CompTIA PenTest+ PT0-003 (V3) Practice Question

During an internal penetration test you dump the NTLM hash of svc-file$, the service account that registers the CIFS SPN for FILE01.corp.local. Your goal is to open the hidden administrative share on FILE01 while keeping Kerberos traffic off the domain controller so that Event IDs 4768 and 4769 are not generated. Working only with Rubeus on your foothold system, which approach meets these requirements most effectively?

  • Export a computer certificate from FILE01 and use PKINIT to authenticate to the share

  • Forge a silver ticket for the CIFS service on FILE01 using the service account hash and inject it locally

  • Request an S4U constrained-delegation ticket for Administrator and pass it to FILE01

  • Create a golden ticket with the KRBTGT hash to obtain domain-wide access, then request a CIFS ticket

CompTIA PenTest+ PT0-003 (V3)
Attacks and Exploits
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA PenTest+ Voucher with Retake
v3 / PT0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot