200-201 Exam Question 86

A malicious file has been identified in a sandbox analysis tool.

Which piece of information is needed to search for additional downloads of this file by other hosts?
  • 200-201 Exam Question 87

    Drag and drop the definition from the left onto the phase on the right to classify intrusion events according to the Cyber Kill Chain model.

    200-201 Exam Question 88


    Refer to the exhibit. A network engineer received a report that a host is communicating with unknown domains on the internet. The network engineer collected packet capture but could not determine the technique or the payload used. What technique is the attacker using?
  • 200-201 Exam Question 89

    Which two protocols are used for DDoS amplification attacks? (Choose two.)
  • 200-201 Exam Question 90

    Refer to the exhibit.

    What is occurring in this network traffic?