Free GIAC GCIH Actual Exam Questions
Dumps Box (DumpsBox) offers up-to-date practice exam questions for GCIH certification exam which are developed and validated by GIAC subject domain experts certified in GIAC GCIH . These practice questions are update regularly as we keep an eye on any recent changes in GCIH syllabus, and when there is update our team quickly adjusts the questions. This commitment to providing the best quality exam prep material to certification aspirants is what makes DumpsBox.com the best certification exam prep website. On top of that, our strong, yet strictly moderated, community based feedback keeps the content clean and current. Each question has helpful community discussion that provides it extra perspective and introduces helpful resources for better exam preparation. This also saves students from other outdated practice questions or illicit exam dumps that can have adverse affects on career. Browse through our GIAC GCIH exam questions and pass your exam on first try.
c:\target\nc -1 -p 53 -d -e cmd.exe
What action do you want to perform by issuing the above command?
Weare- secure server is open. He suspects that it may be open due to a Trojan installed on the server.
He presents a report to the company describing the symptoms of the Trojan. A summary of the
report is given below:
Once this Trojan has been installed on the computer, it searches Notpad.exe, renames it Note.com,
and then copies itself to the computer as Notepad.exe. Each time Notepad.exe is executed, the
Trojan executes and calls the original Notepad to avoid being noticed.
Which of the following Trojans has the symptoms as the one described above?
Each correct answer represents a complete solution. Choose all that apply.
health through the System Monitor and found that there is a sudden increase in the number of
logins.
A case study is provided in the exhibit. Which of the following types of attack has occurred?
(Click the Exhibit button on the toolbar to see the case study.)
network. All client computers run the Windows XP operating system. The employees of the company
complain that suddenly all of the client computers have started working slowly. Peter finds that a
malicious hacker is attempting to slow down the computers by flooding the network with a large
number of requests. Which of the following attacks is being implemented by the malicious hacker?
during standard layer 4 network communications. The combination of parameters may then be used
to infer the remote operating system (OS fingerprinting), or incorporated into a device fingerprint.
Which of the following Nmap switches can be used to perform TCP/IP stack fingerprinting?
by a firewall. This technique can be used effectively to perform information gathering attacks. In this
technique, an attacker sends a crafted packet with a TTL value that is set to expire one hop past the
firewall. Which of the following are pre-requisites for an attacker to conduct firewalking?
Each correct answer represents a complete solution. Choose all that apply.
sure that all business processes and functions are back to normal and then also wants to monitor the
system or processes to ensure that the system is not compromised again?
Each correct answer represents a complete solution. Choose all that apply.
to a friend's computer. Which of the following tools will you use to accomplish the task?
Each correct answer represents a complete solution. Choose all that apply.
collect information such as routing updates and tables and provide this information publicly?
Fill in the blank with the appropriate name of the attack. ______ takes best advantage of an existing authenticated connection
Fill in the blank with the correct numeric value. ARP poisoning is achieved in ______ steps.
Fill in the blank with the appropriate term. ______ is a technique used to make sure that incoming packets are actually from the networks that they claim to be from.