CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 791:

    What ports should be blocked on the firewall to prevent NetBIOS traffic from not coming through the firewall if your network is comprised of Windows NT, 2000, and XP?(Choose all that apply.

    A. 110
    B. 135
    C. 139
    D. 161
    E. 445
    F. 1024

  • Question 792:

    What is one thing a tester can do to ensure that the software is trusted and is not changing or tampering with critical data on the back end of a system it is loaded on?

    A. Proper testing
    B. Secure coding principles
    C. Systems security and architecture review
    D. Analysis of interrupts within the software

  • Question 793:

    One of your junior administrator is concerned with Windows LM hashes and password cracking. In your discussion with them, which of the following are true statements that you would point out? Select the best answers.

    A. John the Ripper can be used to crack a variety of passwords, but one limitation is that the output doesn't show if the password is upper or lower case.
    B. BY using NTLMV1, you have implemented an effective countermeasure to password cracking.
    C. SYSKEY is an effective countermeasure.
    D. If a Windows LM password is 7 characters or less, the hash will be passed with the following characters, in HEX- 00112233445566778899.
    E. Enforcing Windows complex passwords is an effective countermeasure.

  • Question 794:

    A Certificate Authority (CA) generates a key pair that will be used for encryption and decryption of email. The integrity of the encrypted email is dependent on the security of which of the following?

    A. Public key
    B. Private key
    C. Modulus length
    D. Email server certificate

  • Question 795:

    You are a Administrator of Windows server. You want to find the port number for POP3. What file would you find the information in and where? Select the best answer.

    A. %windir%\\etc\\services
    B. system32\\drivers\\etc\\services
    C. %windir%\\system32\\drivers\\etc\\services
    D. /etc/services
    E. %windir%/system32/drivers/etc/services

  • Question 796:

    John has scanned the web server with NMAP. However, he could not gather enough information to help him identify the operating system running on the remote host accurately. What would you suggest to John to help identify the OS that is being used on the remote web server?

    A. Connect to the web server with a browser and look at the web page.
    B. Connect to the web server with an FTP client.
    C. Telnet to port 8080 on the web server and look at the default page code.
    D. Telnet to an open port and grab the banner.

  • Question 797:

    This type of Port Scanning technique splits TCP header into several packets so that the packet filters are not able to detect what the packets intends to do.

    A. UDP Scanning
    B. IP Fragment Scanning
    C. Inverse TCP flag scanning
    D. ACK flag scanning

  • Question 798:

    What is the proper response for a FIN scan if the port is closed?

    A. SYN
    B. ACK
    C. FIN
    D. PSH
    E. RST

  • Question 799:

    To what does "message repudiation" refer to what concept in the realm of email security?

    A. Message repudiation means a user can validate which mail server or servers a message was passed through.
    B. Message repudiation means a user can claim damages for a mail message that damaged their reputation.
    C. Message repudiation means a recipient can be sure that a message was sent from a particular person.
    D. Message repudiation means a recipient can be sure that a message was sent from a certain host.
    E. Message repudiation means a sender can claim they did not actually send a particular message.

  • Question 800:

    Why attackers use proxy servers?

    A. To ensure the exploits used in the attacks always flip reverse vectors
    B. Faster bandwidth performance and increase in attack speed
    C. Interrupt the remote victim's network traffic and reroute the packets to attackers machine
    D. To hide the source IP address so that an attacker can hack without any legal corollary

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.