CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 581:

    Which of the following is not an effective countermeasure against replay attacks?

    A. Digital signatures
    B. Time Stamps
    C. System identification
    D. Sequence numbers

  • Question 582:

    Under what conditions does a secondary name server request a zone transfer from a primary name server?

    A. When a primary SOA is higher that a secondary SOA
    B. When a secondary SOA is higher that a primary SOA
    C. When a primary name server has had its service restarted
    D. When a secondary name server has had its service restarted
    E. When the TTL falls to zero

  • Question 583:

    NetBIOS over TCP/IP allows files and/or printers to be shared over the network. You are trying to intercept the traffic from a victim machine to a corporate network printer. You are attempting to hijack the printer network connection from your

    laptop by sniffing the wire.

    Which port does SMB over TCP/IP use?

    A. 443
    B. 139
    C. 179
    D. 445

  • Question 584:

    Employees in a company are no longer able to access Internet web sites on their computers. The network administrator is able to successfully ping IP address of web servers on the Internet and is able to open web sites by using an IP address in place of the URL. The administrator runs the nslookup command for www.eccouncil.org and receives an error message stating there is no response from the server. What should the administrator do next?

    A. Configure the firewall to allow traffic on TCP ports 53 and UDP port 53.
    B. Configure the firewall to allow traffic on TCP ports 80 and UDP port 443.
    C. Configure the firewall to allow traffic on TCP port 53.
    D. Configure the firewall to allow traffic on TCP port 8080.

  • Question 585:

    An attacker runs netcat tool to transfer a secret file between two hosts.

    Machine A: netcat -l -p 1234 < secretfile

    Machine B: netcat 192.168.3.4 > 1234

    He is worried about information being sniffed on the network. How would the attacker use netcat to encrypt the information before transmitting onto the wire?

    A. Machine A: netcat -l -p -s password 1234 < testfile Machine B: netcat 1234
    B. Machine A: netcat -l -e magickey -p 1234 < testfile Machine B: netcat 1234
    C. Machine A: netcat -l -p 1234 < testfile -pw password Machine B: netcat 1234 -pw password
    D. Use cryptcat instead of netcat

  • Question 586:

    Which of the following encryption is NOT based on block cipher?

    A. DES
    B. Blowfish
    C. AES (Rijndael)
    D. RC4

  • Question 587:

    Attackers can potentially intercept and modify unsigned SMB packets, modify the traffic and forward it so that the server might perform undesirable actions. Alternatively, the attacker could pose as the server or client after a legitimate authentication and gain unauthorized access to data. Which of the following is NOT a means that can be used to minimize or protect against such an attack?

    A. Timestamps
    B. SMB Signing
    C. File permissions
    D. Sequence numbers monitoring

  • Question 588:

    When working with Windows systems, what is the RID of the true administrator account?

    A. 500
    B. 501
    C. 1000
    D. 1001
    E. 1024
    F. 512

  • Question 589:

    A computer technician is using a new version of a word processing software package when it is discovered that a special sequence of characters causes the entire computer to crash. The technician researches the bug and discovers that no one else experienced the problem. What is the appropriate next step?

    A. Ignore the problem completely and let someone else deal with it.
    B. Create a document that will crash the computer when opened and send it to friends.
    C. Find an underground bulletin board and attempt to sell the bug to the highest bidder.
    D. Notify the vendor of the bug and do not disclose it until the vendor gets a chance to issue a fix.

  • Question 590:

    Which type of password cracking technique works like dictionary attack but adds some numbers and symbols to the words from the dictionary and tries to crack the password?

    A. Dictionary attack
    B. Brute forcing attack
    C. Hybrid attack
    D. Syllable attack
    E. Rule-based attack

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.