200-201 Exam Question 76

Which evasion technique is a function of ransomware?
  • 200-201 Exam Question 77

    An engineer received a ticket to investigate a potentially malicious file detected by a malware scanner that was trying to execute multiple commands. During the initial review, the engineer discovered that the file was created two days prior. Further analyses show that the file was downloaded from a known malicious domain after a successful phishing attempt on an asset owner. At which phase of the Cyber Kill Chain was this attack mitigated?
  • 200-201 Exam Question 78

    An engineer must configure network systems to detect command-and-control communications by decrypting ingress and egress perimeter traffic and allowing network security devices to detect malicious outbound communications. Which technology must be used to accomplish this task?
  • 200-201 Exam Question 79

    Developers must implement tasks on remote Windows environments. They decided to use scripts for enterprise applications through PowerShell. Why does the functionality not work?
  • 200-201 Exam Question 80

    Which type of data must an engineer capture to analyze payload and header information?