Enumeration Flashcards

1
Q

What port does BGP use?

A

179

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What port does NetBIOS use for accessing resources?

A

139

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What port does IPSEC IKE use?

A

500

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following port numbers is used by the Windows NetBIOS session service for both null-session establishment as well as file and printer sharing

A

TCP 139

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What port does LDAP use by default?

A

389

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does PsList do?

A

PsList displays the CPU and memory information or thread statistics.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which NetBIOS service code is used to obtain information related to the master browser name (aka domain name) for the subnet?

A

<1D>

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which NetBIOS service code is used to obtain information related to the username of the logged in user, or the host name?

A

<03>

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which NetBIOS service code is used to obtain the host name?

A

<20>

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which flag do you pass to nbtstat to display the count of all names resolved by a broadcast or WINS server?

A

-r

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Which command allows an SNMP agent to inform the pre-configured SNMP manager of a certain event

A

Trap

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which MIB (management information base) contains WINS (Windows Internet Name Service) object types?

A

WINS.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which MIB (management information base) contains host resources object types?

A

HOSTMIB.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which MIB (management information base) contains TCP/IP-based object types?

A

MIB_II.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which MIB (management information base) contains Workstation and Server Services object types?

A

LNMIB2.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which command is used by an SNMP agent to meet a request made by the SNMP manager?

A

GetResponse

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which protocol enables an attacker to enumerate user accounts and devices on a target system

A

SNMP

18
Q

What is JXplorer?

A

JXplorer is an LDAP enumeration tool

19
Q

What do you pass to ntpdate to force the time to always be skewed?

A

-B

20
Q

What do you pass to ntpdate to force the time to always be stepped?

A

-b

21
Q

What do you pass to ntpdate to enable debugging mode?

A

-d

22
Q

What do you pass to ntpdate to query an ntp server without updating the clock?

A

-q

23
Q

What is RPCScan?

A

An NFS enumeration tool

24
Q

What is ntpdc?

A

A command used by the attackers to query the ntpd daemon about its current state

25
Q

What does the -h flag do when passed to smtp-user-enum?

A

-h specifies the hostname of the SMTP server

26
Q

What does the -u flag do when passed to smtp-user-enum?

A

-u username specifies a user whose existence you’d like to check on a given SMTP server.

27
Q

What does the -U flag do when passed to smtp-user-enum?

A

Check usernames listed in given file to see if they exist on given SMTP server

28
Q

What does the -u flag do when passed to smtp-user-enum?

A

Use the hostnames given in the file to enumerate SMTP servers.

29
Q

What is the VRFY SMTP command?

A

VRFY validates users

30
Q

What is the EXPN SMTP command?

A

EXPN tells the actual delivery addresses of aliases and mailing lists

31
Q

What is the RCPT TO SMTP command?

A

Defines the recipients of the message

32
Q

What is the default SMB port?

A

445

33
Q

What is Enyx?

A

Enyx is an enumeration tool that fetches the IPv6 address of a machine through SNMP

34
Q

What is Svmap?

A

Svmap is an open-source scanner that identifies SIP devices and PBX servers on a target network. It can be helpful for system administrators when used as a network inventory tool

35
Q

What is ike-scan?

A

ike-scan discovers IKE hosts and can fingerprint them using the retransmission backoff pattern

36
Q

Which flag do you pass to finger to prevent the matching of usernames?

A

-m

37
Q

Which flag do you pass to finger to display the user’s login name, real name, terminal name, idle time, login time, office location and office phone number?

A

-s

38
Q

Which flag do you pass to finger to output a detailed multi-line output?

A

-l

39
Q

Which flag do you pass to finger to prevent the -l flag from displaying the contents of the .plan, .project, and .pgpkey files?

A

-p

40
Q

What’s SNMP’s default port?

A

161