List of questions
Related questions
Question 310 - CS0-003 discussion
A list of loCs released by a government security organization contains the SHA-256 hash for a Microsoft-signed legitimate binary, svchost. exe. Which of the following best describes the result if security teams add this indicator to their detection signatures?
A.
This indicator would fire on the majority of Windows devices.
B.
Malicious files with a matching hash would be detected.
C.
Security teams would detect rogue svchost. exe processes in their environment.
D.
Security teams would detect event entries detailing execution of known-malicious svchost. exe processes.
Your answer:
0 comments
Sorted by
Leave a comment first