اختبار شهادة محلل الأمن السيبراني CompTIA CySA+

السؤال 420 من 1040

كل الأسئلة

A list of IOCs released by a government security organization contains the SHA-256 hash for a Microsoft-signed legitimate binary, svchost.exe. Which of the following best describes the result if security teams add this indicator to their detection signatures?

الخيارات

  • A This indicator would fire on the majority of Windows devices.
  • B Malicious files with a matching hash would be detected.
  • C Security teams would detect rogue svchost.exe processes in their environment.
  • D Security teams would detect event entries detailing execution of known-malicious svchost.exe processes.

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.