Unit2 - Subjective Questions

CSC104 • Practice Questions with Detailed Answers

1

Distinguish between Local User Accounts and Domain User Accounts in the context of Windows User Management.

2

Explain the concept of Windows Authentication with a focus on NTLM and Kerberos protocols.

3

Compare Share Permissions and NTFS Permissions. How do they interact when both are applied?

4

Define Access Control Lists (ACLs) in Windows and differentiate between DACL and SACL.

5

Describe the function of User Account Control (UAC) and why it is critical for Windows security.

6

Explain the role of Windows Defender in a modern Windows environment.

7

Describe the Windows Firewall and explain the three network profiles associated with it.

8

Briefly explain the roles of DNS and DHCP in Windows Networking.

9

What is the SMB (Server Message Block) protocol, and why is it significant in Windows networking?

10

Discuss Remote Desktop Protocol (RDP). How does it function and what are the security risks associated with it?

11

What is PsExec? Describe its utility in remote administration and its security implications.

12

Explain the structure and purpose of the Microsoft Management Console (MMC).

13

Describe the Services.msc console and the different Startup Types for a Windows Service.

14

Explain the hierarchy of Group Policy Object (GPO) processing in a Windows Domain environment.

15

Describe the Windows Event Viewer and list the three primary types of logs found in it.

16

What are Audit Policies in Windows Security? Give examples of events that should be audited.

17

Explain how Scheduled Tasks work in Windows and how they can be used for persistence by attackers.

18

Describe the usage of whoami and ipconfig commands for basic reconnaissance.

19

Analyze the utility of netstat and tasklist in identifying suspicious activity on a Windows host.

20

What are Startup Items? Where are they located in the Registry and file system?