Câu 27: CCFH-202B: CrowdStrike Certified Falcon Hunter
Which action helps identify an enterprise-wide file infection?
Nội dung câu hỏi
Which action helps identify an enterprise-wide file infection?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Utilize the IP addresses Investigate dashboard to find the hosts processes that are connecting to an unusual IP
- B. Monitor the Falcon Console for alerts on suspicious process activity
- C. Utilize CrowdStrike Query Language (CQL) to search for files with specific hashes or attributes — đáp án hiện tại
- D. Analyze the Investigate Host dashboard to identify endpoints with high-risk file activity
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.