Free 312-50 Exam Braindumps (page: 37)

Page 36 of 191

What ports should be blocked on the firewall to prevent NetBIOS traffic from not coming through the firewall if your network is comprised of Windows NT, 2000, and XP?(Choose all that apply.

  1. 110
  2. 135
  3. 139
  4. 161
  5. 445
  6. 1024

Answer(s): B,C,E

Explanation:

NetBIOS traffic can quickly be used to enumerate and attack Windows computers. Ports 135, 139, and 445 should be blocked.



What is a NULL scan?

  1. A scan in which all flags are turned off
  2. A scan in which certain flags are off
  3. A scan in which all flags are on
  4. A scan in which the packet size is set to zero
  5. A scan with a illegal packet size

Answer(s): A

Explanation:

A null scan has all flags turned off.



What is the proper response for a NULL scan if the port is open?

  1. SYN
  2. ACK
  3. FIN
  4. PSH
  5. RST
  6. No response

Answer(s): F

Explanation:

A NULL scan will have no response if the port is open.



Which of the following statements about a zone transfer correct?(Choose three.

  1. A zone transfer is accomplished with the DNS
  2. A zone transfer is accomplished with the nslookup service
  3. A zone transfer passes all zone information that a DNS server maintains
  4. A zone transfer passes all zone information that a nslookup server maintains
  5. A zone transfer can be prevented by blocking all inbound TCP port 53 connections
  6. Zone transfers cannot occur on the Internet

Answer(s): A,C,E

Explanation:

Securing DNS servers should be a priority of the organization. Hackers obtaining DNS information can discover a wealth of information about an organization. This information can be used to further exploit the network.






Post your Comments and Discuss EC-Council 312-50 exam with other Community members:

312-50 Discussions & Posts