Gain System Access
Crack System's Password
Run the Responder tool on the Ubuntu machine and find the NTLM hash for the user Jason on Windows 11. Simulate the user Jason (user: Jason and password: qwerty) on the Windows 11 machine. Enter the option that specifies the interface while running the Responder tool.
Audit System Passwords
Run L0phtCrack on the Windows 11 machine. You have the admin credentials (username: Administrator, password: Pa$$w0rd) of a target machine, which is at Find the password of another user, Martin, on the machine at
Password Auditing Wizard
A remote machine
Enter Host IP address, Username, and Password
Thorough Password Audit
Generate Report at End of Auditing
Run the ob immediately
Find Vulnerabilities in Exploit Sites
Search for the vulnerability "CloudMe Sync 1.11.2 Buffer Overflow - WoW64 (DEP Bypass)" on exploit-db.com. What is the CVE ID for this vulnerability?
Gain Access to a Remote System
For this task, use the Parrot Security machine ( as the attacker’s system and the Windows 11 machine ( as the target system. Run the Armitage tool from the attacker’s machine to exploit vulnerabilities on the target system. Interact with the target system and use the sysinfo command to find the build number of the target’s operating system.
Ninja Jonin
Use the Ninja Jonin to gain access to the Windows Server 2022. Enter the name of the Windows Server machine that is captured in the Jonin console.
Use the Ninja Jonin to gain access to the Windows Server 2022. Enter the command that should be used to open shell on the target machine, using Jonin console.
Jonin Commands
Privilege Escalation
Linux: Exploiting Misconfigured NFS
Exploit misconfigured NFS to gain access and to escalate previleges on Ubuntu machine. Enter the command that was used to check if any share is available for mount in Ubuntu machine.
showmount -e
Exploit misconfigured NFS to gain access and to escalate previleges on Ubuntu machine. What is the command that is used to view current processes along with their PIDs?
ps -ef
Bypass UAC and Exploit Sticky Keys
Exploit Sticky keys feature to gain access and to escalate previleges on the Windows 11 machine. Enter the domain of Windows 11 obtained from sysinfo command in meterpreter session.
Create Binary
Share Binary
Create Listener
Escalate Privilege
Maintain Remote Access and Hide Malicious Activities
System Monitoring and Surveillance
Power Spy
Use the Power Spy tool on the Windows Server 2022 machine to monitor the target machine at Use the user account Jason, with the password qwerty, to establish a Remote Desktop Connection with the target system. What is the default key combination to put Power Spy in the Stealth mode?
Spytech SpyAgent
Use the Spytech SpyAgent tool on the Windows Server 2022 machine to monitor the target machine at Use the user account Jason, with the password qwerty, to establish a Remote Desktop Connection with the target system. Which option will enable you to configure SpyTech Spy Agent to run in the total stealth mode, with all possible logging options preconfigured?
Complete + Stealth Configuration
Stealth Mode
Hide Files using NTFS Streams
In the Windows Server 2019 machine, use NTFS Streams to hide calc.exe inside the readme.txt file. Flag submission is not required for this task, enter "No flag" as the answer.
No flag
Hide Data using White Space Stegnography
On the Windows 11 machine, hide data into a text file using the whitespace steganography tool Snow. Flag submission is not required for this task, enter "No flag" as the answer.
No flag
Hide message
Unhide message
Image Stegnography
On the Windows Server 2019 machine, hide text inside an image using the OpenStego tool. Flag submission is not required for this task, enter "No flag" as the answer.
No flag
Maintain Persistence
Exploit a misconfigured startup folder to gain privileged access and persistence on the Windows 11 machine. What is the command used in this task to elevate previleges in this task?
Main Domain Persistence
Exploit Active Directory Objects and adding Martin a standard user in Windows Server 2022, to Domain Admins group through AdminSDHolder. Enter the name of the user that is added into Domain Admins group in this task.
Privilege Escalation and Maintain Persistence
Exploit WMI event subscription to gain persistent access to the Windows 11 machine. Enter the server username that is acquired after exploiting the WMI event subscription.
Covert Channels
From the Parrot Security machine, navigate to CEHv12 Module 06 System Hacking\Covering Tracks Tools\Covert_TCP on the machine at and copy the file covert_tcp.c. Compile the code in covert_tcp.c to create a covert TCP channel between the Parrot Security machine ( and the Ubuntu machine at For the Windows 11 machine, the username is Admin, and the password is Pa$$w0rd. Flag submission is not required for this task, enter "No flag" as the answer.
No flag
Start Listener
Sender Side
Clear Logs and Hide Evidence
View, Enable, and Clear Audit Policies
On the Windows 11 machine, use Auditpol to enable or disable security auditing on local or remote systems and to adjust the audit criteria for different categories of security events. Which command is used to clear the audit policies?
Clear Windows Machine Logs
In the Windows 11 machine, use various Windows utilities such as Clear_Event_Viewer_Logs.bat, wevtutil, and Cipher to clear system logs. Which wevtutil command will clear all system logs (enter the complete command as the answer)?
Clear Linux Machine Logs
In the Parrot Security machine, clear the Linux machine event logs using the Bash shell. Which command will disable the Bash shell from saving the history?
Hiding Artifacts in Windows and Linux
Use various commands to hide file in Windows and Linux machines. Enter the name of the user that is added in Windows 11 machine in this task.
Hide Folder
Unhide Folder
Create New User
Hide User Account
Use various commands to hide file in Windows and Linux machines. Enter the name of the text file that is hidden in Parrot Security machine in this task.
Hide File in Linux
Clear Windows Machine Logs
In the Windows 11 machine, use the CCleaner tool located at E:\CEH-Tools\CEHv12 Module 06 System Hacking\Covering Tracks Tools\CCleaner to remove unused files and traces of Internet browsing details. Flag submission is not required for this task, enter "No flag" as the answer.
No flag
Last updated
Was this helpful?