Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :Apr 12, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-38 Questions & Answers

  • Question 361:

    Which of the following layers performs routing of IP datagrams?

    A. Transport layer

    B. Link layer

    C. Application layer

    D. Internet layer

  • Question 362:

    Which of the following standards defines Logical Link Control (LLC)?

    A. 802.2

    B. 802.3

    C. 802.5

    D. 802.4

  • Question 363:

    Which of the following is a 16-bit field that identifies the source port number of the application program in the host that is sending the segment?

    A. Sequence Number

    B. Header Length

    C. Acknowledgment Number

    D. Source Port Address

  • Question 364:

    Which of the following protocols is used for exchanging routing information between two gateways in a network of autonomous systems?

    A. IGMP

    B. ICMP

    C. EGP

    D. OSPF

  • Question 365:

    John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He is using a tool to crack the wireless encryption keys. The description of the tool is as follows:

    ,,It is a Linux-based WLAN WEP cracking tool that recovers encryption keys. It operates by passively monitoring transmissions. It uses Ciphertext Only Attack and captures approximately 5 to 10 million packets to decrypt the WEP keys."

    Which of the following tools is John using to crack the wireless encryption keys?

    A. PsPasswd

    B. Kismet

    C. AirSnort

    D. Cain

  • Question 366:

    Which of the following is an intrusion detection system that monitors and analyzes the internals of a computing system rather than the network packets on its external interfaces?

    A. IPS

    B. HIDS

    C. DMZ

    D. NIDS

  • Question 367:

    Which of the following is a process that detects a problem, determines its cause, minimizes the damages, resolves the problem, and documents each step of response for future reference?

    A. Incident response

    B. Incident handling

    C. Incident management

    D. Incident planning

  • Question 368:

    Which of the following is designed to detect the unwanted presence of fire by monitoring environmental changes associated with combustion?

    A. Fire sprinkler

    B. Fire suppression system

    C. Fire alarm system

    D. Gaseous fire suppression

  • Question 369:

    You are an Administrator for a network at an investment bank. You are concerned about individuals breeching your network and being able to steal data before you can detect their presence and shut down their access. Which of the following is the best way to address this issue?

    A. Implement a strong password policy.

    B. Implement a strong firewall.

    C. Implement a honeypot.

    D. Implement network based antivirus.

  • Question 370:

    Which of the following is a protocol that describes an approach to providing "streamlined" support of OSI application services on top of TCP/IP-based networks for some constrained environments?

    A. Network News Transfer Protocol

    B. Lightweight Presentation Protocol

    C. Internet Relay Chat Protocol

    D. Dynamic Host Configuration Protocol

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.