NEW
Font size
WorksheetsPHẦN 3 - 200/280
Total questions: 79
Worksheet time: 1hrs 7mins
the –t instructs the ping utility to keep sending packets until explicitly told.........
stop
to stop
to be stopped
stopped
you can do a rather .......... denial of service attack on the system
ancien
primitive
primordial
prime
In the quarter there were also 12 attacks that ..........as “mega attacks,” peaking at more than 1,000 gigabits per second (Gbps) and 50 million packets per second (Mpps).”
categorized
were categorized
were categorizing
categorize
DoS có nghĩa là............
[<$>] tấn công từ chối dịch vụ
[<$>] từ chối dịch vụ
[<$>] tấn công dịch vụ từ chối phân tán
[<$>] hệ điều hành đĩa
tấn công từ chối dịch vụ
từ chối dịch vụ
tấn công dịch vụ từ chối phân tán
hệ điều hành đĩa
What is abbreviation of DoS?
disk operating system
denial of service
distributed denial of service
deal of service
what do DoS attack aim?
to intrude on your system.
to prevent legitimate users from accessing the system.
To obtain sensitive information.
to destroy your system.
How does a DoS attack work?
] will attempt to make an online service or website unavailable by flooding it with unwanted traffic from multiple computers.
overload the system with requests, and it will no longer be able to respond to legitimate users attempting to access the web server.
an attacker will spread malicious software to vulnerable computers, mainly through infected emails and attachments.
occurs when multiple systems flood the bandwidth or resources of a targeted system, usually one or more web servers
what common tools used for Dos mentioned in “Computer Security Fundamentals”?
TNF and Stacheldrahts
TFN and Stacheldraht
FTN and Stacheldrahd
NTF and Stacheldragh
By now you are aware, in a .......... way, of the dangers of the Internet, and you have explored a few basic rules for protection on the Internet.
generally
general
generalize
generalization
The old adage that “knowledge is power” is not only good advice, but also an axiom upon which to build your entire security outlook. Có nghĩa đúng nhất là
có câu nói rằng “kiến thức là sức mạnh” không chỉ là lời khuyên tốt, mà còn là điều giúp bạn xây dựng nền tảng bảo mật.
Câu ngạn ngữ cũ rằng "kiến thức là sức mạnh" không chỉ là lời khuyên tốt, mà còn là một tiên đề để xây dựng toàn bộ triển vọng bảo mật của bạn.
Câu ngạn ngữ cũ rằng "kiến thức là sức mạnh" không chỉ là lời khuyên tốt, mà còn là điều kiện để xây dựng kỹ năng bảo mật của bạn.
Câu ngạn ngữ cũ rằng "kiến thức là sức mạnh" không chỉ là lời khuyên tốt, mà còn là vấn đề trước nhất để làm nền tảng cho kỹ năng bảo mật của bạn
This chapter will describe for you, in depth, the workings of the denial of service (DoS) attack. This threat is one of the most common attacks on the Internet, so it is ........... for you to understand how it works and how to defend yourself against it
intelligent
prudent
diplomatic
judicious
one of the most ......... forms of attack on a system is a
DoS.
commonly and
common and simple
commonly and simplest
commonest
A workload for a computer system may be defined by the number of simultaneous users, the size of files, the speed of data.........., or the amount of data stored.
transmitter
transmission
transition
transitive
Any computer system, web server, or network can only handle a ........ load
unlimite
finite
finited
finicky
If you exceed any of computer limits, the ........load will stop the system from responding
excessiveness
excessively
excess
excessive
Every technology has limits; if you can exceed those limits, then you can take........
the system
the system offline
the system online
the offical system
what web server service can you use that mentions Computer Security
Fundamentals?
Window7/8/8.1/10
Apache, IIS, or any web server
vFabric Web Server 5.1.1
All answers are correct
Ask several people to open their browsers and key the IP address of that machine in the address........... They should then be viewing the default website for that web server.
[<$>] tab
[<$>] bar
[<$>] server
[<$>] key
tab
bar
server
key
Of course, just one machine in your classroom or lab that is simply pinging on your web server is not going to ......... affect the web server
adversity
adversely
adversing
adversed
After a certain ........(certain number of machines pinging the server), it will stop responding to requests, and you will no longer be able to see the web page.
inception
initiation
threshold
beginning
In order to see this denial happen with as few machines involved as possible, you ....... use a very low-capacity PC as your web server.
can
may
could
might
running an Apache web server on a simple laptop running Windows 7 Home Edition, it can take about 15 machines each running about 10 different command windows ........pinging to cause a web server to stop responding to legitimate requests.
contemporary
simultaneously
coeval
thus
Likewise, ......DoS attacks use much more sophisticated methods.
actualy
actual
factual
nowaday
:.......the target machine with so many packets that it can no longer respond to legitimate requests. It is important to be aware that this is just an illustration.
In order to make
Simply flood
When
Easy to make
With modern servers, and many servers actually being hosted in clusters or server ......., this exact illustration would not work against a modern target.
webs
farms
services
machines
a hacker might develop a small virus whose sole purpose is to infect as many computers as possible and then get each of the ........ computers to initiate a DoS attack on the target.
infect
infected
infecting
infection
This sort of DoS is easy to........, and it can be hard to stop.
make
do
begin
star
A DoS that is launched from several different machines is called a ............... denial of service (DDoS) .
divided
distributed
dispensed
digested
One of the most widely known examples of ransomeware is the infamous …, first discovered in 2013.
CryptoLocker
FakeAV
Rombertik
CryptoWall
CryptoLocker utilized … to lock the user’s files.
asymmetric encryption
hashing
symmetric encryption
tool
CryptoWall is … of CryptoLocker first found in August 2014.
imitated
a copy
modeled
a variant
FakeAV first appeared in … 2012.
[<$>] July
[<$>] October
[<$>] September
[<$>] March
September
March
October
July
This was a fake antivirus that would pop up fake virus warnings. What is this?
CryptoLocker
FakeAV
CryptoWall
Rombertik
This virus is very interesting for multiple reasons. First, it specifically targets Macintosh computers.. What is this?
CryptoLocker
MacDefender
Rombertik
CryptoWall
MacDefender was first seen in the early months of 2011.
2011
2010
2012
2013
… is embedded in some web pages, and when a user visits those web pages, she is given a fake virus scan that tells her she has a virus and it needs to be fixed. The “fix” is actually downloading a virus.
CryptoLocker
Rombertik
MacDefender
Troj/Invo-Zip
It is transmitted as a zip file attached to an email. The email claims that the zip file contains data related to an invoice, tax issue, or similar urgent paperwork. This is a classic example of attempting to entice the recipient to open the attachment. What is it?
[<$>] CryptoLocker
[<$>] MacDefender
[<$>] W32/Netsky-P
[<$>] Troj/Invo-Zip
Troj/Invo-Zip
CryptoLocker
MacDefender
W32/Netsky-P
If the recipient does open the attachment with Troj/Invo-Zip, then he will have installed spyware on his machine that would first disable the … and then start attempting to capture information including financial data. It even takes screenshots of the user’s desktop.
[<$>] internet connection
[<$>] antivirus program
[<$>] console table
[<$>] firewall
internet connection
antivirus program
console table
firewall
W32/Netsky-P was first found in … and was still going around in 2011.
2006
2007
2004
2005
It is a fairly typical virus in that it spreads primarily through email, but it also uses file sharing utilities to copy itself. It copies itself to various directories and shared folders. In one interesting twist, it attempts to copy itself to C:\WINDOWS\FVProtect.exe. The name would make many people (including otherwise technically savvy people) think this program was actually part of some antivirus utility. It also copies itself to C:\WINDOWS\userconfig9x.dll. Again, it would appear to be a system file, thus making people less likely to delete it. What is it?
[<$>] CryptoLocker
[<$>] MacDefender
[<$>] W32/Netsky-P
[<$>] Troj/Invo-Zip
CryptoLocker
MacDefender
W32/Netsky-P
Troj/Invo-Zip
It utilized a multimodal approach to spreading. This means that it used more than one mechanism to spread and infect new machines. It would copy itself to any shared drives on your network and would email itself out to everyone in your address book. What is it?
FakeAV
MacDefender
The Sobig virus
Troj/Invo-Zip
What does virulent mean?
The term virulent means a technique that generates a fixed length value summarising a file or message contents.
The term virulent means a term for a program that looks benign but actually has a malicious purpose.
The term virulent means essentially the same thing in reference to a computer virus as it does to a biological virus. It is a measure of how rapidly the infection spreads and how easily it infects new targets.
The term virulent means copying itself to the Windows directory as avserve.exe and creates a Registry key to load itself at startup.
In the case of Sobig, if one person on a network was unfortunate enough to open an email containing the virus, not only would his machine be infected, but so would … shared drive on that network to which this person had access.
almost
some
one
every
This particular virus spread so far and infected so many networks that the multiple copying of the virus alone was enough to bring some networks to a standstill. This virus did not destroy files or damage the system, but it generated a great deal of traffic that bogged down the networks infected by it. The virus itself was of moderate sophistication. What is it?
Troj/Invo-Zip
The Sobig virus
MacDefender
The Bagle virus
Choose the wrong feature of computer virus.
Some viruses can hide the changes they make, making it much more difficult for the virus is detected.
The virus can bring other viruses: A virus can lead to another virus making it much more lethal and help each other to hide or even assist you to infect a particular section of the computer.
Mutations in the genetic code cause new virus strains to appear, and the pressures of natural selection allow some of these strains to evolve into entirely new species of viruses
A virus is capable of being a resident, that is first loaded into memory and then infects the computer. It can also be non-resident when the virus code is executed only every time a file is opened.
This virus not only collected email addresses from your address book, but also from other documents on your machine (Gudmundsson, 2004). What is this?
[<$>] The Bagle virus
[<$>] MacDefender
[<$>] The Mimail virus
[<$>] A Nonvirus virus
A Nonvirus virus
The Mimail virus
MacDefender
The Bagle virus
Mimail had its own built-in …, so it did not have to “piggy back” off your email client.
snoozed
email engine
drafts
inbox
The email it sent claimed to be from your system administrator. It would tell you that your email account had been infected by a virus and that you should open the attached file to get instructions. Once you opened the attached file, your system was infected. What is this?
A Nonvirus virus
The Mimail virus
Flame
The Bagle virus
This virus was particularly interesting for several reasons. To begin with, it spread both through email and copying itself to shared folders. Second, it could scan files on your PC looking for email addresses. Finally, it would disable processes used by antivirus scanners. In biological terms, this virus took out your computer’s “immune system”. What is this?
A Nonvirus virus
Gameover ZeuS
Flame
The Bagle virus
Another new type of virus has been gaining popularity in the past few years, and that is the “… virus” or, put simply, a hoax. Rather than actually writing a virus, a hacker sends an email to every address he has. The email claims to be from some well-known antivirus center and warns of a new virus that is circulating. The email instructs people to delete some file from their computer to get rid of the virus. The file, however, is not really a virus but part of a computer’s system.
Nonvirus
Bagle
Sobig
Gameover ZeuS
What is CERT?
Computer Emergency Response Team
Computer Emergency Reply Team
Computer Exit Response Team
Computer Exit Reply Team
This virus, which first appeared in 2012, targeted Windows operating systems. The first item that makes this virus notable is that it was specifically designed by the U.S. government for espionage. It was discovered in May 2012 at several locations, including Iranian government sites. It is spyware that can monitor network traffic and take screenshots of the infected system. What is it?
The Bagle virus
Flame
The Mimail virus
A Nonvirus virus
The most common way for a virus to spread is as an email attachment. This realization leads to some simple rules that will drastically reduce the odds of becoming infected with a virus. What is wrong rule?
Use a virus scanner.
Believe “security alerts” that are sent to you.
If you are not sure about an attachment, do not open it.
You might even exchange a code word with friends and colleagues.
Spyware can be as simple as a … used by a website to record a few brief facts about your visit to that website, or it could be of a more insidious type, such as a key logger.
url
cookie
password
address
The most common use of a key logger is to ...
save all information
capture usernames and passwords
open all passwords
replace old password
There are some perfectly … uses for spyware. Some employers have embraced such spyware as a means of monitoring employee use of company technology.
legacy
illegal
legal
elegal
Parents can also … to use spyware on their home computer to monitor the activities of their children on the Internet.
block
elect
selection
prepare
The real question is this: How does spyware get onto a computer system in the first place? The most common method is a …. It is also possible that when you visit a certain website spyware may download in the background while you are simply perusing the website.
Nonvirus virus
Trojan horse
Mimail virus
MacDefender
Some well-known Trojan horses such as the 2nd Thought application that downloads to a person’s PC and then blasts it with ...
advertising
advertisements
adverse
advertise
This particular piece of spyware (the 2nd Thought application) is one that downloads to your PC when you visit certain websites. It is benign in that it causes no direct harm to your system or files, nor does it gather sensitive information from your PC. However, it is incredibly annoying as it inundates your machine with unwanted ...
scripts
ads
files
mails
Which of the following is the best definition of virus?
Program that self-replicates.
Program that slows down networks.
Program used in a DoS attack.
Program used in a DoS attack.
What is the most common damage caused by virus attacks?
[<$>] Deleting files.
[<$>] Changing the Windows Registry.
[<$>] Corrupting the operating system.
[<$>] Slowing down networks by the virus traffic.
Deleting files.
Changing the Windows Registry.
Slowing down networks by the virus traffic.
Corrupting the operating system.
What is the most common way for a virus to spread?
By copying to shared folders.
By FTP.
By downloading from a website.
By email attachment.
Which of the following is the primary reason that Outlook is so often a target for virus attacks?
Many hackers dislike Microsoft.
Outlook copies virus files faster.
Outlook is more common than other email systems.
It is easy to write programs that access Outlook’s inner mechanisms.
Which of the following virus attacks used a multimodal approach?
Mimail virus.
Sobig virus
Slammer virus.
Bagle virus.
What factor about the Sobig virus made it most intriguing to security experts?
It spread in multiple ways.
It was very sophisticated.
It was difficult to protect against.
It deleted critical system files.
What was most interesting to security experts about the Mimail virus?
It spread more rapidly than other virus attacks.
It spread in multiple ways.
It deleted critical system files.
It grabbed email addresses from documents on the hard drive.
Which of the following reasons most likely made the Bagle virus spread so rapidly?
It copied itself across the network.
It was a sophisticated virus.
It was particularly virulent.
The email containing it claimed to be from the system administrator.
What is the primary way a virus scanner works?
By blocking files that copy themselves.
By blocking all unknown files.
By looking at files for virus-like behavior.
By comparing files against a list of known virus profiles.
What made the Bagle virus so dangerous?
It disabled antivirus software.
It changed Windows Registry settings.
It deleted key system files.
It corrupted the operating system.
Which of the following is a way that any person can use to protect against virus attacks?
Set up a firewall.
Use encrypted transmissions.
Use secure email software.
Never open unknown email attachments.
Which of the following is the safest way to send and receive attachments?
Only send spreadsheet attachments.
Use encryption.
Use virus scanners before opening attachments.
Use a code word indicating the attachment is legitimate.
Which of the following is true regarding emailed security alerts?
You must follow them.
You can trust attachments on security alerts.
Most companies send alerts via email.
Most companies do not send alerts via email.
Which of the following is something a Trojan horse might do?
Change your memory configuration.
Change ports on your computer.
Alter your IP address.
Open a backdoor for malicious software
What is a buffer-overflow attack?
Overflowing a port with too many packets.
Putting more email in an email system than it can hold.
Overflowing the system.
Putting more data in a buffer than it can hold.
What virus exploited buffer overflows?
Sobig virus.
Mimail virus.
Sasser virus.
Bagle virus.
What can you do with a firewall to help protect against virus attacks?
There is nothing you can do on the firewall to stop virus attacks.
Close all incoming ports.
None of the above.
Shut down all unneeded ports.
A key logger is what type of malware?
Virus.
Buffer overflow.
Trojan horse.
Spyware.
Which of the following is a step that all computer users should take to protect against virus attacks?
Purchase and configure a firewall.
Shut down all incoming ports.
Use nonstandard email clients.
Install and use antivirus software.
