New (2024) Download free 312-50v10 PDF for EC-COUNCIL Practice Tests [Q124-Q143]

5/5 - (1 vote)

New (2024) Download free 312-50v10 PDF for EC-COUNCIL Practice Tests

100% Free 312-50v10 Files For passing the exam Quickly

NO.124 What is the difference between the AES and RSA algorithms?

 
 
 
 

NO.125 This tool is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the PTW attack, thus making the attack much faster compared to other WEP cracking tools.
Which of the following tools is being described?

 
 
 
 

NO.126 An incident investigator asks to receive a copy of the event logs from all firewalls, proxy servers, and
Intrusion Detection Systems (IDS) on the network of an organization that has experienced a possible
breach of security. When the investigator attempts to correlate the information in all of the logs, the
sequence of many of the logged events do not match up.
What is the most likely cause?

 
 
 
 

NO.127 A network administrator discovers several unknown files in the root directory of his Linux FTP server. One of the files is a tarball, two are shell script files, and the third is a binary file is named “nc.” The FTP server’s access logs show that the anonymous user account logged in to the server, uploaded the files, and extracted the contents of the tarball and ran the script using a function provided by the FTP server’s software. The ps command shows that the nc file is running as process, and the netstat command shows the nc process is listening on a network port.
What kind of vulnerability must be present to make this remote attack possible?

 
 
 
 

NO.128 What is a successful method for protecting a router from potential smurf attacks?

 
 
 
 

NO.129 You are the Systems Administrator for a large corporate organization. You need to monitor all network traffic on your local network for suspicious activities and receive notifications when an attack is occurring. Which tool would allow you to accomplish this goal?

 
 
 
 

NO.130 Which mode of IPSec should you use to assure security and confidentiality of data within the same LAN?

 
 
 
 

NO.131 Which of the following programming languages is most susceptible to buffer overflow attacks, due to its
lack of a built-in-bounds checking mechanism?
Code:
#include <string.h>
int main(){
char buffer[8];
strcpy(buffer, “”11111111111111111111111111111″”);
}
Output:
Segmentation fault

 
 
 
 

NO.132 Websites and web portals that provide web services commonly use the Simple Object Access Protocol SOAP. Which of the following is an incorrect definition or characteristics in the protocol?

 
 
 
 

NO.133 Which of the following is the BEST way to defend against network sniffing?

 
 
 
 

NO.134 _________ is a set of extensions to DNS that provide to DNS clients (resolvers) the origin authentication of DNS data to reduce the threat of DNS poisoning, spoofing, and similar types of attacks.

 
 
 
 

NO.135 Which regulation defines security and privacy controls for Federal information systems and organizations?

 
 
 
 

NO.136 A penetration tester is conducting a port scan on a specific host. The tester found several ports opened that were confusing in concluding the Operating System (OS) version installed. Considering the NMAP result below, which of the following is likely to be installed on the target machine by the OS?

 
 
 
 

NO.137 A hacker has successfully infected an internet-facing server which he will then use to send junk mail, take part in coordinated attacks, or host junk email content.
Which sort of trojan infects this server?

 
 
 
 

NO.138 Bob learned that his username and password for a popular game has been compromised.
He contacts the company and resets all the information. The company suggests he use two-factor authentication, which option below offers that?

 
 
 
 

NO.139 Your company was hired by a small healthcare provider to perform a technical assessment on the network.
What is the best approach for discovering vulnerabilities on a Windows-based computer?

 
 
 
 

NO.140 What is the name of the international standard that establishes a baseline level of confidence in the security functionality of IT products by providing a set of requirements for evaluation?

 
 
 
 

NO.141 Which of the following viruses tries to hide from anti-virus programs by actively altering and corrupting the chosen service call interruptions when they are being run?

 
 
 
 

NO.142 You are a Network Security Officer. You have two machines. The first machine (192.168.0.99) has snort installed, and the second machine (192.168.0.150) has kiwi syslog installed. You perform a syn scan in your network, and you notice that kiwi syslog is not receiving the alert message from snort. You decide to run wireshark in the snort machine to check if the messages are going to the kiwi syslog machine.
What wireshark filter will show the connections from the snort machine to kiwi syslog machine?

 
 
 
 

NO.143 You’ve gained physical access to a Windows 2008 R2 server which has an accessible disc drive. When you attempt to boot the server and log in, you are unable to guess the password. In your tool kit you have an Ubuntu 9.10 Linux LiveCD. Which Linux based tool has the ability to change any user’s password or to activate disabled Windows accounts?

 
 
 
 

312-50v10 Premium Exam Engine – Download Free PDF Questions: https://www.troytecdumps.com/312-50v10-troytec-exam-dumps.html

Related Links: myportal.utt.edu.tt kaeuchi.jp myportal.utt.edu.tt tooter.in myportal.utt.edu.tt telegra.ph

troytecdumps

Learn More →

Leave a Reply

Your email address will not be published. Required fields are marked *

Enter the text from the image below