CREST CPSA EXAM 300 QUESTIONS AND CORRECT ANSWERS
LATEST (VERIFIED ANSWERS)
fgdump - ANSWER: A utility for dumping passwords on Windows NT/2000/XP/2003
machines
Reserved Internal IPs - ANSWER: 10.0.0.0/8 (10.0.0.0-10.255.255.255) : Private
127.0.0.0/8 (127.0.0.0-127.255.255.255) : Local Host Loopback
172.16.0.0/12 (172.16.0.0-172.31.255.255) : Private
192.168.0.0/16 (192.168.0.0-192.168.255.255) : Private
Symmetric Encryption - ANSWER: DES/3DES
AES
Twofish
Blowfish
Serpent
IDEA
RC4, RC5, RC6
CAST
Asymmetric Encryption - ANSWER: RSA
El Gamal
ECC Eliptic Curve
Diffie-Helman (Key Exchange)
Paillier
Merkle-Helman
Cramer-Shoup
Oracle Default Credentials - ANSWER: --Username | Password--
SYSTEM | MANAGER
ANONYMOUS | ANONYMOUS
SCOTT | TIGER
OLAPSYS | MANAGER
SYS | CHANGE_ON_INSTALL
TTL for Windows - ANSWER: 128
TTL for Linux - ANSWER: 64
TTL for Networking Devices / Solaris - ANSWER: 255
Cisco Password Encryption - ANSWER: secret 4 : Crappy SHA256
,secret 5 : Salted MD5
secret 7: Crappy Cisco encryption to prevent cleartext in the config
secret 8 : PBKDF2 (Password-Based Key Derivation Function 2) *bruteforce target*
secret 9 : scrypt (BINGO)
SMTP Requests - ANSWER: MAIL
RCPT
DATA
SNMP Requests - ANSWER: Get
GetNext
Set
GetBulk
Response
Trap
Inform
SQL Injections (Escape Characters) - ANSWER: ' OR '1' = '1' --
' OR '1' = '1' {
' OR '1' = '1' /*
SQL Injections (Type Handling) - ANSWER: 1;DROPTABLE users
Linux File Permissions - ANSWER: drwxrwxrwx 2 user(owner) group size date
filename
d | rwx | rwx | rwx
Filetype | User | Group | Everyone
Linux Command : Change Password - ANSWER: passwd <user>
Linux Command : Find Files of Type - ANSWER: find . -type f -iname '*.pdf'
locate '*.pdf'
Linux File System Structure - ANSWER: /bin - User Binaries
/boot - Bootup related files
/dev - Interface for system devices
/etc - System Config Files
/home - Base directory for user files
/lib - Critical software libraries
/opt - Third party software
/proc - System and running processes
/root - Home for root
/sbin - Sys Admin binaries
/tmp - Temporary Files
/usr - Less critical files
/var - Variable system files
, Solaris Command : Process Listing - ANSWER: prstat -a
Solaris Command : Services and Status - ANSWER: svcs -a
Solaris Command: Start Service (Admin) - ANSWER: svcadm start <service>
NT 3.1 Versions - ANSWER: Windows NT 3.1 (All)
NT 3.5 Versions - ANSWER: Windows NT 3.5 (All)
NT 3.51 Versions - ANSWER: Windows NT 3.51 (All)
NT 4.0 Versions - ANSWER: Windows NT 4.0 (All)
NT 5.0 Versions - ANSWER: Windows 2000 (All)
NT 5.1 Versions - ANSWER: Windows XP (Home, pro, MC, Tablet, PC, Starter,
Embedded)
NT 5.2 Versions - ANSWER: Windows XP (64 bit, Pro 64 bit)
Windows Server 2003 and R2
Windows Home Server
NT 6.0 Versions - ANSWER: Windows Vista (All)
Windows Server 2008 (Foundation, Standard, Enterprise)
NT 6.1 Versions - ANSWER: Windows 7 (All)
Windows Server 2008 R2 (All)
NT 6.2 Versions - ANSWER: Windows 8
Windows Phone 8
Windows Server 2012
%SYSTEMDRIVE%\boot.ini - ANSWER: Contains the boot options for computers with
BIOS firmware running NT-based operating system prior to Windows Vista
%SYSTEMROOT%\repair\SAM
%SYSTEMROOT%\System32\config\RegBack\SAM - ANSWER: Stores Windows users'
passwords in a hashed format (in LM hash and NTLM hash). These are backups of C:\
windows\system32\config\SAM
Windows Commands : System Info - ANSWER: ver : OS Version
sc query state=all : Services
tasklist /svc : Processes and Services
echo %USERNAME% : Current user
LATEST (VERIFIED ANSWERS)
fgdump - ANSWER: A utility for dumping passwords on Windows NT/2000/XP/2003
machines
Reserved Internal IPs - ANSWER: 10.0.0.0/8 (10.0.0.0-10.255.255.255) : Private
127.0.0.0/8 (127.0.0.0-127.255.255.255) : Local Host Loopback
172.16.0.0/12 (172.16.0.0-172.31.255.255) : Private
192.168.0.0/16 (192.168.0.0-192.168.255.255) : Private
Symmetric Encryption - ANSWER: DES/3DES
AES
Twofish
Blowfish
Serpent
IDEA
RC4, RC5, RC6
CAST
Asymmetric Encryption - ANSWER: RSA
El Gamal
ECC Eliptic Curve
Diffie-Helman (Key Exchange)
Paillier
Merkle-Helman
Cramer-Shoup
Oracle Default Credentials - ANSWER: --Username | Password--
SYSTEM | MANAGER
ANONYMOUS | ANONYMOUS
SCOTT | TIGER
OLAPSYS | MANAGER
SYS | CHANGE_ON_INSTALL
TTL for Windows - ANSWER: 128
TTL for Linux - ANSWER: 64
TTL for Networking Devices / Solaris - ANSWER: 255
Cisco Password Encryption - ANSWER: secret 4 : Crappy SHA256
,secret 5 : Salted MD5
secret 7: Crappy Cisco encryption to prevent cleartext in the config
secret 8 : PBKDF2 (Password-Based Key Derivation Function 2) *bruteforce target*
secret 9 : scrypt (BINGO)
SMTP Requests - ANSWER: MAIL
RCPT
DATA
SNMP Requests - ANSWER: Get
GetNext
Set
GetBulk
Response
Trap
Inform
SQL Injections (Escape Characters) - ANSWER: ' OR '1' = '1' --
' OR '1' = '1' {
' OR '1' = '1' /*
SQL Injections (Type Handling) - ANSWER: 1;DROPTABLE users
Linux File Permissions - ANSWER: drwxrwxrwx 2 user(owner) group size date
filename
d | rwx | rwx | rwx
Filetype | User | Group | Everyone
Linux Command : Change Password - ANSWER: passwd <user>
Linux Command : Find Files of Type - ANSWER: find . -type f -iname '*.pdf'
locate '*.pdf'
Linux File System Structure - ANSWER: /bin - User Binaries
/boot - Bootup related files
/dev - Interface for system devices
/etc - System Config Files
/home - Base directory for user files
/lib - Critical software libraries
/opt - Third party software
/proc - System and running processes
/root - Home for root
/sbin - Sys Admin binaries
/tmp - Temporary Files
/usr - Less critical files
/var - Variable system files
, Solaris Command : Process Listing - ANSWER: prstat -a
Solaris Command : Services and Status - ANSWER: svcs -a
Solaris Command: Start Service (Admin) - ANSWER: svcadm start <service>
NT 3.1 Versions - ANSWER: Windows NT 3.1 (All)
NT 3.5 Versions - ANSWER: Windows NT 3.5 (All)
NT 3.51 Versions - ANSWER: Windows NT 3.51 (All)
NT 4.0 Versions - ANSWER: Windows NT 4.0 (All)
NT 5.0 Versions - ANSWER: Windows 2000 (All)
NT 5.1 Versions - ANSWER: Windows XP (Home, pro, MC, Tablet, PC, Starter,
Embedded)
NT 5.2 Versions - ANSWER: Windows XP (64 bit, Pro 64 bit)
Windows Server 2003 and R2
Windows Home Server
NT 6.0 Versions - ANSWER: Windows Vista (All)
Windows Server 2008 (Foundation, Standard, Enterprise)
NT 6.1 Versions - ANSWER: Windows 7 (All)
Windows Server 2008 R2 (All)
NT 6.2 Versions - ANSWER: Windows 8
Windows Phone 8
Windows Server 2012
%SYSTEMDRIVE%\boot.ini - ANSWER: Contains the boot options for computers with
BIOS firmware running NT-based operating system prior to Windows Vista
%SYSTEMROOT%\repair\SAM
%SYSTEMROOT%\System32\config\RegBack\SAM - ANSWER: Stores Windows users'
passwords in a hashed format (in LM hash and NTLM hash). These are backups of C:\
windows\system32\config\SAM
Windows Commands : System Info - ANSWER: ver : OS Version
sc query state=all : Services
tasklist /svc : Processes and Services
echo %USERNAME% : Current user