EC-Council EC0-479 Exam Questions
EC0-479 EC-Council Certified Security Analyst (ECSA) (Page 5 )

Updated On: 21-Feb-2026

You are a security analyst performing a penetration tests for a company in the Midwest. After some initial reconnaissance, you discover the IP addresses of some Cisco routers used by the company. You type in the following URL that includes the IP address of one of the routers:

http://172.168.4.131/level/99/exec/show/config

After typing in this URL, you are presented with the entire configuration file for that router.
What have you discovered?

  1. HTTP Configuration Arbitrary Administrative Access Vulnerability
  2. HTML Configuration Arbitrary Administrative Access Vulnerability
  3. Cisco IOS Arbitrary Administrative Access Online Vulnerability
  4. URL Obfuscation Arbitrary Administrative Access Vulnerability

Answer(s): A



What is the following command trying to accomplish? C:\> nmap-sU-p445 192.168.0.0/24

  1. Verify that UDP port 445 is open for the 192.168.0.0 network
  2. Verify that TCP port 445 is open for the 192.168.0.0 network
  3. Verify that NETBIOS is running for the 192.168.0.0 network
  4. Verify that UDP port 445 is closed for the 192.168.0.0 network

Answer(s): A



You are the network administrator for a small bank in Dallas, Texas. To ensure network security, you enact a security policy that requires all users to have 14 character passwords. After giving your users 2 weeks notice, you change the Group Policy to force 14 character passwords. A week later you dump the SAM database from the standalone server and run a passworD. cracking tool against it. Over 99% of the passwords are broken within an hour.
Why were these passwords cracked so quickly?

  1. Passwords of 14 characters or less are broken up into two 7-character hashes
  2. A password Group Policy change takes at least 3 weeks to completely replicate throughout a network
  3. Networks using Active Directory never use SAM databases so the SAM database pulled was empty
  4. The passwords that were cracked are local accounts on the Domain Controller

Answer(s): A



An "idle" system is also referred to as what?

  1. PC not connected to the Internet
  2. Zombie
  3. PC not being used
  4. Bot

Answer(s): B



Larry is an IT consultant who works for corporations and government agencies. Larry plans on shutting down the city's network using BGP devices and ombies? What type of Penetration Testing is Larry planning to carry out?

  1. Router Penetration Testing
  2. DoS Penetration Testing
  3. Firewall Penetration Testing
  4. Internal Penetration Testing

Answer(s): B






Post your Comments and Discuss EC-Council EC0-479 exam dumps with other Community members:

Join the EC0-479 Discussion