Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :Apr 12, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-38 Questions & Answers

  • Question 21:

    John, a network administrator, is configuring Amazon EC2 cloud service for his organization. Identify the type of cloud service modules his organization adopted.

    A. Software-as-a-Service (SaaS)

    B. Infrastructure-as-a-Service (IaaS)

    C. Platform-as-a-Service (PaaS)

    D. Storage-as-a-Service (SaaS)

  • Question 22:

    How is a "risk" represented?

    A. Asset + threat

    B. Motive (goal) + method

    C. Asset + threat + vulnerability

    D. Motive (goal) + method + vulnerability

  • Question 23:

    Harry has sued the company claiming they made his personal information public on a social networking site in the United States. The company denies the allegations and consulted a/an _______ for legal advice to defend them against this allegation.

    A. Evidence Manager

    B. Incident Handler

    C. Attorney

    D. PR Specialist

  • Question 24:

    An employee of a medical service company clicked a malicious link in an email sent by an attacker. Suddenly, employees of the company are not able to access billing information or client record as it is encrypted. The attacker asked the company to pay money for gaining access to their data. Which type of malware attack is described above?

    A. Logic bomb

    B. Rootkits

    C. Trojan

    D. Ransomware

  • Question 25:

    Sam, a network administrator, is using Wireshark to monitor the network traffic of the organization. He wants to detect TCP packets with no flag set to check for a specific attack attempt. Which filter will he use to view the traffic?

    A. tcp.flags==0x000

    B. tcp.flags==x0000

    C. tcp.flags==000x0

    D. tcp.flags==0000x

  • Question 26:

    Identify the type of event that is recorded when an application driver loads successfully in Windows.

    A. Success Audit

    B. Error

    C. Warning

    D. Information

  • Question 27:

    Based on which of the following registry key, the Windows Event log audit configurations are recorded?

    A. HKEY_LOCAL_MACHINE\SYSTEM\Services\EventLog\ < ErrDev >

    B. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\EventLog\ < EntAppsvc >

    C. HKEY_LOCAL_MACHINE\CurrentControlSet\Services\EventLog\< ESENT >

    D. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\ < Event Log >

  • Question 28:

    Which of the following defines the extent to which an interruption affects normal business operations and the amount of revenue lost due to that interruption?

    A. RPO

    B. RFO

    C. RSP

    D. RTO

  • Question 29:

    John is working as a network defender at a well-reputed multinational company. He wanted to implement security that can help him identify any future attacks that can be targeted toward his organization and take appropriate security measures and actions beforehand to defend against them. Which one of the following security defense techniques should be implement?

    A. Reactive security approach

    B. Retrospective security approach

    C. Proactive security approach

    D. Preventive security approach

  • Question 30:

    Which type of firewall consists of three interfaces and allows further subdivision of the systems based on specific security objectives of the organization?

    A. Screened subnet

    B. Bastion host

    C. Unscreened subnet

    D. Multi-homed firewall

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.