy.

    C. He should log the file size, and archive the information, because the router crashed.

    D. He should run a file system check, because the Syslog server has a self correcting file system problem.

    E. He should disconnect from the Internet discontinue any further unauthorized use, because an attack has taken place.

  • Question 355:

    To what does "message repudiation" refer to what concept in the realm of email security?

    A. Message repudiation means a user can validate which mail server or servers a message was passed through.

    B. Message repudiation means a user can claim damages for a mail message that damaged their reputation.

    C. Message repudiation means a recipient can be sure that a message was sent from a particular person.

    D. Message repudiation means a recipient can be sure that a message was sent from a certain host.

    E. Message repudiation means a sender can claim they did not actually send a particular message.

  • Question 356:

    Snort has been used to capture packets on the network. On studying the packets, the penetration tester finds it to be abnormal. If you were the penetration tester, why would you find this abnormal?

    05/20-17:0645.061034 192.160.13.4:31337 --> 172.16.1.101:1

    TCP TTL:44 TOS:0x10 ID:242

    ***FRP** Seq:0xA1D95 Ack:0x53 Win: 0x400

    What is odd about this attack? (Choose the most appropriate statement)

    A. This is not a spoofed packet as the IP stack has increasing numbers for the three flags.

    B. This is back orifice activity as the scan comes from port 31337.

    C. The attacker wants to avoid creating a sub-carrier connection that is not normally valid.

    D. There packets were created by a tool; they were not created by a standard IP stack.

  • Question 357:

    Which of the following activities will NOT be considered as passive footprinting?

    A. Go through the rubbish to find out any information that might have been discarded.

    B. Search on financial site such as Yahoo Financial to identify assets.

    C. Scan the range of IP address found in the target DNS database.

    D. Perform multiples queries using a search engine.

  • Question 358:

    What are the two basic types of attacks? (Choose two.

    A. DoS

    B. Passive

    C. Sniffing

    D. Active

    E. Cracking

  • Question 359:

    User which Federal Statutes does FBI investigate for computer crimes involving e-mail scams and mail fraud?

    A. 18 U.S.C 1029 Possession of Access Devices

    B. 18 U.S.C 1030 Fraud and related activity in connection with computers

    C. 18 U.S.C 1343 Fraud by wire, radio or television

    D. 18 U.S.C 1361 Injury to Government Property

    E. 18 U.S.C 1362 Government communication systems

    F. 18 U.S.C 1831 Economic Espionage Act

    G. 18 U.S.C 1832 Trade Secrets Act

  • Question 360:

    What is "Hacktivism"?

    A. Hacking for a cause

    B. Hacking ruthlessly

    C. An association which groups activists

    D. None of the above

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.