Topic 3, Scanning
_______ is one of the programs used to wardial.
A.
DialIT
B.
Netstumbler
C.
TooPac
D.
Kismet
E.
ToneLoc
ToneLoc
Explanation: ToneLoc is one of the programs used to wardial. While this is considered an
"old school" technique, it is still effective at finding backdoors and out of band network entry
points.
You want to scan the live machine on the LAN, what type of scan you should use?
A.
Connect
B.
SYN
C.
TCP
D.
UDP
E.
PING
PING
Explanation: The ping scan is one of the quickest scans that nmap performs, since no
actual ports are queried. Unlike a port scan where thousands of packets are transferred
between two stations, a ping scan requires only two frames. This scan is useful for locating
active devices or determining if ICMP is passing through a firewall.
An nmap command that includes the host specification of 202.176.56-57.* will scan
_______ number of hosts.
A.
2
B.
256
C.
512
D.
Over 10,000
512
Explanation: The hosts with IP address 202.176.56.0-255 & 202.176.56.0-255 will be
scanned (256+256=512)
What is the proper response for a X-MAS scan if the port is open?
A.
SYN
B.
ACK
C.
FIN
D.
PSH
E.
RST
F.
No response
No response
Explanation: Closed ports respond to a X-MAS scan by ignoring the packet.
What flags are set in a X-MAS scan?(Choose all that apply.)
A.
SYN
B.
ACK
C.
FIN
D.
PSH
E.
RST
F.
URG
FIN
PSH
URG
Explanation: FIN, URG, and PSH are set high in the TCP packet for a X-MAS scan
Page 13 out of 153 Pages |
Previous |