22questions - Sheet1 Flashcards

1
Q

Which of the following password compliance tools is a password Recovery tool, sniffs network for hashes, and dumps protected storage passwords?

A

Cain & Able

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

True or False, the input file for the password compliance script is a SAM file

A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

True/False: CAT III are Vulnerabilities that provide information which have a high potential of giving
access to an intruder.

A

FALSE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following password compliance tools dumps LM/NTLM hashes from Security Accounts
Manager (SAM) File in Windows, persists in memory, and if used against a domain controller, the
domain controller may need restarting?

A

PWDump6

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

True or False. Compliance scans are executed after an initial scan

A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

The name of the STIG complainance scan policy for windows 7 is called _________.

A

win_7_stig

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which is one of the considerations regarding using Nessus to conduct a CE on Windows?

A

False positives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which of the following is the nessus configuration file?

A

.nessus.conf

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which command is used to determine a failed nessus scan

LO-03 Provided a failed Nessus scan result…

A

nbe-status.sh

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which common plugin number is for Inadequate credentials

A

24786

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

To ensure findings are reported correctly and not as false positives is part of what?

A

Manual Validation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the type of table used to submit results

A

Pivot

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

True/False: The 92d summarizes all CVA findings within a turn table.

A

FALSE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How is data organized during the assessment?

A

A pivot table via a spreadsheet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which “.ips” file is used for a patch compliance scan

A

win.ips

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

True or False, the MAC address needs to be configured for the Nessus Server LO-01 Setup the Nessus server and verify it is operational

A

TRUE

17
Q

One of the first steps in executing an initial scan is to create a ________ directory.
LO-02 Provided with valid credentials and a target system execute an initial_scan

A

working

18
Q

Why is manual validation important concerning compliance findings?

A

It promotes due diligence to eliminate false positives and false negatives

19
Q

What is the name of the script for password compliance?

A

sam-stat.sh

20
Q

True/False: The name of the policy for the patch compliance scan is win_all.

A

TRUE

21
Q

What command can be used to check the nessus server is operational?

A

netstat

22
Q

Which is one of the limitations regarding using Nessus to conduct a CE on Windows?

A

Nessus can only detect what you program it to see and may introduce false negatives