CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 621:

    Within the context of Computer Security, which of the following statements describes Social Engineering best?

    A. Social Engineering is the act of publicly disclosing information
    B. Social Engineering is the means put in place by human resource to perform time accounting
    C. Social Engineering is the act of getting needed information from a person rather than breaking into a system
    D. Social Engineering is a training program within sociology studies

  • Question 622:

    Your computer is infected by E-mail tracking and spying Trojan. This Trojan infects the computer with a single file - emos.sys

    Which step would you perform to detect this type of Trojan?

    A. Scan for suspicious startup programs using msconfig
    B. Scan for suspicious network activities using Wireshark
    C. Scan for suspicious device drivers in c:\windows\system32\drivers
    D. Scan for suspicious open ports using netstat

  • Question 623:

    The Open Web Application Security Project (OWASP) testing methodology addresses the need to secure web applications by providing which one of the following services?

    A. An extensible security framework named COBIT
    B. A list of flaws and how to fix them
    C. Web application patches
    D. A security certification for hardened web applications

  • Question 624:

    During a penetration test, the tester conducts an ACK scan using NMAP against the external interface of the DMZ firewall. NMAP reports that port 80 is unfiltered. Based on this response, which type of packet inspection is the firewall conducting?

    A. Host
    B. Stateful
    C. Stateless
    D. Application

  • Question 625:

    When creating a security program, which approach would be used if senior management is supporting and enforcing the security policy?

    A. A bottom-up approach
    B. A top-down approach
    C. A senior creation approach
    D. An IT assurance approach

  • Question 626:

    While examining a log report you find out that an intrusion has been attempted by a machine whose IP address is displayed as 0xde.0xad.0xbe.0xef. It looks to you like a hexadecimal number. You perform a ping 0xde.0xad.0xbe.0xef. Which of the following IP addresses will respond to the ping and hence will likely be responsible for the intrusion?

    A. 192.10.25.9
    B. 10.0.3.4
    C. 203.20.4.5
    D. 222.273.290.239

  • Question 627:

    How can a rootkit bypass Windows 7 operating system's kernel mode, code signing policy?

    A. Defeating the scanner from detecting any code change at the kernel
    B. Replacing patch system calls with its own version that hides the rootkit (attacker's) actions
    C. Performing common services for the application process and replacing real applications with fake ones
    D. Attaching itself to the master boot record in a hard drive and changing the machine's boot sequence/options

  • Question 628:

    You are writing security policy that hardens and prevents Footprinting attempt by Hackers. Which of the following countermeasures will NOT be effective against this attack?

    A. Configure routers to restrict the responses to Footprinting requests
    B. Configure Web Servers to avoid information leakage and disable unwanted protocols
    C. Lock the ports with suitable Firewall configuration
    D. Use an IDS that can be configured to refuse suspicious traffic and pick up Footprinting patterns
    E. Evaluate the information before publishing it on the Website/Intranet
    F. Monitor every employee computer with Spy cameras, keyloggers and spy on them
    G. Perform Footprinting techniques and remove any sensitive information found on DMZ sites
    H. Prevent search engines from caching a Webpage and use anonymous registration services
    I. Disable directory and use split-DNS

  • Question 629:

    You are attempting to crack LM Manager hashed from Windows 2000 SAM file. You will be using LM Brute force hacking tool for decryption.

    What encryption algorithm will you be decrypting?

    A. MD4
    B. DES
    C. SHA
    D. SSL

  • Question 630:

    What are the default passwords used by SNMP? (Choose two.)

    A. Password
    B. SA
    C. Private
    D. Administrator
    E. Public
    F. Blank

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.