GIAC Certified Incident Handler (GCIH) Free Practice Exam Questions

178 real GIAC Certified Incident Handler (GCIH) exam questions with answers and AI explanations. GIAC certification prep — page 1 of 18.

  1. Question 1: Adam, a novice computer user, works primarily from home as a medical professional. He just bought a brand new Dual Core Pentium computer with over 3 GB of RAM.…
  2. Question 2: Which of the following tools can be used to detect the steganography?
  3. Question 3: Which of the following statements are true about Dsniff? Each correct answer represents a complete solution. Choose two.
  4. Question 4: Which of the following tools combines two programs, and also encrypts the resulting package in an attempt to foil antivirus programs?
  5. Question 5: Network mapping provides a security testing team with a blueprint of the organization. Which of the following steps is NOT a part of manual network mapping?
  6. Question 6: Which file contains information about failed login attempts on a Unix system?
  7. Question 7: What is one of the simplest AND most common ways for an attacker to camouflage files on a UNIX system?
  8. Question 8: An administrator needs to protect his organization's IIS webservers from Cross-Site Scripting attacks. Which action should he take?
  9. Question 9: Analysis of malicious code identifies a function that searches for specific processes and hardware on a victim host. If the processes or hardware are found, th…
  10. Question 10: Which of the following is the most effective at eradicating a system infected with a Rootkit?