GCIH資料的中率、GIAC Certified Incident Handler


NO.1 Adam, a novice computer user, works primarily from home as a medical professional. He just bought a
brand new Dual Core Pentium computer with over 3 GB of RAM. After about two months of working on his
new computer, he notices that it is not running nearly as fast as it used to. Adam uses antivirus software,
anti-spyware software, and keeps the computer up-to-date with Microsoft patches. After another month of
working on the computer, Adam finds that his computer is even more noticeably slow. He also notices a
window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up,
even when he has not been on the Internet. Adam notices that his computer only has about 10 GB of free
space available. Since his hard drive is a 200 GB hard drive, Adam thinks this is very odd.
Which of the following is the mostly likely the cause of the problem.?
A. Computer is infected with stealth virus.
B. Computer is infected with the Self-Replication Worm.
C. Computer is infected with the Stealth Trojan Virus.
D. Computer is infected with the stealth kernel level rootkit.
Answer: D


NO.2 Which of the following statements about buffer overflow is true?
A. It is a false warning about a virus.
B. It manages security credentials and public keys for message encryption.
C. It is a collection of files used by Microsoft for software updates released between major service pack
D. It is a condition in which an application receives more data than it is configured to accept.
Answer: D

GCIH問題例   GCIH練習   

NO.3 Which of the following types of attack can guess a hashed password?
A. Brute force attack
B. Evasion attack
C. Denial of Service attack
D. Teardrop attack
Answer: A


NO.4 Which of the following commands is used to access Windows resources from Linux workstation?
A. rsync
B. mutt
C. smbclient
D. scp
Answer: C

GCIH資格取得   GCIH準備   



試験科目:GIAC Certified Incident Handler
問題と解答:全328問 GCIH 受験記対策

>> GCIH 受験記対策


TopExamは最新の70-532問題集と高品質のNS0-157問題と回答を提供します。TopExamのMB2-713 VCEテストエンジンとMB6-705試験ガイドはあなたが一回で試験に合格するのを助けることができます。高品質のC9050-548 PDFトレーニング教材は、あなたがより迅速かつ簡単に試験に合格することを100%保証します。試験に合格して認証資格を取るのはそのような簡単なことです。