CEH EXAM 2-ACTUAL EXAM -LATEST UPDATE 2025 |
COMPLETE QUESTIONS WITH CORRECT DETAILED
AND VERIFIED ANSWERS|MOSTLY TESTED
QUESTIONS-RATED 100% CORRECT!! GUARANTEED
PASS!! ALREADY GRADED A+
You have just run the John the Ripper command shown in the image. Which of
the following was this command used for? - ...(ANSWERS)....The command in the
picture is "zip2john secure.zip > secure.zip"
To extract the password hashes and save them in the secure.txt file.
Carl received a phone call from a woman who states that she is calling from his
bank. She tells him that someone has tried to access his checking account and she
needs him to confirm his account number and password to discuss further details.
He gives her his account number and password. Which of the following types of
non-technical password attack has occurred? - ...(ANSWERS)....Social engineering
You are cleaning your desk at work. You toss several stacks of paper in the trash,
including a sticky note with your password written on it. Which of the following
types of non-technical password attacks have you enabled? -
...(ANSWERS)....Dumpster diving
Which of the following best describes shoulder surfing? -
...(ANSWERS)....Someone nearby watches you enter your password on your
computer and records it.
,Which of the following techniques involves adding random bits of data to a
password before it is stored as a hash? - ...(ANSWERS)....Password salting
[ !"#$%&'()*+,-./0123456789:;<=>?
@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~] are
the possible values in which of the following hash types? - ...(ANSWERS)....Ascii-
32-95
Which of the following includes all possible characters or values for plaintext? -
...(ANSWERS)....Charset
Jack is tasked with testing the password strength for the users of an organization.
He has limited time and storage space. Which of the following would be the best
password attack for him to choose? - ...(ANSWERS)....Rainbow attack
You have created and sorted an md5 rainbow crack table. You want to crack the
password. Which of the following commands would you use to crack a single
hash? - ...(ANSWERS)....rcrack . -h 202cb962ac59075b964b07152d234b70
You are using a password attack that tests every possible keystroke for each
single key in a password until the correct one is found. Which of the following
technical password attacks are you using? - ...(ANSWERS)....Brute force
Sam has used malware to access Sally's computer on the network. He has found
information that will allow him to use the underlying NTLM to escalate his
,privileges without needing the plaintext password. Which of the following types
of attacks did he use? - ...(ANSWERS)....Pass the hash
Roger, a security analyst, wants to tighten up privileges to make sure each user
has only the privileges they need to do their work. Which of the following
additional countermeasure could he take to help protect privelige? -
...(ANSWERS)....Instigate multi-factor authentication and authorization.
Which of the following is used to remove files and clear the internet browsing
history? - ...(ANSWERS)....CCleaner
Which of the following is a protocol that allows authentication over a non-secure
network by using tickets or service principal names (SPNs)? -
...(ANSWERS)....Kerberoasting
Which of the following best describes the Security Account Manager (SAM)? -
...(ANSWERS)....A database that stores user passwords in Windows as an LM hash
or a NTLM hash.
An attacker installed a malicious file in the application directory. When the victim
starts installing the application, Windows searches in the application directory
and selects the malicious file instead of the correct file. The malicious file gives
the attacker remote access to the system. Which of the following escalation
methods best describes this scenario? - ...(ANSWERS)....DLL hijacking
, Which of the following is the name of the attribute that stores passwords in a
Group Policy preference item in Windows? - ...(ANSWERS)....cPasswords
Which of the following privilege escalation risks happens when a program is being
installed without the constant supervision of the IT employee and fails to clean up
after? - ...(ANSWERS)....Unattended installation
A hacker has gained physical access to a system and has changed an
administrator's account password. Which of the following tools did the hacker
most likely use to accomplish this? - ...(ANSWERS)....Ultimate Boot CD
Which of the following is a tool for cracking Windows login passwords using
rainbow tables? - ...(ANSWERS)....Ophcrack
Which of the following is malware that works by stealth to capture information
and then sends it to a hacker to gain remote access? - ...(ANSWERS)....Spyware
Which of the following do hackers install in systems to allow them to have
continued admittance, gather sensitive information, or establish access to
resources and operations within the system? - ...(ANSWERS)....Backdoors
Hackers can maintain access to a system in several ways. Which of the following
best describes the unsecure file and folder method? - ...(ANSWERS)....This can
lead to DLL hijacking and malicious file installations on a non-admin targeted user.
COMPLETE QUESTIONS WITH CORRECT DETAILED
AND VERIFIED ANSWERS|MOSTLY TESTED
QUESTIONS-RATED 100% CORRECT!! GUARANTEED
PASS!! ALREADY GRADED A+
You have just run the John the Ripper command shown in the image. Which of
the following was this command used for? - ...(ANSWERS)....The command in the
picture is "zip2john secure.zip > secure.zip"
To extract the password hashes and save them in the secure.txt file.
Carl received a phone call from a woman who states that she is calling from his
bank. She tells him that someone has tried to access his checking account and she
needs him to confirm his account number and password to discuss further details.
He gives her his account number and password. Which of the following types of
non-technical password attack has occurred? - ...(ANSWERS)....Social engineering
You are cleaning your desk at work. You toss several stacks of paper in the trash,
including a sticky note with your password written on it. Which of the following
types of non-technical password attacks have you enabled? -
...(ANSWERS)....Dumpster diving
Which of the following best describes shoulder surfing? -
...(ANSWERS)....Someone nearby watches you enter your password on your
computer and records it.
,Which of the following techniques involves adding random bits of data to a
password before it is stored as a hash? - ...(ANSWERS)....Password salting
[ !"#$%&'()*+,-./0123456789:;<=>?
@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~] are
the possible values in which of the following hash types? - ...(ANSWERS)....Ascii-
32-95
Which of the following includes all possible characters or values for plaintext? -
...(ANSWERS)....Charset
Jack is tasked with testing the password strength for the users of an organization.
He has limited time and storage space. Which of the following would be the best
password attack for him to choose? - ...(ANSWERS)....Rainbow attack
You have created and sorted an md5 rainbow crack table. You want to crack the
password. Which of the following commands would you use to crack a single
hash? - ...(ANSWERS)....rcrack . -h 202cb962ac59075b964b07152d234b70
You are using a password attack that tests every possible keystroke for each
single key in a password until the correct one is found. Which of the following
technical password attacks are you using? - ...(ANSWERS)....Brute force
Sam has used malware to access Sally's computer on the network. He has found
information that will allow him to use the underlying NTLM to escalate his
,privileges without needing the plaintext password. Which of the following types
of attacks did he use? - ...(ANSWERS)....Pass the hash
Roger, a security analyst, wants to tighten up privileges to make sure each user
has only the privileges they need to do their work. Which of the following
additional countermeasure could he take to help protect privelige? -
...(ANSWERS)....Instigate multi-factor authentication and authorization.
Which of the following is used to remove files and clear the internet browsing
history? - ...(ANSWERS)....CCleaner
Which of the following is a protocol that allows authentication over a non-secure
network by using tickets or service principal names (SPNs)? -
...(ANSWERS)....Kerberoasting
Which of the following best describes the Security Account Manager (SAM)? -
...(ANSWERS)....A database that stores user passwords in Windows as an LM hash
or a NTLM hash.
An attacker installed a malicious file in the application directory. When the victim
starts installing the application, Windows searches in the application directory
and selects the malicious file instead of the correct file. The malicious file gives
the attacker remote access to the system. Which of the following escalation
methods best describes this scenario? - ...(ANSWERS)....DLL hijacking
, Which of the following is the name of the attribute that stores passwords in a
Group Policy preference item in Windows? - ...(ANSWERS)....cPasswords
Which of the following privilege escalation risks happens when a program is being
installed without the constant supervision of the IT employee and fails to clean up
after? - ...(ANSWERS)....Unattended installation
A hacker has gained physical access to a system and has changed an
administrator's account password. Which of the following tools did the hacker
most likely use to accomplish this? - ...(ANSWERS)....Ultimate Boot CD
Which of the following is a tool for cracking Windows login passwords using
rainbow tables? - ...(ANSWERS)....Ophcrack
Which of the following is malware that works by stealth to capture information
and then sends it to a hacker to gain remote access? - ...(ANSWERS)....Spyware
Which of the following do hackers install in systems to allow them to have
continued admittance, gather sensitive information, or establish access to
resources and operations within the system? - ...(ANSWERS)....Backdoors
Hackers can maintain access to a system in several ways. Which of the following
best describes the unsecure file and folder method? - ...(ANSWERS)....This can
lead to DLL hijacking and malicious file installations on a non-admin targeted user.