Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :Apr 12, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-38 Questions & Answers

  • Question 161:

    The attacks are classified as which of the following? Each correct answer represents a complete solution. Choose all that apply.

    A. replay attack

    B. active attack

    C. session hijacking

    D. passive attack

  • Question 162:

    Which of the following routing metrics refers to the time required to transfer the package to the source via the Internet?

    A. None

    B. routing delay

    C. length of the trail

    D. charge

    E. bandwidth

  • Question 163:

    Which of the following is a kind of security, which deals with the protection of false signals transmitted by the electrical system?

    A. None

    B. emanation Safety

    C. hardware security

    D. physical security

    E. communications Security

  • Question 164:

    John works Incident Director of Tech World Inc. His job is to set up a wireless network in his organization. For this purpose, he needs to decide on appropriate equipment and policies need to set up a network. Which of the following stages of the incident handling process to help him accomplish the task?

    A. Preparation

    B. None

    C. Recovery

    D. the eradication of

    E. containment

  • Question 165:

    You are using more than the safety of the existing network. You'll find a machine that is not in use as such, but is a software that emulates the operation of a sensitive database server. What is this?

    A. The reactive IDS

    B. Honey Pot

    C. None

    D. Virus

    E. The polymorphic virus

  • Question 166:

    Which of the following router configuration modes to change the terminal settings temporarily, perform basic tests, and lists the system information?

    A. None

    B. UI Config

    C. user EXEC

    D. Global Config

    E. the privileged EXEC

  • Question 167:

    Which of the following is a worldwide organization whose mission is to create, refine and promote internet safety standards?

    A. None

    B. SPROUT

    C. ANSI

    D. IEEE

    E. WASC

  • Question 168:

    The security network team is trying to implement a firewall capable of operating only in the session layer, monitoring the TCP inter-packet link protocol to determine when a requested session is legitimate or not. Using this type of firewall, they could be able to intercept the communication, making the external network see that the firewall is the source, and facing the user, who responds from the outside is the firewall itself. They are just limiting a requirements previous listed, because they already have a packet filtering firewall and they must add a cheap solution that meets the objective. What kind of firewall would you recommend?

    A. Packet Filtering with NAT

    B. Circuit Level Gateway

    C. Application Proxies

    D. Application Level Gateways

  • Question 169:

    If a network is at risk resulting from misconfiguration performed by unskilled and/or unqualified individuals, what type of threat is this?

    A. External Threats

    B. Unstructured Threats

    C. Structured Threats

    D. Internal Threats

  • Question 170:

    John is a network administrator and is monitoring his network traffic with the help of Wireshark. He suspects that someone from outside is making a TCP OS fingerprinting attempt on his organization's network. Which of following Wireshark filter(s) will he use to locate the TCP OS fingerprinting attempt? (Choose all that apply.)

    A. tcp.flags=0x00

    B. tcp.options.wscale_val==20

    C. tcp.flags==0x2b

    D. tcp.options.mss_val<1460

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.