CS0-002 Exam Question 81

A security analyst is reviewing vulnerability scan results and notices new workstations are being flagged as having outdated antivirus signatures. The analyst observes the following plugin output:
Antivirus is installed on the remote host:
Installation path: C:\Program Files\AVProduct\Win32\
Product Engine: 14.12.101
Engine Version: 3.5.71
Scanner does not currently have information about AVProduct version 3.5.71. It may no longer be supported.
The engine version is out of date. The oldest supported version from the vendor is 4.2.11.
The analyst uses the vendor's website to confirm the oldest supported version is correct.
Which of the following BEST describes the situation?
  • CS0-002 Exam Question 82

    Following a recent security breach, a company decides to investigate account usage to ensure privileged accounts are only being utilized during typical business hours. During the investigation, a security analyst determines an account was consistently utilized in the middle of the night.
    Which of the following actions should the analyst take NEXT?
  • CS0-002 Exam Question 83

    After a remote command execution incident occurred on a web server, a security analyst found the following piece of code in an XML file:

    Which of the following it the BEST solution to mitigate this type of attack?
  • CS0-002 Exam Question 84

    The security team decides to meet informally to discuss and test the response plan for potential security breaches and emergency situations. Which of the following types of training will the security team perform?
  • CS0-002 Exam Question 85

    A company wants to establish a threat-hunting team. Which of the following BEST describes the rationale for integration intelligence into hunt operations?