Câu 62: GPEN: GIAC Penetration Tester
You have compromised a Windows XP system and Injected the Meterpreter payload into the lsass process. While looking over the system you notice that there is a popular password management program on the system. When you attempt to access the file that contains the password you find it is locked. Further investigation r…
Nội dung câu hỏi
You have compromised a Windows XP system and Injected the Meterpreter payload into the lsass process. While looking over the system you notice that there is a popular password management program on the system. When you attempt to access the file that contains the password you find it is locked. Further investigation reveals that it is locked by the passmgr process. How can you use the Meterpreter to get access to this file?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Use the getuid command to determine the user context the process is runningunder, then use the imp command to impersonate that user.
- B. use the getpid command to determine the user context the process is runningunder, then use the Imp command to impersonate that user.
- C. Use the execute command to the passmgr executable. That will give you access to the file. — đáp án hiện tại
- D. Use the migrate command to jump to the passmgr process. That will give you accessto the file.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.