CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 521:

    Which type of sniffing technique is generally referred as MiTM attack?

    A. Password Sniffing
    B. ARP Poisoning
    C. Mac Flooding
    D. DHCP Sniffing

  • Question 522:

    Which of the following is a component of a risk assessment?

    A. Physical security
    B. Administrative safeguards
    C. DMZ
    D. Logical interface

  • Question 523:

    Stephanie works as a records clerk in a large office building in downtown Chicago. On Monday, she went to a mandatory security awareness class (Security5) put on by her company's IT department. During the class, the IT department informed all employees that everyone's Internet activity was thenceforth going to be monitored.

    Stephanie is worried that her Internet activity might give her supervisor reason to write her up, or worse get her fired. Stephanie's daily work duties only consume about four hours of her time, so she usually spends the rest of the day surfing the web. Stephanie really enjoys surfing the Internet but definitely does not want to get fired for it.

    What should Stephanie use so that she does not get in trouble for surfing the Internet?

    A. Stealth IE
    B. Stealth Anonymizer
    C. Stealth Firefox
    D. Cookie Disabler

  • Question 524:

    After studying the following log entries, how many user IDs can you identify that the attacker has tampered with?

    1.

    mkdir -p /etc/X11/applnk/Internet/.etc

    2.

    mkdir -p /etc/X11/applnk/Internet/.etcpasswd

    3.

    touch -acmr /etc/passwd /etc/X11/applnk/Internet/.etcpasswd

    4.

    touch -acmr /etc /etc/X11/applnk/Internet/.etc

    5.

    passwd nobody -d

    6.

    /usr/sbin/adduser dns -d/bin -u 0 -g 0 -s/bin/bash

    7.

    passwd dns -d

    8.

    touch -acmr /etc/X11/applnk/Internet/.etcpasswd /etc/passwd

    9.

    touch -acmr /etc/X11/applnk/Internet/.etc /etc

    A. IUSR_
    B. acmr, dns
    C. nobody, dns
    D. nobody, IUSR_

  • Question 525:

    Which of the following systems would not respond correctly to an nmap XMAS scan?

    A. Windows 2000 Server running IIS 5
    B. Any Solaris version running SAMBA Server
    C. Any version of IRIX
    D. RedHat Linux 8.0 running Apache Web Server

  • Question 526:

    Your XYZ trainee Sandra asks you which are the four existing Regional Internet Registry (RIR's)?

    A. APNIC, PICNIC, ARIN, LACNIC
    B. RIPE NCC, LACNIC, ARIN, APNIC
    C. RIPE NCC, NANIC, ARIN, APNIC
    D. RIPE NCC, ARIN, APNIC, LATNIC

  • Question 527:

    What is the primary drawback to using advanced encryption standard (AES) algorithm with a 256 bit key to share sensitive data?

    A. Due to the key size, the time it will take to encrypt and decrypt the message hinders efficient communication.
    B. To get messaging programs to function with this algorithm requires complex configurations.
    C. It has been proven to be a weak cipher; therefore, should not be trusted to protect sensitive data.
    D. It is a symmetric key algorithm, meaning each recipient must receive the key through a different channel than the message.

  • Question 528:

    You have the SOA presented below in your Zone. Your secondary servers have not been able to contact your primary server to synchronize information. How long will the secondary servers attempt to contact the primary server before it considers that zone is dead and stops responding to queries?

    collegae.edu.SOA, cikkye.edu ipad.college.edu. (200302028 3600 3600 604800 3600)

    A. One day
    B. One hour
    C. One week
    D. One month

  • Question 529:

    What is a sheepdip?

    A. It is another name for Honeynet
    B. It is a machine used to coordinate honeynets
    C. It is the process of checking physical media for virus before they are used in a computer
    D. None of the above

  • Question 530:

    In this attack, a victim receives an e-mail claiming from PayPal stating that their account has been disabled and confirmation is required before activation. The attackers then scam to collect not one but two credit card numbers, ATM PIN number and other personal details.

    Ignorant users usually fall prey to this scam. Which of the following statement is incorrect related to this attack?

    A. Do not reply to email messages or popup ads asking for personal or financial information
    B. Do not trust telephone numbers in e-mails or popup ads
    C. Review credit card and bank account statements regularly
    D. Antivirus, anti-spyware, and firewall software can very easily detect these type of attacks
    E. Do not send credit card numbers, and personal or financial information via e-mail

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.