List of questions
Related questions
Question 168 - CS0-003 discussion
A SIEM alert is triggered based on execution of a suspicious one-liner on two workstations in the organization's environment. An analyst views the details of these events below:
Which of the following statements best describes the intent of the attacker, based on this one-liner?
A.
Attacker is escalating privileges via JavaScript.
B.
Attacker is utilizing custom malware to download an additional script.
C.
Attacker is executing PowerShell script 'AccessToken.psr.
D.
Attacker is attempting to install persistence mechanisms on the target machine.
Your answer:
0 comments
Sorted by
Leave a comment first