
NEW 2022 Certification Sample Questions 312-38 Dumps & Practice Exam
312-38 Deluxe Study Guide with Online Test Engine
Preparation Process
Understanding the exam topics is very critical to success in the test. Therefore, the potential candidates must download the exam blueprint to review the comprehensive details of these domains. After exploring the scope of the test, they can proceed to choose ample resources to prepare for EC-Council 312-38 with great deliberation.
NEW QUESTION 78
Which of the following is one of the most commonly used implementations of RAID?
- A. RAID 3
- B. RAID 5
- C. RAID 1
- D. RAID 2
Answer: B
NEW QUESTION 79
What is the range for private ports?
- A. 0 through 1023
- B. 1024 through 49151
- C. 49152 through 65535
- D. Above 65535
Answer: C
Explanation:
Explanation/Reference:
NEW QUESTION 80
Which of the following is an example of a network providing DQDB access methods?
- A. IEEE 802.6
- B. IEEE 802.4
- C. IEEE 802.3
- D. IEEE 802.2
Answer: A
NEW QUESTION 81
FILL BLANK
Fill in the blank with the appropriate term. In computing, ______________ is a class of data storage devices
that read their data in sequence.
Answer:
Explanation:
SAM
Explanation:
In computing, sequential access memory (SAM) is a class of data storage devices that read their data in
sequence. This is in contrast to random access memory (RAM) where data can be accessed in any order.
Sequential access devices are usually a form of magnetic memory. While sequential access memory is read in
sequence, access can still be made to arbitrary locations by "seeking" to the requested location. Magnetic
sequential access memory is typically used for secondary storage in general-purpose computers due to their
higher density at lower cost compared to RAM, as well as resistance to wear and non-volatility. Examples of
SAM devices include hard disks, CD-ROMs, and magnetic tapes.
NEW QUESTION 82
Peter, a malicious hacker, obtains e-mail addresses by harvesting them from postings, blogs, DNS listings, and Web pages. He then sends a large number of unsolicited commercial e-mail (UCE) messages to these addresses. Which of the following e-mail crimes is Peter committing?
- A. E-mail bombing
- B. E-mail spam
- C. E-mail storm
- D. E-mail spoofing
Answer: B
Explanation:
Peter is performing spamming activity. Spam is a term that refers to the unsolicited e-mails sent to a large number of e-mail users. The number of such e-mails is increasing day by day, as most companies now prefer to use e-mails for promoting their products. Because of these unsolicited e-mails, legitimate e-mails take a much longer time to deliver to their destination. The attachments sent through spam may also contain viruses.
However, spam can be stopped by implementing spam filters on servers and e-mail clients.
Answer option C is incorrect. Mail bombing is an attack that is used to overwhelm mail servers and clients by sending a large number of unwanted e-mails. The aim of this type of attack is to completely fill the recipient's hard disk with immense, useless files, causing at best irritation, and at worst total computer failure. E-mail filtering and properly configuring email relay functionality on mail servers can be helpful for protection against this type of attack.
Answer option B is incorrect. An e-mail storm is a sudden spike of Reply All messages on an e-mail distribution list, usually caused by a controversial or misdirected message. Such storms start when multiple members of the distribution list reply to the entire list at the same time in response to an instigating message. Other members soon respond, usually adding vitriol to the discussion, asking to be removed from the list, or pleading for the cessation of messages. If enough members reply to these unwanted messages, this triggers a chain reaction of e-mail messages. The sheer load of traffic generated by these storms can render the e-mail servers carrying them inoperative, similar to a DDoS attack.
Some e-mail viruses also have the capacity to create e-mail storms, by sending copies of themselves to an infected user's contacts, including distribution lists, infecting the contacts in turn.
Answer option D is incorrect. E-mail spoofing is a term used to describe e-mail activity in which the sender address and other parts of the e-mail header are altered to appear as though the e-mail originated from a different source. E-mail spoofing is a technique commonly used for spam e-mail and phishing to hide the origin of an e-mail message. By changing certain properties of the e-mail, such as the From, Return-Path, and Reply- To fields (which can be found in the message header), ill-intentioned users can make the e-mail appear to be from someone other than the actual sender. The result is that, although the e-mail appears to come from the address indicated in the From field, it actually comes from another source.
NEW QUESTION 83
Which of the following is a worldwide organization that aims to establish, refine, and promote Internet security standards?
- A. ITU
- B. WASC
- C. IEEE
- D. ANSI
Answer: B
Explanation:
Web Application Security Consortium (WASC) is a worldwide organization that aims to establish, refine, and promote Internet security standards. WASC is vendor-neutral, although members may belong to corporations involved in the research, development, design, and distribution of Web security-related products.
Answer option A is incorrect. ANSI (American National Standards Institute) is the primary organization for fostering the development of technology standards in the United States. ANSI works with industry groups and is the U.S. member of the International Organization for Standardization (ISO) and the International Electro- technical Commission (IEC). Long-established computer standards from ANSI include the American Standard Code for Information Interchange (ASCII) and the Small Computer System Interface (SCSI).
Answer option D is incorrect. The International Telecommunication Union (ITU) is an organization established to standardize and regulate international radio and telecommunications. Its main tasks include standardization, allocation of the radio spectrum, and organizing interconnection arrangements between different countries to allow international phone calls. ITU sets standards for global telecom networks.
The ITU's telecommunications division (ITU-T) produces more than 200 standard recommendations each year in the converging areas of telecommunications, information technology, consumer electronics, broadcasting and multimedia communications. ITU was streamlined into the following three sectors:
ITU-D (Telecommunication Development)
ITU-R (Radio communication)
ITU-T (Telecommunication Standardization)
Answer option C is incorrect. The Institute of Electrical and Electronic Engineers (IEEE) is a society of technical professionals. It promotes the development and application of electro-technology and allied sciences. IEEE develops communications and network standards, among other activities. The organization publishes number of journals, has many local chapters, and societies in specialized areas.
NEW QUESTION 84
Which of the following is the full form of SAINT?
- A. System Administrators Integrated Network Tool
- B. System Automated Integrated Network Tool
- C. System Admin Integrated Network Tool
- D. Security Admin Integrated Network Tool
Answer: A
NEW QUESTION 85
Which of the following phases is the first step towards creating a business continuity plan?
- A. Scope and Plan Initiation
- B. Business Continuity Plan Development
- C. Business Impact Assessment
- D. Plan Approval and Implementation
Answer: A
NEW QUESTION 86
Which of the following protocols supports source-specific multicast (SSM)?
- A. DNS
- B. ARP
- C. DHCP
- D. BGMP
Answer: D
NEW QUESTION 87
Which of the following steps will NOT make a server fault tolerant? Each correct answer represents a complete solution. (Choose two.)
- A. Encrypting confidential data stored on the server
- B. Performing regular backup of the server
- C. Adding one more same sized disk as mirror on the server
- D. Adding a second power supply unit
- E. Implementing cluster servers' facility
Answer: A,B
Explanation:
Encrypting confidential data stored on the server and performing regular backup will not make the server fault tolerant.
Fault tolerance is the ability to continue work when a hardware failure occurs on a system. A fault-tolerant system is designed from the ground up for reliability by building multiples of all critical components, such as CPUs, memories, disks and power supplies into the same computer. In the event one component fails, another takes over without skipping a beat.
Answer options A, C, and D are incorrect. The following steps will make the server fault tolerant:
Adding a second power supply unit
Adding one more same sized disk as a mirror on the server implementing cluster servers facility
NEW QUESTION 88
Which of the following protocols is described as a connection-oriented and reliable delivery transport layer protocol?
- A. TCP
- B. IP
- C. UDP
- D. SSL
Answer: A
NEW QUESTION 89
Which of the following is a type of computer security that deals with protection against spurious signals emitted by electrical equipment in the system?
- A. Communication Security
- B. Physical security
- C. Emanation Security
- D. Hardware security
Answer: C
Explanation:
Explanation
Explanation:
Emanation security is one of the types of computer security that deals with protection against spurious signals emitted by electrical equipment in the system, such as electromagnetic emission (from displays), visible emission (displays may be visible through windows), and audio emission (sounds from printers, etc). Answer option D is incorrect. Hardware security helps in dealing with the vulnerabilities in the handling of hardware.
Answer option B is incorrect. Physical security helps in dealing with protection of computer hardware and associated equipment.
Answer option A is incorrect. Communication security helps in dealing with the protection of data and information during transmission.
NEW QUESTION 90
Harry has sued the company claiming they made his personal information public on a social networking site in the United States. The company denies the allegations and consulted a/an ______for legal advice to defend them against this allegation.
- A. Incident Handler
- B. Attorney
- C. Evidence Manager
- D. PR Specialist
Answer: B
NEW QUESTION 91
The agency Jacob works for stores and transmits vast amounts of sensitive government data that cannot be compromised. Jacob has implemented Encapsulating Security Payload (ESP) to encrypt IP traffic. Jacob wants to encrypt the IP traffic by inserting the ESP header in the IP datagram before the transport layer protocol header. What mode of ESP does Jacob need to use to encrypt the IP traffic?
- A. Jacob should utilize ESP in tunnel mode.
- B. He should use ESP in gateway mode
- C. He should use ESP in transport mode.
- D. Jacob should use ESP in pass-through mode.
Answer: A
NEW QUESTION 92
Which of the following statements are NOT true about the FAT16 file system? Each correct answer represents a complete solution. Choose all that apply.
- A. It works well with large disks because the cluster size increases as the disk partition size increases.
- B. It supports the Linux operating system.
- C. It supports file-level compression.
- D. It does not support file-level security.
Answer: A,C
Explanation:
The FAT16 file system was developed for disks larger than 16MB. It uses 16-bit allocation table entries. The FAT16 file system supports all Microsoft operating systems. It also supports OS/2 and Linux.
Answer options C and A are incorrect. All these statements are true about the FAT16 file system.
NEW QUESTION 93
Which of the following policies helps in defining what users can and should do to use network and organization's computer equipment?
- A. General policy
- B. User policy
- C. IT policy
- D. Remote access policy
Answer: B
Explanation:
A user policy helps in defining what users can and should do to use network and organization's computer equipment. It also defines what limitations are put on users for maintaining the network secure such as whether users can install programs on their workstations, types of programs users are using, and how users can access data. Answer option C is incorrect. IT policy includes general policies for the IT department. These policies are intended to keep the network secure and stable. It includes the following: Virus incident and security incident Backup policy Client update policies Server configuration, patch update, and modification policies (security) Firewall policies Dmz policy, email retention, and auto forwarded email policy Answer option A is incorrect. It defines the high level program policy and business continuity plan. Answer option B is incorrect. Remote access policy is a document that outlines and defines acceptable methods of remotely connecting to the internal network.
NEW QUESTION 94
An organization needs to adhere to the______________rules for safeguarding and protecting the electronically stored health information of employees.
- A. ISEC
- B. HI PA A
- C. PCI DSS
- D. SOX
Answer: B
NEW QUESTION 95
George was conducting a recovery drill test as a part of his network operation. Recovery drill tests are conducted on the______________.
- A. Backup data
- B. Data in transit
- C. Deleted data
- D. Archived data
Answer: A
NEW QUESTION 96
Which of the following ranges of addresses can be used in the first octet of a Class B network address?
- A. 192-223
- B. 128-191
- C. 0-127
- D. 224-255
Answer: B
NEW QUESTION 97
......
312-38 dumps review - Professional Quiz Study Materials: https://www.prep4away.com/EC-COUNCIL-certification/braindumps.312-38.ete.file.html
312-38 Test Prep Training Practice Exam Questions Practice Tests: https://drive.google.com/open?id=1bmLY1XcxGCNA9m2NHU6kQAk_G7_ANceI