
EC-CouncilCertified Penetration Testing Professional
Domain 6Objective 3
Mastering the Metasploit Framework CPENT Practice Questions (Page 6)
Part of the Advanced Exploitation and IoT domain, which makes up ~17% of our current practice bank.
44questions here
9free pages
12concepts
Questions 26–30
- 26
You need to run a series of Metasploit commands automatically every time you start a penetration test against a new client. The commands include setting up the database, creating a workspace, and running an Nmap scan. What is the most efficient way to do this?
Select an answer first - 27
After compromising a Windows domain controller, you need to extract password hashes from the SAM database to attempt offline cracking. Which Meterpreter command or module should you use?
Select an answer first - 28
In the Metasploit Framework, which component is responsible for providing the user interface that allows interaction with modules, managing sessions, and executing commands?
Select an answer first - 29
You have a Meterpreter session on a compromised Windows server. You need to enumerate logged-on users, dump password hashes, and then move laterally to another machine on the same subnet. Which Meterpreter commands and modules should you use in order?
Select an answer first - 30
Which command in msfconsole is used to execute a resource script?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.