Free 312-50 Exam Braindumps (page: 28)

Page 27 of 191

What are the four steps is used by nmap scanning?

  1. DNS Lookup
  2. ICMP Message
  3. Ping
  4. Reverse DNS lookup
  5. TCP three way handshake
  6. The Actual nmap scan

Answer(s): A,C,D,F

Explanation:

Nmap performs four steps during a normal device scan. Some of these steps can be modified or disabled using options on the nmap command line.



Your are trying the scan a machine located at ABC company’s LAN named mail.abc.com. Actually that machine located behind the firewall. Which port is used by nmap to send the TCP synchronize frame to on mail.abc.com?

  1. 443
  2. 80
  3. 8080
  4. 23

Answer(s): A



Jenny a well known hacker scanning to remote host of 204.4.4.4 using nmap. She got the scanned output but she saw that 25 port states is filtered. What is the meaning of filtered port State?

  1. Can Accessible
  2. Filtered by firewall
  3. Closed
  4. None of above

Answer(s): B

Explanation:

The state is either open, filtered, closed, or unfiltered. Filtered means that a firewall, filter, or other network obstacle is blocking the port so that Nmap cannot tell whether it is open or closed.



You want to scan the live machine on the LAN, what type of scan you should use?

  1. Connect
  2. SYN
  3. TCP
  4. UDP
  5. PING

Answer(s): E

Explanation:

The ping scan is one of the quickest scans that nmap performs, since no actual ports are queried. Unlike a port scan where thousands of packets are transferred between two stations, a ping scan requires only two frames. This scan is useful for locating active devices or determining if ICMP is passing through a firewall.






Post your Comments and Discuss EC-Council 312-50 exam with other Community members:

312-50 Discussions & Posts