GIAC GCIA - GCIA – GIAC Certified Intrusion Analyst Practice Test Exam
Page: 3 / 102
Total 507 questions
Question #11 (Topic: Volume A)
Adam works as a professional Computer Hacking Forensic Investigator. He wants to investigate a suspicious email that is sent using a Microsoft Exchange server.
Which of the following files will he review to accomplish the task?
Each correct answer represents a part of the solution. Choose all that apply.
Which of the following files will he review to accomplish the task?
Each correct answer represents a part of the solution. Choose all that apply.
A. Checkpoint files
B. EDB and STM database files
C. Temporary files
D. cookie files
Answer: ABC
Question #12 (Topic: Volume A)
This is a Windows-based tool that is used for the detection of wireless LANs using the IEEE 802.11a, 802.11b, and 802.11g standards. The main features of these
tools are as follows:
✑ It displays the signal strength of a wireless network, MAC address, SSID, channel details, etc.
✑ It is commonly used for the following purposes:
tools are as follows:
✑ It displays the signal strength of a wireless network, MAC address, SSID, channel details, etc.
✑ It is commonly used for the following purposes:
A. War driving
B. Detecting unauthorized access points
C. Detecting causes of interference on a WLAN
D. WEP ICV error tracking
E. Making Graphs and Alarms on 802.11 Data, including Signal Strength
Answer: D
Question #13 (Topic: Volume A)
SSH is a network protocol that allows data to be exchanged between two networks using a secure channel. Which of the following encryption algorithms can be
used by the SSH protocol?
Each correct answer represents a complete solution. Choose all that apply.
used by the SSH protocol?
Each correct answer represents a complete solution. Choose all that apply.
A. Blowfish
B. IDEA
C. DES
D. RC4
Answer: ABC
Question #14 (Topic: Volume A)
Adam works as a Security Analyst for Umbrella Inc. He is performing real-time traffic analysis on IP networks using Snort. Adam is facing problems in analyzing
intrusion data. Which of the following software combined with Snort can Adam use to get a visual representation of intrusion data?
Each correct answer represents a complete solution. Choose all that apply.
intrusion data. Which of the following software combined with Snort can Adam use to get a visual representation of intrusion data?
Each correct answer represents a complete solution. Choose all that apply.
A. Basic Analysis and Security Engine (BASE)
B. sguil
C. KFSensor
D. OSSIM
Answer: ABD
Question #15 (Topic: Volume A)
Mark works as a Network Security Administrator for BlueWells Inc. The company has a Windowsbased network. Mark is giving a presentation on Network security
threats to the newly recruited employees of the company. His presentation is about the External threats that the company recently faced in the past. Which of the
following statements are true about external threats?
Each correct answer represents a complete solution. Choose three.
threats to the newly recruited employees of the company. His presentation is about the External threats that the company recently faced in the past. Which of the
following statements are true about external threats?
Each correct answer represents a complete solution. Choose three.
A. These are the threats that originate from outside an organization in which the attacker attempts to gain unauthorized access.
B. These are the threats that originate from within the organization.
C. These are the threats intended to flood a network with large volumes of access requests.
D. These threats can be countered by implementing security controls on the perimeters of the network, such as firewalls, which limit user access to the Internet.
Answer: ACD