CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 491:

    WEP is used on 802.11 networks, what was it designed for?

    A. WEP is designed to provide a wireless local area network (WLAN) with a level of security and privacy comparable to what it usually expected of a wired LAN.
    B. WEP is designed to provide strong encryption to a wireless local area network (WLAN) with a lever of integrity and privacy adequate for sensible but unclassified information.
    C. WEP is designed to provide a wireless local area network (WLAN) with a level of availability and privacy comparable to what is usually expected of a wired LAN.
    D. WEOP is designed to provide a wireless local area network (WLAN) with a level of privacy comparable to what it usually expected of a wired LAN.

  • Question 492:

    To see how some of the hosts on your network react, Winston sends out SYN packets to an IP range. A number of IPs respond with a SYN/ACK response. Before the connection is established he sends RST packets to those hosts to stop the session. Winston has done this to see how his intrusion detection system will log the traffic. What type of scan is Winston attempting here?

    A. Winston is attempting to find live hosts on your company's network by using an XMAS scan.
    B. He is utilizing a SYN scan to find live hosts that are listening on your network.
    C. This type of scan he is using is called a NULL scan.
    D. He is using a half-open scan to find live hosts on your network.

  • Question 493:

    Melissa is a virus that attacks Microsoft Windows platforms. To which category does this virus belong?

    A. Polymorphic
    B. Boot Sector infector
    C. System
    D. Macro

  • Question 494:

    A security engineer has been asked to deploy a secure remote access solution that will allow employees to connect to the company's internal network. Which of the following can be implemented to minimize the opportunity for the man-in-themiddle attack to occur?

    A. SSL
    B. Mutual authentication
    C. IPSec
    D. Static IP addresses

  • Question 495:

    Which of the following Exclusive OR transforms bits is NOT correct?

    A. 0 xor 0 = 0
    B. 1 xor 0 = 1
    C. 1 xor 1 = 1
    D. 0 xor 1 = 1

  • Question 496:

    To scan a host downstream from a security gateway, Firewalking:

    A. Sends a UDP-based packet that it knows will be blocked by the firewall to determine how specifically the firewall responds to such packets
    B. Uses the TTL function to send packets with a TTL value set to expire one hop past the identified security gateway
    C. Sends an ICMP ''administratively prohibited'' packet to determine if the gateway will drop the packet without comment.
    D. Assesses the security rules that relate to the target system before it sends packets to any hops on the route to the gateway

  • Question 497:

    Syslog is a standard for logging program messages. It allows separation of the software that generates messages from the system that stores them and the software that reports and analyzes them. It also provides devices, which would otherwise be unable to communicate a means to notify administrators of problems or performance.

    What default port Syslog daemon listens on?

    A. 242
    B. 312
    C. 416
    D. 514

  • Question 498:

    User which Federal Statutes does FBI investigate for computer crimes involving e-mail scams and mail fraud?

    A. 18 U.S.C 1029 Possession of Access Devices
    B. 18 U.S.C 1030 Fraud and related activity in connection with computers
    C. 18 U.S.C 1343 Fraud by wire, radio or television
    D. 18 U.S.C 1361 Injury to Government Property
    E. 18 U.S.C 1362 Government communication systems
    F. 18 U.S.C 1831 Economic Espionage Act
    G. 18 U.S.C 1832 Trade Secrets Act

  • Question 499:

    A tester has been using the msadc.pl attack script to execute arbitrary commands on a Windows NT4 web server. While it is effective, the tester finds it tedious to perform extended functions. On further research, the tester come across a perl script that runs the following msadc functions:system("perl msadc.pl -h $host -C \"echo open $your >testfile\"");

    Which exploit is indicated by this script?

    A. A buffer overflow exploit
    B. A chained exploit
    C. A SQL injection exploit
    D. A denial of service exploit

  • Question 500:

    In Trojan terminology, what is required to create the executable file chess.exe as shown below?

    A. Mixer
    B. Converter
    C. Wrapper
    D. Zipper

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.