Final Exam
Question 1 point
__________ is a worm for Windows XP that downloads and executes malicious
files on the compromised computer and spreads through removable storage
devices.
a. HTTP W32.Drom
b. W32/VBAut-B
c. W32/QQRob-ADN
d. W32/SillyFDC-BK
View Feedback
Question 2 point
__________ monitors and audits databases for security issues in real time.
a. Selective
Audit
b. AppDetective
c. AppRadar
d. FlexTracer
View Feedback
Question 3 point
Which of the following attacks would you choose to seize control of a
legitimate user’s web application session while the session is still in progress?
a. session hijacking
b. DOS attack
c. password
sniffing
d. spoofing
View Feedback
Question 4 point
__________ viruses search all drives and connected network shares to locate
files with an EXE or SCR extension.
a. W32/Madang-
Fam
, b. W32/Hasnot-A
c. W32/Fujacks-AK
d. W32/Fujacks-E
View Feedback
Question 5 point
In order for traffic to get back to the attacker during session hijacking, a
process called __________ is used that allows the sender to specify a particular
route for the IP packet to take to the destination.
a.
desynchronization
b. source routing
c. spoofing
d. TCP routing
View Feedback
Question 6 point
A __________ attack occurs when an attacker sends an oversized ping packet
to a victim’s device.
a. BlueSmacking
b. Blueprinting
c.
BTVoiceBugging
d. Bluesnarfing
View Feedback
Question 7 point
__________ can monitor a Simple Mail Transfer Protocol (SMTP) server
regularly after connecting to it.
a. CheckOK
b.
SMTPCheck
c. SMTPMon
d. SLCheck
View Feedback
,Question 8 point
Which of the following definitions best describes a wrapper?
a. A wrapper is a packet-crafting technique
scans.
b. A wrapper is an encryption tool used to
c. A wrapper is a method of hiding a virus i
d. A wrapper is a tool used to bind a Trojan
View Feedback
Question 9 point
_________ hijacking is a hacking technique that uses spoofed packets to take
over a connection between a victim and a target machine.
a. ACK
b. Blind
c. TCP/IP
d. Network-
level
View Feedback
Question 10 point
Which of the following is not a Microsoft Internet Information Services
vulnerability?
a. ::$DATA vulnerability
b. UFS integer overflow
vulnerability
c. Showcode.asp vulnerability
d. WebDAV/RPC exploits
View Feedback
Question 11 point
The __________ script allows a remote user to view the code of server-side
scripts.
a. Showlogin.asp
b. Showcode.asp
c.
RemoteAccess.asp
, d. Remotelogin.asp
View Feedback
Question 12 point
__________ automatically scans a computer, looking for cookies created by
Internet Explorer, Mozilla Firefox, and Netscape Navigator, and then displays
the data stored in each one.
a. Cookie Viewer
b. Cookie Explorer
c. Cookie Browser
d. Cookie
Manager
View Feedback
Question 13 point
__________ is an application that identifies all Bluetooth-enabled devices, their
communications, and their connectivity within a given area.
a. BlueSweep
b. BlueWatch
c. BlueKey
d. BlueFire
Mobile
View Feedback
Question 14 point
__________ is a command-line TCP/IP packet assembler/analyzer.
a. Hping2
b. Firewalk
c. WUPS
d. Blaster
Scan
View Feedback
Question 15 point
Bluetooth-enabled devices communicate via short-range, ad hoc networks
known as __________.