Free 312-50 Exam Braindumps (page: 48)

Page 47 of 191

Which of the following is the primary objective of a rootkit?

  1. It opens a port to provide an unauthorized service
  2. It creates a buffer overflow
  3. It replaces legitimate programs
  4. It provides an undocumented opening in a program

Answer(s): C

Explanation:

Actually the objective of the rootkit is more to hide the fact that a system has been compromised and the normal way to do this is by exchanging, for example, ls to a version that doesn’t show the files and process implanted by the attacker.



This kind of password cracking method uses word lists in combination with numbers and special characters:

  1. Hybrid
  2. Linear
  3. Symmetric
  4. Brute Force

Answer(s): A

Explanation:

A Hybrid (or Hybrid Dictionary) Attack uses a word list that it modifies slightly to find passwords that are almost from a dictionary (like St0pid)



Exhibit:

You receive an e-mail with the message displayed in the exhibit.
From this e-mail you suspect that this message was sent by some hacker since you have using their e-mail services for the last 2 years and they never sent out an e-mail as this. You also observe the URL in the message and confirm your suspicion about 340590649. You immediately enter the following at the Windows 2000 command prompt. ping 340590649
You get a response with a valid IP address. What is the obstructed IP address in the e-mail URL?

  1. 192.34.5.9
  2. 10.0.3.4
  3. 203.2.4.5
  4. 199.23.43.4

Answer(s): C

Explanation:

Convert the number in binary, then start from last 8 bits and convert them to decimal to get the last octet (in this case .5)



_________is a tool that can hide processes from the process list, can hide files, registry entries, and intercept keystrokes.

  1. Trojan
  2. RootKit
  3. DoS tool
  4. Scanner
  5. Backdoor

Answer(s): B

Explanation:

Rootkits are tools that can hide processes from the process list, can hide files, registry entries, and intercept keystrokes.






Post your Comments and Discuss EC-Council 312-50 exam with other Community members:

312-50 Discussions & Posts