Free CEH-001 Exam Braindumps (page: 80)

Page 79 of 220

The intrusion detection system at a software development company suddenly generates multiple alerts regarding attacks against the company's external webserver, VPN concentrator, and DNS servers. What should the security team do to determine which alerts to check first?

  1. Investigate based on the maintenance schedule of the affected systems.
  2. Investigate based on the service level agreements of the systems.
  3. Investigate based on the potential effect of the incident.
  4. Investigate based on the order that the alerts arrived in.

Answer(s): C



A corporation hired an ethical hacker to test if it is possible to obtain users' login credentials using methods other than social engineering. Access to offices and to a network node is granted. Results from server scanning indicate all are adequately patched and physical access is denied, thus, administrators have access only through Remote Desktop. Which technique could be used to obtain login credentials?

  1. Capture every users' traffic with Ettercap.
  2. Capture LANMAN Hashes and crack them with LC6.
  3. Guess passwords using Medusa or Hydra against a network service.
  4. Capture administrators RDP traffic and decode it with Cain and Abel.

Answer(s): D



Which of the following scanning tools is specifically designed to find potential exploits in Microsoft Windows products?

  1. Microsoft Security Baseline Analyzer
  2. Retina
  3. Core Impact
  4. Microsoft Baseline Security Analyzer

Answer(s): D



Which of the statements concerning proxy firewalls is correct?

  1. Proxy firewalls increase the speed and functionality of a network.
  2. Firewall proxy servers decentralize all activity for an application.
  3. Proxy firewalls block network packets from passing to and from a protected network.
  4. Computers establish a connection with a proxy firewall which initiates a new network connection for the client.

Answer(s): D






Post your Comments and Discuss GAQM CEH-001 exam with other Community members:

CEH-001 Exam Discussions & Posts