Exam Details

  • Exam Code
    :MK0-201
  • Exam Name
    :CPTS - Certified Pen Testing Specialist
  • Certification
    :Mile2-Certifications
  • Vendor
    :Mile2
  • Total Questions
    :247 Q&As
  • Last Updated
    :

Mile2 Mile2-Certifications MK0-201 Questions & Answers

  • Question 1:

    If the DS Client software has been installed on Windows 95,Windows 98, and NT 4 computers,what setting of the LanMan Authentication level should be applied to counteract LanMAn hash sniffing and offline cracking?Choose the best answer.

    A. Send NTLM v2/Refuse LM and NTLM

    B. Send NTLM only

    C. Send LM and NTLM responses

    D. Send NTLM v2/Refuse LM

  • Question 2:

    Which of the following would best describe a scanning technique that is the most reliable but also the most noticeable on the target is being evaluated?

    A. Half-Scan

    B. TCP Connect( )

    C. Fin Scan

    D. NMAP scan

  • Question 3:

    A normal connection is usally established using a TCP Three Way handshake where sequences of packets are sent as follows;Syn,Syn-Ack,Ack.A malicious attacker probing a remote target is sending a Syn packet to a target;however,when he gets a Syn-Ack response from the target,he always sends a Reset packet (RST)instead of completing the three way handshake with an Ack packet as per the protocol.

    What is the attackers goal when doing this?Choose the best answer.

    A. Attacker does not like to follow protocols and agreements

    B. Attacker has his own modified protocol stacks

    C. Attacker attempts to avoid being logged on remote hosts

    D. Attacker attempts to avoid sending too much traffic

  • Question 4:

    Which registry key setting will disable the automatic playing of executables on a CD-room when the CD-room is inserted into the computer?Choose the best answer.

    A. HKEY_Current_User\System\CurrentControlSet\Control\cdrom\autoplay=0

    B. HKEY_Current_Machine\System\CurrentControlSet\Service\cdrom\autorun=0

    C. HKEY_Current_Machine\System\CurrentControlSet\Service\cdrom\auto=1

    D. HKEY_Current_Machine\System\Services\Windows\cdrom\autoplay=0

  • Question 5:

    Which of these methods would help protect DNS records from unauthorized users?(Choose two.)

    A. Removing the default setting on NT 4 and Windows 2000 DNS servers that allows zone transfers to any IP address

    B. Using Active Directory Integrated zones on publicly-available DNS servers

    C. Blocking incoming UDP port 53 requests to a DMZ hosting a DNS server

    D. Using two DNS servers;An internal DNS server with internal resource records and an external DNS server with DMZ-based resource records

  • Question 6:

    Which of the following capabilities do rootkits have?Choose all that apply.

    A. Hide any file

    B. Hide any process

    C. Hide any listening port

    D. Cause a blue screen of death on Windows computers

  • Question 7:

    One key skill a penetration Tester must possess is documentation.

    There are different documents that will be produced in the course of doing a penetration test,out of the documents listed below which one would be the most important document that a Penetration Tester must have in order to be performing a test?

    A. Network Diagram

    B. Host and services list

    C. Written Authorization

    D. Security Policies

  • Question 8:

    Cisco Catalyst Switches have which feature intended to prevent ARP cache poisoning?Choose the best answer.

    A. ARP watch

    B. Dynamic ARP Inspection

    C. VLANs

    D. IPSec-ready

  • Question 9:

    Why is it important to ensure that SRV records are not publicly accessible?Choose the best answer.

    A. SRV records indicate how long a machine has been up since reboot and hence could indicate patch levels

    B. SRV records reveal Active Directory domain controllers

    C. SRV records reveal software Update Services computers

    D. SRV records are required on NT 4 domains

  • Question 10:

    A system administrator deploys a Windows-based server in a publicly-accessible DMZ.The sole purpose of this machine is to run IIS and allow anonymous access.After a few days the security log is full of failed login against the Administrator account.What is the best strategy to totally prevent future password guessing attempts? Choose the best answer.

    A. Enable account lockout

    B. Change the Administrator password to be even longer

    C. Remove File and Print Sharing for Microsoft Networks on the network adapter

    D. Configure the security policy to shut down the system when the event log is full

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Mile2 exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your MK0-201 exam preparations and Mile2 certification application, do not hesitate to visit our Vcedump.com to find your solutions here.