Act now and download your GIAC GCIH test today! Do not waste time for the worthless GIAC GCIH tutorials. Download Abreast of the times GIAC GIAC Certified Incident Handler exam with real questions and answers and begin to learn GIAC GCIH with a classic professional.
Check GCIH free dumps before getting the full version:
NEW QUESTION 1
Which of the following Trojans is used by attackers to modify the Web browser settings?
- A. Win32/FlyStudio
- B. Trojan.Lodear
- C. WMA/TrojanDownloader.GetCodec
- D. Win32/Pacex.Gen
Answer: A
NEW QUESTION 2
Adam works as a Penetration Tester for Umbrella Inc. A project has been assigned to him check the security of wireless network of the company. He re-injects a captured wireless packet back onto the network. He does this hundreds of times within a second. The packet is correctly encrypted and Adam assumes it is an ARP request packet. The wireless host responds with a stream of responses, all individually encrypted with different IVs.
Which of the following types of attack is Adam performing?
- A. Replay attack
- B. MAC Spoofing attack
- C. Caffe Latte attack
- D. Network injection attack
Answer: A
NEW QUESTION 3
Which of the following methods can be used to detect session hijacking attack?
- A. nmap
- B. Brutus
- C. ntop
- D. sniffer
Answer: D
NEW QUESTION 4
You want to perform passive footprinting against we-are-secure Inc. Web server. Which of the following tools will you use?
- A. Nmap
- B. Ethereal
- C. Ettercap
- D. Netcraft
Answer: D
NEW QUESTION 5
You discover that all available network bandwidth is being used by some unknown service. You discover that UDP packets are being used to connect the echo service on one machine to the chargen service on another machine. What kind of attack is this?
- A. Smurf
- B. Denial of Service
- C. Evil Twin
- D. Virus
Answer: B
NEW QUESTION 6
John works as a Professional Ethical Hacker for NetPerfect Inc. The company has a Linux-based network. All client computers are running on Red Hat 7.0 Linux. The Sales Manager of the company complains to John that his system contains an unknown package named as tar.gz and his documents are exploited. To resolve the problem, John uses a Port scanner to enquire about the open ports and finds out that the HTTP server service port on 27374 is open. He suspects that the other computers on the network are also facing the same problem. John discovers that a malicious application is using the synscan tool to randomly generate IP addresses.
Which of the following worms has attacked the computer?
- A. Code red
- B. Ramen
- C. LoveLetter
- D. Nimda
Answer: B
NEW QUESTION 7
Which of the following rootkits is able to load the original operating system as a virtual machine, thereby enabling it to intercept all hardware calls made by the original operating system?
- A. Kernel level rootkit
- B. Boot loader rootkit
- C. Hypervisor rootkit
- D. Library rootkit
Answer: C
NEW QUESTION 8
Which of the following viruses/worms uses the buffer overflow attack?
- A. Chernobyl (CIH) virus
- B. Nimda virus
- C. Klez worm
- D. Code red worm
Answer: D
NEW QUESTION 9
Which of the following malicious software travels across computer networks without the assistance of a user?
- A. Worm
- B. Virus
- C. Hoax
- D. Trojan horses
Answer: A
NEW QUESTION 10
Which of the following attacks capture the secret value like a hash and reuse it later to gain access to a system without ever decrypting or decoding the hash?
- A. Cross Site Scripting attack
- B. Replay attack
- C. Rainbow attack
- D. Hashing attack
Answer: B
NEW QUESTION 11
You run the following command while using Nikto Web scanner:
perl nikto.pl -h 192.168.0.1 -p 443
What action do you want to perform?
- A. Using it as a proxy server
- B. Updating Nikto
- C. Seting Nikto for network sniffing
- D. Port scanning
Answer: D
NEW QUESTION 12
Which of the following are based on malicious code?
Each correct answer represents a complete solution. Choose two.
- A. Denial-of-Service (DoS)
- B. Biometrics
- C. Trojan horse
- D. Worm
Answer: CD
NEW QUESTION 13
You want to use PGP files for steganography. Which of the following tools will you use to accomplish the task?
- A. Blindside
- B. Snow
- C. ImageHide
- D. Stealth
Answer: D
NEW QUESTION 14
CORRECT TEXT
Fill in the blank with the appropriate name of the tool.
______ scans for rootkits by comparing SHA-1 hashes of important files with known good ones in online database.
- A.
Answer: rkhunter
NEW QUESTION 15
John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He wants to perform a stealth scan to discover open ports and applications running on the We-are-secure server. For this purpose, he wants to initiate scanning with the IP address of any third party. Which of the following scanning techniques will John use to accomplish his task?
- A. RPC
- B. IDLE
- C. UDP
- D. TCP SYN/ACK
Answer: B
NEW QUESTION 16
You execute the following netcat command:
c:\target\nc -1 -p 53 -d -e cmd.exe
What action do you want to perform by issuing the above command?
- A. Listen the incoming data and performing port scanning
- B. Capture data on port 53 and performing banner grabbing
- C. Capture data on port 53 and delete the remote shell
- D. Listen the incoming traffic on port 53 and execute the remote shell
Answer: D
NEW QUESTION 17
James works as a Database Administrator for Techsoft Inc. The company has a SQL Server 2005 computer. The computer has a database named Sales. Users complain that the performance of the database has deteriorated. James opens the System Monitor tool and finds that there is an increase in network traffic. What kind of attack might be the cause of the performance deterioration?
- A. Denial-of-Service
- B. Injection
- C. Internal attack
- D. Virus
Answer: A
NEW QUESTION 18
......
Thanks for reading the newest GCIH exam dumps! We recommend you to try the PREMIUM Allfreedumps.com GCIH dumps in VCE and PDF here: https://www.allfreedumps.com/GCIH-dumps.html (328 Q&As Dumps)