CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 811:

    Which of the following display filters will you enable in Ethereal to view the three-way handshake for a connection from host 192.168.0.1?

    A. ip == 192.168.0.1 and tcp.syn
    B. ip.addr = 192.168.0.1 and syn = 1
    C. ip.addr==192.168.0.1 and tcp.flags.syn
    D. ip.equals 192.168.0.1 and syn.equals on

  • Question 812:

    What port scanning method is the most reliable but also the most detectable?

    A. Null Scanning
    B. Connect Scanning
    C. ICMP Scanning
    D. Idlescan Scanning
    E. Half Scanning
    F. Verbose Scanning

  • Question 813:

    You may be able to identify the IP addresses and machine names for the firewall, and the names of internal mail servers by:

    A. Sending a mail message to a valid address on the target network, and examining the header information generated by the IMAP servers
    B. Examining the SMTP header information generated by using the x command parameter of DIG
    C. Examining the SMTP header information generated in response to an e-mail message sent to an invalid address
    D. Sending a mail message to an invalid address on the target network, and examining the header information generated by the POP servers

  • Question 814:

    You have retrieved the raw hash values from a Windows 2000 Domain Controller. Using social engineering, you come to know that they are enforcing strong passwords. You understand that all users are required to use passwords that are at least 8 characters in length. All passwords must also use 3 of the 4 following categories: lower case letters, capital letters, numbers and special characters.

    With your existing knowledge of users, likely user account names and the possibility that they will choose the easiest passwords possible, what would be the fastest type of password cracking attack you can run against these hash values and still get results?

    A. Online Attack
    B. Dictionary Attack
    C. Brute Force Attack
    D. Hybrid Attack

  • Question 815:

    What information should an IT system analysis provide to the risk assessor?

    A. Management buy-in
    B. Threat statement
    C. Security architecture
    D. Impact analysis

  • Question 816:

    _________ is one of the programs used to wardial.

    A. DialIT
    B. Netstumbler
    C. TooPac
    D. Kismet
    E. ToneLoc

  • Question 817:

    Neil is closely monitoring his firewall rules and logs on a regular basis. Some of the users have complained to Neil that there are a few employees who are visiting offensive web site during work hours, without any consideration for others. Neil knows that he has an up-to- date content filtering system and such access should not be authorized. What type of technique might be used by these offenders to access the Internet without restriction?

    A. They are using UDP that is always authorized at the firewall
    B. They are using HTTP tunneling software that allows them to communicate with protocols in a way it was not intended
    C. They have been able to compromise the firewall, modify the rules, and give themselves proper access
    D. They are using an older version of Internet Explorer that allow them to bypass the proxy server

  • Question 818:

    Bob wants to prevent attackers from sniffing his passwords on the wired network. Which of the following lists the best options?

    A. RSA, LSA, POP
    B. SSID, WEP, Kerberos
    C. SMB, SMTP, Smart card
    D. Kerberos, Smart card, Stanford SRP

  • Question 819:

    Which of the following is not considered to be a part of active sniffing?

    A. MAC Flooding
    B. ARP Spoofing
    C. SMAC Fueling
    D. MAC Duplicating

  • Question 820:

    Statistics from cert.org and other leading security organizations has clearly showed a steady rise in the number of hacking incidents perpetrated against companies. What do you think is the main reason behind the significant increase in hacking attempts over the past years?

    A. It is getting more challenging and harder to hack for non technical people.
    B. There is a phenomenal increase in processing power.
    C. New TCP/IP stack features are constantly being added.
    D. The ease with which hacker tools are available on the Internet.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.