GAQM CPEH-001 Exam Questions
Certified Professional Ethical Hacker (CPEH) Exam (Page 12 )

Updated On: 24-Feb-2026

In the context of Trojans, what is the definition of a Wrapper?

  1. An encryption tool to protect the Trojan
  2. A tool used to bind the Trojan with a legitimate file
  3. A tool used to calculate bandwidth and CPU cycles wasted by the Trojan
  4. A tool used to encapsulate packets within a new header and footer

Answer(s): B

Explanation:

Wrapper does not change header or footer of any packets but it mix between legitimate file and

Trojan file.



Your computer is infected by E-mail tracking and spying Trojan. This Trojan infects the computer with a single file - emos.sys.
Which step would you perform to detect this type of Trojan?

  1. Scan for suspicious startup programs using msconfig
  2. Scan for suspicious network activities using Wireshark
  3. Scan for suspicious device drivers in c:\windows\system32\drivers
  4. Scan for suspicious open ports using netstat

Answer(s): C



Which type of hacker represents the highest risk to your network?

  1. black hat hackers
  2. grey hat hackers
  3. disgruntled employees
  4. script kiddies

Answer(s): C



Shayla is an IT security consultant, specializing in social engineering and external penetration tests. Shayla has been hired on by Treks Avionics, a subcontractor for the Department of Defense. Shayla has been given authority to perform any and all tests necessary to audit the company's network security. No employees for the company, other than the IT director, know about Shayla's work she will be doing. Shayla's first step is to obtain a list of employees through company website contact pages. Then she befriends a female employee of the company through an online chat website. After meeting with the female employee numerous times, Shayla is able to gain her trust and they become friends. One day, Shayla steals the employee's access badge and uses it to gain unauthorized access to the Treks Avionics offices.
What type of insider threat would Shayla be considered?

  1. She would be considered an Insider Affiliate
  2. Because she does not have any legal access herself, Shayla would be considered an Outside Affiliate
  3. Shayla is an Insider Associate since she has befriended an actual employee
  4. Since Shayla obtained access with a legitimate company badge; she would be considered a Pure Insider

Answer(s): A



What port number is used by Kerberos protocol?

  1. 88
  2. 44
  3. 487
  4. 419

Answer(s): A






Post your Comments and Discuss GAQM CPEH-001 exam dumps with other Community members:

Join the CPEH-001 Discussion