exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 426 discussion

Actual exam question from CompTIA's PT0-002
Question #: 426
Topic #: 1
[All PT0-002 Questions]

A penetration tester wants to find the password for any account in the domain without locking any of the accounts. Which of the following commands should the tester use?

  • A. enum4linux -u user1 -p /passwordList.txt 192.168.0.1
  • B. enum4linux -u user1 -p Password1 192.168.0.1
  • C. cme smb 192.168.0.0/24 -u /userList.txt -p /passwordList.txt
  • D. cme smb 192.168.0.0/24 -u /userList.txt -p Summer123
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
killwitch
2 months, 3 weeks ago
Selected Answer: D
cme (CrackMapExec) can be used for password spray attack.
upvoted 1 times
...
hitagitore
3 months, 1 week ago
Selected Answer: D
D is basically a password spray attack,
upvoted 2 times
...
Snagggggin
3 months, 1 week ago
Selected Answer: D
This is describing a password praying attack. We have no idea of knowing how many passwords are in the list described in answer C, and therefore there is a risk of lockout. Answer D is the only one that will test a list of users against a single password, ensuring there is no lockouts.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago