GIAC GCIH Exam Practice Questions (P. 1)
- Full Access (842 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
Adam works as an Incident Handler for Umbrella Inc. He has been sent to the California unit to train the members of the incident response team. As a demo project he asked members of the incident response team to perform the following actions:
✑ Remove the network cable wires.
✑ Isolate the system on a separate VLAN
✑ Use a firewall or access lists to prevent communication into or out of the system.
✑ Change DNS entries to direct traffic away from compromised system
Which of the following steps of the incident handling process includes the above actions?
✑ Remove the network cable wires.
✑ Isolate the system on a separate VLAN
✑ Use a firewall or access lists to prevent communication into or out of the system.
✑ Change DNS entries to direct traffic away from compromised system
Which of the following steps of the incident handling process includes the above actions?
send
light_mode
delete
Question #2
Adam, a novice computer user, works primarily from home as a medical professional. He just bought a brand new Dual Core Pentium computer with over 3 GB of
RAM. After about two months of working on his new computer, he notices that it is not running nearly as fast as it used to. Adam uses antivirus software, anti- spyware software, and keeps the computer up-to-date with Microsoft patches. After another month of working on the computer, Adam finds that his computer is even more noticeably slow. He also notices a window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up, even when he has not been on the Internet. Adam notices that his computer only has about 10 GB of free space available. Since his hard drive is a 200 GB hard drive, Adam thinks this is very odd.
Which of the following is the mostly likely the cause of the problem?
RAM. After about two months of working on his new computer, he notices that it is not running nearly as fast as it used to. Adam uses antivirus software, anti- spyware software, and keeps the computer up-to-date with Microsoft patches. After another month of working on the computer, Adam finds that his computer is even more noticeably slow. He also notices a window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up, even when he has not been on the Internet. Adam notices that his computer only has about 10 GB of free space available. Since his hard drive is a 200 GB hard drive, Adam thinks this is very odd.
Which of the following is the mostly likely the cause of the problem?
- AComputer is infected with the stealth kernel level rootkit.
- BComputer is infected with stealth virus.
- CComputer is infected with the Stealth Trojan Virus.
- DComputer is infected with the Self-Replication Worm.
Correct Answer:
A
A
send
light_mode
delete
Question #3
Which of the following types of attacks is only intended to make a computer resource unavailable to its users?
- ADenial of Service attackMost Voted
- BReplay attack
- CTeardrop attack
- DLand attack
Correct Answer:
A
A
send
light_mode
delete
Question #4
Which of the following types of attack can guess a hashed password?
- ABrute force attack
- BEvasion attack
- CDenial of Service attack
- DTeardrop attack
Correct Answer:
A
A
send
light_mode
delete
Question #5
In which of the following DoS attacks does an attacker send an ICMP packet larger than 65,536 bytes to the target system?
send
light_mode
delete
Question #6
Adam has installed and configured his wireless network. He has enabled numerous security features such as changing the default SSID, enabling WPA encryption, and enabling MAC filtering on his wireless router. Adam notices that when he uses his wireless connection, the speed is sometimes 16 Mbps and sometimes it is only 8 Mbps or less. Adam connects to the management utility wireless router and finds out that a machine with an unfamiliar name is connected through his wireless connection. Paul checks the router's logs and notices that the unfamiliar machine has the same MAC address as his laptop.
Which of the following attacks has been occurred on the wireless network of Adam?
Which of the following attacks has been occurred on the wireless network of Adam?
send
light_mode
delete
Question #7
Which of the following is a technique of using a modem to automatically scan a list of telephone numbers, usually dialing every number in a local area code to search for computers, Bulletin board systems, and fax machines?
send
light_mode
delete
Question #8
Network mapping provides a security testing team with a blueprint of the organization. Which of the following steps is NOT a part of manual network mapping?
- AGathering private and public IP addresses
- BCollecting employees informationMost Voted
- CBanner grabbing
- DPerforming Neotracerouting
Correct Answer:
D
D
send
light_mode
delete
Question #9
Which of the following statements are true about tcp wrappers?
Each correct answer represents a complete solution. (Choose all that apply.)
Each correct answer represents a complete solution. (Choose all that apply.)
- Atcp wrapper provides access control, host address spoofing, client username lookups, etc.
- BWhen a user uses a TCP wrapper, the inetd daemon runs the wrapper program tcpd instead of running the server program directly.
- Ctcp wrapper allows host or subnetwork IP addresses, names and/or ident query replies, to be used as tokens to filter for access control purposes.
- Dtcp wrapper protects a Linux server from IP address spoofing.
Correct Answer:
ABC
ABC
send
light_mode
delete
Question #10
Which of the following types of attacks is the result of vulnerabilities in a program due to poor programming techniques?
- AEvasion attack
- BDenial-of-Service (DoS) attack
- CPing of death attack
- DBuffer overflow attack
Correct Answer:
D
D
send
light_mode
delete
All Pages