🔥 40% Off Crucial Exams Memberships — Deal ends today!

2 hours, 29 minutes remaining!

Certified Ethical Hacker (CEH) Practice Question

During an internal assessment, you have found multiple Windows servers exposing TCP ports 135, 139, and 445. Following a typical enumeration workflow, what technique should you attempt next if your goal is to obtain a list of local user and group accounts without supplying any credentials?

  • Launch an XMAS TCP scan against port 139 to infer firewall rule sets

  • Send a DNS zone-transfer (AXFR) request over TCP 53 to retrieve host records

  • Issue an SNMP GET request for OID 1.3.6.1.2.1.1.5.0 to collect device information

  • Create an anonymous (null) SMB session on TCP 445 and query the \PIPE\samr interface to enumerate the Security Accounts Manager database

Certified Ethical Hacker (CEH)
Reconnaissance Techniques
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot