nerdexam
EC-Council

EC0-350 · Question #566

A user on your Windows 2000 network has discovered that he can use L0phtcrack to sniff the SMB exchanges which carry user logons. The user is plugged into a hub with 23 other systems. However, he is…

The correct answer is B. Kerberos is preventing it. See the full explanation below for the reasoning.

Question

A user on your Windows 2000 network has discovered that he can use L0phtcrack to sniff the SMB exchanges which carry user logons. The user is plugged into a hub with 23 other systems. However, he is unable to capture any logons though he knows that other users are logging in. What do you think is the most likely reason behind this?

Options

  • AThere is a NIDS present on that segment.
  • BKerberos is preventing it.
  • CWindows logons cannot be sniffed.
  • DL0phtcrack only sniffs logons to web servers.

How the community answered

(24 responses)
  • A
    8% (2)
  • B
    71% (17)
  • C
    4% (1)
  • D
    17% (4)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice