MA0-150 Exam Questions
176 real MA0-150 exam questions with expert-verified answers and explanations. Page 1 of 4.
- Question #1
Under UNIX, Pluggable Authentication Modules (PAN) can be used to
- Question #2
What is the quickest protocol to brute force when attacking Windows?
- Question #3
The datapipe and fpipe tools can be used for
- Question #4
What is the basis for Cisco Type 7 passwords?
- Question #5
What is the magic number for a Linux binary?
- Question #6
Horizontal privilege escalation is a vulnerability of authorization where users act at a privilege level
- Question #7
A corporate user has just been hacked and shell code is installed. The user logs off, but the hacker remains on the system with NT AUTHORTTY\SYSTEM credentials. What can the attack...
- Question #8
Which of the following are advantages of maintaining a separate syslog server? (Choose two)
- Question #9
NetBIOS enumeration requires access to which TCP ports?
- Question #10
The nmap command nmap -O would result in
- Question #11
Which of the following are common vulnerabilities in web applications? (Choose three)
- Question #12
The Nmap command nmap sV would result in
- Question #13
Which of the following are necessary for RFID? (Choose two)
- Question #14
Brute force attack tools include which of the following? (Choose three)
- Question #15
Which of the following commands will tell you what version of Microsoft Windows is running? (Choose three)
- Question #16
During an external penetration test, the consultant identifies a Windows-based server that is running Apache Tomcat Manager with a default username and password combination. After...
- Question #17
What protocol does the Nmap default scan nmap 192.16S.1.1 use?
- Question #18
Reverse Telnet is an example of a
- Question #19
What database does the tool SQLPing target?
- Question #20
User Access Control (UAC) is an example of what security principle?
- Question #21
What protocol backs the core routing decisions on the Internet?
- Question #22
Base64 is an algorithm that uses
- Question #23
Once a hostname on a Windows network has been identified, which of the following tools can help identify the IP address of the host? (Choose three)
- Question #24
The tracert command in Windows uses which protocol?
- Question #25
What command can be used to search a Windows host for a filename containing "term"?
- Question #26
A consecutive string of 0x90's is called a
- Question #27
The Hydra tool is used for
- Question #28
What are the default permissions set on an /etc/shadow file?
- Question #29
The following commands, run in sequence from top to bottom, is an example of
- Question #30
What is a feature-rich file type that can be used for client-side attacks?
- Question #31
What command generated the following output? Linux DVORAK 2.6.34 =1 SMP Wed Jul 21 09:51:09 EDT 2010 686GNU/Unux
- Question #32
What service is commonly found on network devices on UDP port 161?
- Question #33
While connected to a Local Area Network in a hacker class at a security conference, a student also connected to his company's SSL VPN. Now other students can connect to the corpora...
- Question #35
An attacker has just compiled a exploit binary but cannot seem to run the executable. Which of the following can be used to help execute the binary? (Choose two)
- Question #36
The root cause of WEP's security weakness is weak
- Question #37
A hacker who is connected to the wireless network on a flat corporate network attempts to run a "net use" command against a corporate workstation running a default installation of...
- Question #38
What are LSA Secrete?
- Question #39
What tool is used to enumerate portmap services on a UNIX system?
- Question #40
By default, UNIX system logs are most often stored in
- Question #41
An Administrator of the CORP domain makes modifications to the Domain Security Policy so that the storage of LAN Man hashes is no longer permitted. These changes are pushed out to...
- Question #42
Zone Transfers are used to
- Question #43
What syntax is used to perform an Nmap full connect scan?
- Question #46
When cracking LM hashes, what is the approximate keyspace, given that there are 95 permitted alphanumeric and symbolic characters?
- Question #47
The Nmap command "nmap -g 53192.168.1.1" will perform a port scan and use a value of 53 as the
- Question #48
ARP poisoning involves
- Question #49
What TCP port does the DNS protocol use?
- Question #50
How many ports does the Nmap default scan target?
- Question #51
What command turns off access control for X windows?
- Question #52
What tool can be used to crack Cisco Type 7 passwords?
- Question #53
A corporate user has just been tricked into installing malicious software. The software attempts to phone home over port 80 but does not conform to the HTTP RFC. What device protec...