312-50V10 Exam Questions
937 real 312-50V10 exam questions with expert-verified answers and explanations. Page 13 of 19.
- Question #606Scanning Networks
An NMAP scan of a server shows port 25 is open. What risk could this pose?
port 25SMTPopen mail relayport scanning - Question #607Social Engineering
When utilizing technical assessment methods to assess the security posture of a network, which of the following techniques would be most effective in determining whether end-user s...
social engineeringsecurity assessmentend-user trainingpenetration testing - Question #608Enumeration
A company has publicly hosted web applications and an internal Intranet protected by a firewall. Which technique will help protect against enumeration?
DNS enumerationA recordsinternal host protectionzone transfer - Question #609System Hacking
Which of the following techniques will identify if computer files have been changed?
file integrityhash checkingchange detectionintegrity verification - Question #610Scanning Networks
What are two things that are possible when scanning UDP ports? (Choose two)
UDP scanningICMP responseport scanningUDP behavior - Question #611Scanning Networks
What does a type 3 code 13 represent?(Choose two.
ICMP type 3ICMP code 13destination unreachableadministratively prohibited - Question #612Scanning Networks
Destination unreachable administratively prohibited messages can inform the hacker to what?
ICMPdestination unreachablepacket filteringfirewall detection - Question #613Scanning Networks
Which of the following Nmap commands would be used to perform a stack fingerprinting?
NmapOS fingerprintingstack fingerprinting-O flag - Question #614Scanning Networks
(Note: the student is being tested on concepts learnt during passive OS fingerprinting, basic TCP/IP connection concepts and the ability to read packet signatures from a sniff dump...
Snortpacket analysisBack Orificeport 31337 - Question #615Scanning Networks
Which type of Nmap scan is the most reliable, but also the most visible, and likely to be picked up by and IDS?
NmapTCP connect scanIDS detectionscan visibility - Question #616Scanning Networks
Name two software tools used for OS guessing? (Choose two.
OS fingerprintingNmapQuesoOS guessing tools - Question #617Information Security and Ethical Hacking Fundamentals
Sandra is the security administrator of XYZ.com. One day she notices that the XYZ.com Oracle database server has been compromised and customer information along with financial data...
computer crimelaw enforcementcyber crime investigationlegal framework - Question #618Enumeration
While reviewing the result of scanning run against a target network you come across the following: Which among the following can be used to get this output?
SNMPSNMP walknetwork enumerationOID traversal - Question #619Scanning Networks
You are manually conducting Idle Scanning using Hping2. During your scanning you notice that almost every query increments the IPID regardless of the port being queried. One or two...
idle scanningHping2IPID incrementzombie host - Question #620Scanning Networks
While performing ping scans into a target network you get a frantic call from the organization's security team. They report that they are under a denial of service attack. When you...
ping scansmurf attackbroadcast IPIDS evasion - Question #621Scanning Networks
Neil notices that a single address is generating traffic from its port 500 to port 500 of several other machines on the network. This scan is eating up most of the network bandwidt...
port 500IPSecIKEVPN detection - Question #622Scanning Networks
A distributed port scan operates by:
distributed port scanscanning techniquesport scanningnetwork reconnaissance - Question #623Scanning Networks
An nmap command that includes the host specification of 202.176.56-57.* will scan _______ number of hosts.
nmap host specificationIP range wildcardhost count calculationnetwork scanning - Question #624Scanning Networks
A specific site received 91 ICMP_ECHO packets within 90 minutes from 47 different sites. 77 of the ICMP_ECHO packets had an ICMP ID:39612 and Seq:57072. 13 of the ICMP_ECHO packets...
ICMP analysispacket fingerprintingscanning toolsICMP ID sequence - Question #625Sniffing
Which of the following commands runs snort in packet logger mode?
snortpacket logger modecommand-line flagsnetwork capture - Question #626Scanning Networks
You have initiated an active operating system fingerprinting attempt with nmap against a target system: What operating system is the target host running based on the open ports sho...
OS fingerprintingnmapactive fingerprintingopen port analysis - Question #627Scanning Networks
Study the log below and identify the scan type.
nmap scan typesIP protocol scanlog analysisnmap -sO - Question #628Scanning Networks
Which of the following command line switch would you use for OS detection in Nmap?
nmapOS detection flagcommand-line optionsactive fingerprinting - Question #629Scanning Networks
Why would an attacker want to perform a scan on port 137?
port 137NetBIOSNBTSTATWindows networking - Question #630Scanning Networks
Which Type of scan sends a packets with no flags set? Select the Answer
null scanTCP flagsstealth scanningport scan types - Question #631Scanning Networks
Sandra has been actively scanning the client network on which she is doing a vulnerability assessment test. While conducting a port scan she notices open ports in the range of 135...
ports 135-139SMBNetBIOSprotocol identification - Question #632Enumeration
SNMP is a protocol used to query hosts, servers, and devices about performance or health status data. This protocol has long been used by hackers to gather great amount of informat...
SNMPcommunity stringscleartext protocolnetwork enumeration - Question #633Information Security and Ethical Hacking Fundamentals
Bob is acknowledged as a hacker of repute and is popular among visitors of "underground" sites. Bob is willing to share his knowledge with those who are willing to learn, and many...
ethical hackingblack hat vs white hatsecurity educationcertification - Question #634Enumeration
Peter extracts the SIDs list from Windows 2000 Server machine using the hacking tool "SIDExtractor". Here is the output of the SIDs: From the above list identify the user account w...
SID enumerationWindows administrator SIDSIDExtractoruser account identification - Question #635Scanning Networks
Which address translation scheme would allow a single public IP address to always correspond to a single machine on an internal network, allowing "server publishing"?
static NATnetwork address translationserver publishingIP addressing - Question #636Enumeration
What is the following command used for? net use \targetipc$ "" /u:""
null sessionIPC$ shareWindows enumerationnet use command - Question #637Footprinting and Reconnaissance
One of your team members has asked you to analyze the following SOA record. What is the TTL? Rutgers.edu.SOA NS1.Rutgers.edu ipad.college.edu (200302028 3600 3600 604800 2400.
SOA recordDNS TTLzone record fieldsminimum TTL - Question #638Footprinting and Reconnaissance
One of your team members has asked you to analyze the following SOA record. What is the version? Rutgers.edu.SOA NS1.Rutgers.edu ipad.college.edu (200302028 3600 3600 604800 2400.
SOA recordDNS serial numberzone record fieldsDNS versioning - Question #639Footprinting and Reconnaissance
MX record priority increases as the number increases. (True/False.)
MX recordDNS prioritymail exchangeDNS records - Question #640Footprinting and Reconnaissance
Which of the following tools can be used to perform a zone transfer?
zone transferDNS toolsnslookupdig - Question #641Enumeration
Under what conditions does a secondary name server request a zone transfer from a primary name server?
DNS zone transferSOA recordprimary name serversecondary name server - Question #642Enumeration
What ports should be blocked on the firewall to prevent NetBIOS traffic from not coming through the firewall if your network is comprised of Windows NT, 2000, and XP?(Choose all th...
NetBIOSport filteringSMB portsfirewall rules - Question #643Sniffing
Joseph was the Web site administrator for the Mason Insurance in New York, who's main Web the Web site. One night, Joseph received an urgent phone call from his friend, Smith. Acco...
DNS poisoningcache poisoningDNS spoofingweb defacement - Question #644Enumeration
Which of the following tools are used for enumeration? (Choose three.)
enumeration toolsUSER2SIDSID2USERDumpSec - Question #645Enumeration
What did the following commands determine?
SID enumerationadministrator accountWindows user enumerationnull session - Question #646Evading IDS, Firewalls, and Honeypots
Which definition among those given below best describes a covert channel?
covert channelprotocol misusetunnelingevasion - Question #647Session Hijacking
Susan has attached to her company's network. She has managed to synchronize her boss's sessions with that of the file server. She then intercepted his traffic destined for the serv...
man-in-the-middlesession interceptiontraffic manipulationsession hijacking - Question #648Sniffing
Eric has discovered a fantastic package of tools named Dsniff on the Internet. He has learnt to use these tools in his lab and is now ready for real world exploitation. He was able...
man-in-the-middleDsniffcredential interceptiontraffic relay - Question #649Enumeration
Eve is spending her day scanning the library computers. She notices that Alice is using a computer whose port 445 is active and listening. Eve uses the ENUM tool to enumerate Alice...
ENUM toolpassword crackingWindows enumerationSMB port 445 - Question #650Malware Threats
Which of the following represents the initial two commands that an IRC client sends to join an IRC network?
IRC protocolbotnet command channelIRC commandsmalware communication - Question #651Hacking Web Applications
Study the following log extract and identify the attack.
directory traversalUnicode encodingpath traversalweb log analysis - Question #652Enumeration
Null sessions are un-authenticated connections (not using a username or password.) to an NT or 2000 system. Which TCP and UDP ports must you filter to check null sessions on your n...
null sessionNetBIOSSMBport filtering - Question #653System Hacking
The following is an entry captured by a network IDS.You are assigned the task of analyzing this entry. You notice the value 0x90, which is the most common NOOP instruction for the...
buffer overflowNOP sledshellcodeexploit analysis - Question #654System Hacking
Based on the following extract from the log of a compromised machine, what is the hacker really trying to steal?
SAM filepassword hashesWindows credentialslog analysis - Question #655Footprinting and Reconnaissance
As a securing consultant, what are some of the things you would recommend to a company to ensure DNS security? Select the best answers.
DNS securityzone transfer restrictionsplit-horizon DNSDNS hardening