Skip to main content

ECSS Real Exam Questions

EC-Council Certified Security Specialist (ECSS) v10

337 questions available · Page 1 of 34

Updated Exam DumpsVerified AnswersPass Guarantee

Get Complete Exam Dumps
Question 1 Single choice

Adam works as a Computer Hacking Forensic Investigator for a garment company in the United States. A project has been assigned to him to investigate a case of a disloyal employee who is suspected of stealing design of the garments, which belongs to the company and selling those garments of the same design under different brand name. Adam investigated that the company does not have any policy related to the copy of design of the garments. He also investigated that the trademark under which the employee is selling the garments is almost identical to the original trademark of the company.
On the grounds of which of the following laws can the employee be prosecuted?

  1. A

    Copyright law

  2. B

    Cyber law

  3. C

    Espionage law

  4. D

    Trademark law

Show answer and explanation

Correct answer: D

Question 2 Single choice

Peter works as a professional Computer Hacking Forensic Investigator for eLaw-Suit law firm. He is working on a case of a cyber crime. Peter knows that the good investigative report should not only communicate the relevant facts, but also present expert opinion. This report should not include the cases in which the expert acted as a lay witness.

Which of the following type of witnesses is a lay witness?

  1. A

    One who can give a firsthand account of something seen, heard, or experienced.

  2. B

    One with special knowledge of the subject about which he or she is testifying.

  3. C

    One who observes an event.

  4. D

    One who is not qualified as an expert witness.

Show answer and explanation

Correct answer: D

Question 3 Single choice

Peter works as a Technical Representative in a CSIRT for SecureEnet Inc. His team is called to investigate the computer of an employee, who is suspected for classified data theft. Suspect's computer runs on Windows operating system. Peter wants to collect data and evidences for further analysis. He knows that in Windows operating system, the data is searched in pre-defined steps for proper and efficient analysis.

Which of the following is the correct order for searching data on a Windows based system?

  1. A

    Volatile data, file slack, registry, memory dumps, file system, system state backup, interne t traces

  2. B

    Volatile data, file slack, registry, system state backup, internet traces, file system, memory dumps

  3. C

    Volatile data, file slack, internet traces, registry, memory dumps, system state backup, file system

  4. D

    Volatile data, file slack, file system, registry, memory dumps, system state backup, interne t traces

Show answer and explanation

Correct answer: D

Question 4 Single choice

Which of the following Intrusion Detection Systems (IDS) is used to monitor rogue access points and the use of wireless attack tools?

  1. A

    Snort 2.1.0

  2. B

    WIDS

  3. C

    NFR security

  4. D

    LogIDS 1.0

Show answer and explanation

Correct answer: B

Question 5 Multiple choice

John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He has successfully completed the following pre-attack phases while testing the security of the server:

Footprinting

Scanning

Now he wants to conduct the enumeration phase. Which of the following tools can John use to conduct it?

Each correct answer represents a complete solution. Choose all that apply.

  1. A

    PsFile

  2. B

    PsPasswd

  3. C

    WinSSLMiM

  4. D

    UserInfo

Show answer and explanation

Correct answers: A, B, D

Question 6 Single choice

Peter works as a Technical Representative in a CSIRT for SecureEnet Inc. His team is called to investigate the computer of an employee, who is suspected for classified data theft. Suspect's computer runs on Windows operating system. Peter wants to collect data and evidences for further analysis. He knows that in Windows operating system, the data is searched in pre-defined steps for proper and efficient analysis.

Which of the following is the correct order for searching data on a Windows based system?

  1. A

    Volatile data, file slack, registry, system state backup, internet traces, file system, memory dumps

  2. B

    Volatile data, file slack, registry, memory dumps, file system, system state backup, interne t traces

  3. C

    Volatile data, file slack, file system, registry, memory dumps, system state backup, interne t traces

  4. D

    Volatile data, file slack, internet traces, registry, memory dumps, system state backup, file system

Show answer and explanation

Correct answer: C

Question 7 Single choice

Which of the following password cracking attacks is implemented by calculating all the possible hashes for a set of characters?

  1. A

    Rainbow attack

  2. B

    Dictionary attack

  3. C

    Brute force attack

  4. D

    SQL injection attack

Show answer and explanation

Correct answer: A

Question 8 Single choice

Which of the following softwares is used to perform constant monitoring of the network infrastructure?

  1. A

    Logdog

  2. B

    THCHydra

  3. C

    IPSentry

  4. D

    Cain

Show answer and explanation

Correct answer: C

Question 9 Multiple choice

Which two security components should you implement on the sales personnel portable computers to increase security?

(Click the Exhibit button on the toolbar to see the case study.)

Each correct answer represents a complete solution. Choose two.

  1. A

    Encrypting File System (EFS)

  2. B

    L2TP over IPSec

  3. C

    PPTP

  4. D

    Remote access policy

  5. E

    Remote Authentication Dial-In User Service (RADIUS)

Show answer and explanation

Correct answers: A, B

Question 10 Single choice

You are a professional Computer Hacking forensic investigator. You have been called to collect the evidences of Buffer Overflows or Cookie snooping attack. Which of the following logs will you review to accomplish the task?

Each correct answer represents a complete solution. Choose all that apply.

  1. A

    Web server logs

  2. B

    Event logs

  3. C

    System logs

  4. D

    Program logs

Show answer and explanation

Correct answer: B