Enumeration Flashcards

1
Q

What port does BGP use?

A

179

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What port does NetBIOS use for accessing resources?

A

139

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What port does IPSEC IKE use?

A

500

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following port numbers is used by the Windows NetBIOS session service for both null-session establishment as well as file and printer sharing

A

TCP 139

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What port does LDAP use by default?

A

389

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does PsList do?

A

PsList displays the CPU and memory information or thread statistics.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which NetBIOS service code is used to obtain information related to the master browser name (aka domain name) for the subnet?

A

<1D>

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which NetBIOS service code is used to obtain information related to the username of the logged in user, or the host name?

A

<03>

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which NetBIOS service code is used to obtain the host name?

A

<20>

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which flag do you pass to nbtstat to display the count of all names resolved by a broadcast or WINS server?

A

-r

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Which command allows an SNMP agent to inform the pre-configured SNMP manager of a certain event

A

Trap

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which MIB (management information base) contains WINS (Windows Internet Name Service) object types?

A

WINS.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which MIB (management information base) contains host resources object types?

A

HOSTMIB.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which MIB (management information base) contains TCP/IP-based object types?

A

MIB_II.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which MIB (management information base) contains Workstation and Server Services object types?

A

LNMIB2.MIB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which command is used by an SNMP agent to meet a request made by the SNMP manager?

A

GetResponse

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which protocol enables an attacker to enumerate user accounts and devices on a target system

18
Q

What is JXplorer?

A

JXplorer is an LDAP enumeration tool

19
Q

What do you pass to ntpdate to force the time to always be skewed?

20
Q

What do you pass to ntpdate to force the time to always be stepped?

21
Q

What do you pass to ntpdate to enable debugging mode?

22
Q

What do you pass to ntpdate to query an ntp server without updating the clock?

23
Q

What is RPCScan?

A

An NFS enumeration tool

24
Q

What is ntpdc?

A

A command used by the attackers to query the ntpd daemon about its current state

25
What does the -h flag do when passed to smtp-user-enum?
-h specifies the hostname of the SMTP server
26
What does the -u flag do when passed to smtp-user-enum?
-u username specifies a user whose existence you'd like to check on a given SMTP server.
27
What does the -U flag do when passed to smtp-user-enum?
Check usernames listed in given file to see if they exist on given SMTP server
28
What does the -u flag do when passed to smtp-user-enum?
Use the hostnames given in the file to enumerate SMTP servers.
29
What is the VRFY SMTP command?
VRFY validates users
30
What is the EXPN SMTP command?
EXPN tells the actual delivery addresses of aliases and mailing lists
31
What is the RCPT TO SMTP command?
Defines the recipients of the message
32
What is the default SMB port?
445
33
What is Enyx?
Enyx is an enumeration tool that fetches the IPv6 address of a machine through SNMP
34
What is Svmap?
Svmap is an open-source scanner that identifies SIP devices and PBX servers on a target network. It can be helpful for system administrators when used as a network inventory tool
35
What is ike-scan?
ike-scan discovers IKE hosts and can fingerprint them using the retransmission backoff pattern
36
Which flag do you pass to finger to prevent the matching of usernames?
-m
37
Which flag do you pass to finger to display the user's login name, real name, terminal name, idle time, login time, office location and office phone number?
-s
38
Which flag do you pass to finger to output a detailed multi-line output?
-l
39
Which flag do you pass to finger to prevent the -l flag from displaying the contents of the .plan, .project, and .pgpkey files?
-p
40
What's SNMP's default port?
161