Exam Code: 212-89
Exam Questions: 163
EC Council Certified Incident Handler (ECIH v3)
Updated: 21 Feb, 2026
Viewing Page : 1 - 17
Practicing : 1 - 5 of 163 Questions
Question 1

Removing or eliminating the root cause of the incident is called:  

Options :
Answer: A

Question 2

A US Federal agency network was the target of a DoS attack that prevented and impaired the normal authorized functionality of the networks. According to agency’s reporting timeframe guidelines, this incident should be reported within two (2) HOURS of discovery/detection if the successful attack is still ongoing and the agency is unable to successfully mitigate the activity. Which incident category of the US Federal Agency does this incident belong to?  

Options :
Answer: C

Question 3

One of the main objectives of incident management is to prevent incidents and attacks by tightening the physical security of the system or infrastructure. According to CERT’s incident management process, which stage focuses on implementing infrastructure improvements resulting from postmortem reviews or other process improvement mechanisms? 

Options :
Answer: A

Question 4

The network perimeter should be configured in such a way that it denies all incoming and outgoing traffic/ services that are not required. Which service listed below, if blocked, can help in preventing Denial of Service attack? 

Options :
Answer: D

Question 5

A computer virus hoax is a message warning the recipient of non-existent computer virus. The message is usually a chain e-mail that tells the recipient to forward it to every one they know. Which of the following is NOT a symptom of virus hoax message?  

Options :
Answer: A

Viewing Page : 1 - 17
Practicing : 1 - 5 of 163 Questions

© Copyrights FreePDFQuestions 2026. All Rights Reserved

We use cookies to ensure that we give you the best experience on our website (FreePDFQuestions). If you continue without changing your settings, we'll assume that you are happy to receive all cookies on the FreePDFQuestions.