SANS SEC504 Exam Practice Questions (P. 4)
- Full Access (328 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #31
Which of the following commands can be used for port scanning?
send
light_mode
delete
Question #32
Adam, a novice computer user, works primarily from home as a medical professional. He just bought a brand new Dual Core Pentium computer with over 3 GB of
RAM. After about two months of working on his new computer, he notices that it is not running nearly as fast as it used to. Adam uses antivirus software, anti- spyware software, and keeps the computer up-to-date with Microsoft patches. After another month of working on the computer, Adam finds that his computer is even more noticeably slow. He also notices a window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up, even when he has not been on the Internet. Adam notices that his computer only has about 10 GB of free space available. Since his hard drive is a 200 GB hard drive, Adam thinks this is very odd. Which of the following is the mostly likely the cause of the problem?
RAM. After about two months of working on his new computer, he notices that it is not running nearly as fast as it used to. Adam uses antivirus software, anti- spyware software, and keeps the computer up-to-date with Microsoft patches. After another month of working on the computer, Adam finds that his computer is even more noticeably slow. He also notices a window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up, even when he has not been on the Internet. Adam notices that his computer only has about 10 GB of free space available. Since his hard drive is a 200 GB hard drive, Adam thinks this is very odd. Which of the following is the mostly likely the cause of the problem?
- AComputer is infected with the stealth kernel level rootkit.
- BComputer is infected with stealth virus.
- CComputer is infected with the Stealth Trojan Virus.
- DComputer is infected with the Self-Replication Worm.
Correct Answer:
A
A
send
light_mode
delete
Question #33
Ryan, a malicious hacker submits Cross-Site Scripting (XSS) exploit code to the Website of Internet forum for online discussion. When a user visits the infected
Web page, code gets automatically executed and Ryan can easily perform acts like account hijacking, history theft etc. Which of the following types of Cross-Site
Scripting attack Ryan intends to do?
Web page, code gets automatically executed and Ryan can easily perform acts like account hijacking, history theft etc. Which of the following types of Cross-Site
Scripting attack Ryan intends to do?
send
light_mode
delete
Question #34
You work as a Network Administrator for Tech Perfect Inc. The company has a TCP/IP-based network. An attacker uses software that keeps trying password combinations until the correct password is found. Which type of attack is this?
send
light_mode
delete
Question #35
Many organizations create network maps of their network system to visualize the network and understand the relationship between the end devices and the transport layer that provide services.
Which of the following are the techniques used for network mapping by large organizations? Each correct answer represents a complete solution. Choose three.
Which of the following are the techniques used for network mapping by large organizations? Each correct answer represents a complete solution. Choose three.
- APacket crafting
- BRoute analytics
- CSNMP-based approaches
- DActive Probing
Correct Answer:
BCD
BCD
send
light_mode
delete
Question #36
Which of the following functions can you use to mitigate a command injection attack? Each correct answer represents a part of the solution. Choose all that apply.
send
light_mode
delete
Question #37
Adam works as a Security Administrator for Umbrella Inc. A project has been assigned to him to test the network security of the company. He created a webpage to discuss the progress of the tests with employees who were interested in following the test. Visitors were allowed to click on a company's icon to mark the progress of the test. Adam successfully embeds a keylogger. He also added some statistics on the webpage. The firewall protects the network well and allows strict Internet access. How was security compromised and how did the firewall respond?
- AThe attack was social engineering and the firewall did not detect it.
- BSecurity was not compromised as the webpage was hosted internally.
- CThe attack was Cross Site Scripting and the firewall blocked it.
- DSecurity was compromised as keylogger is invisible for firewall.
Correct Answer:
A
A
send
light_mode
delete
Question #38
Which of the following types of attacks is only intended to make a computer resource unavailable to its users?
- ADenial of Service attack
- BReplay attack
- CTeardrop attack
- DLand attack
Correct Answer:
A
A
send
light_mode
delete
Question #39
Which of the following statements about Denial-of-Service (DoS) attack are true?
Each correct answer represents a complete solution. Choose three.
Each correct answer represents a complete solution. Choose three.
- AIt disrupts services to a specific computer.
- BIt changes the configuration of the TCP/IP protocol.
- CIt saturates network resources.
- DIt disrupts connections between two computers, preventing communications between services.
Correct Answer:
ACD
ACD
send
light_mode
delete
Question #40
Adam, a malicious hacker, wants to perform a reliable scan against a remote target. He is not concerned about being stealth at this point.
Which of the following type of scans would be most accurate and reliable?
Which of the following type of scans would be most accurate and reliable?
send
light_mode
delete
All Pages