EC-COUNCIL Certified Ethical Hacker Exam (CEH v10) - 312-50v10 模擬練習

Which of the following is designed to identify malicious attempts to penetrate systems?

正解: B
解説: (PassTest メンバーにのみ表示されます)
Which of the below hashing functions are not recommended for use?

正解: D
Suppose you've gained access to your client's hybrid network. On which port should you listen to in order to know which Microsoft Windows workstations has its file sharing enabled?

正解: A
Which definition among those given below best describes a covert channel?

正解: B
Which of the following is an advantage of utilizing security testing methodologies to conduct a security audit?

正解: A
You are logged in as a local admin on a Windows 7 system and you need to launch the Computer Management Console from command line.
Which command would you use?

正解: C
解説: (PassTest メンバーにのみ表示されます)
Sandra has been actively scanning the client network on which she is doing a vulnerability assessment test.
While conducting a port scan she notices open ports in the range of 135 to 139.
What protocol is most likely to be listening on those ports?

正解: D
An incident investigator asks to receive a copy of the event logs from all firewalls, proxy servers, and Intrusion Detection Systems (IDS) on the network of an organization that has experienced a possible breach of security. When the investigator attempts to correlate the information in all of the logs, the sequence of many of the logged events do not match up.
What is the most likely cause?

正解: D
解説: (PassTest メンバーにのみ表示されます)
A hacker is attempting to see which IP addresses are currently active on a network. Which NMAP switch would the hacker use?

正解: C
Peter extracts the SIDs list from Windows 2000 Server machine using the hacking tool "SIDExtractor". Here is the output of the SIDs:

From the above list identify the user account with System Administrator privileges.

正解: D
Seth is starting a penetration test from inside the network. He hasn't been given any information about the network. What type of test is he conducting?

正解: B
A penetration tester is hired to do a risk assessment of a company's DMZ. The rules of engagement states that the penetration test be done from an external IP address with no prior knowledge of the internal IT systems.
What kind of test is being performed?

正解: C
Which NMAP command combination would let a tester scan every TCP port from a class C network that is blocking ICMP with fingerprinting and service detection?

正解: D