CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 27: CCFH-202B: CrowdStrike Certified Falcon Hunter

Which action helps identify an enterprise-wide file infection?

Nội dung câu hỏi

Which action helps identify an enterprise-wide file infection?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Utilize the IP addresses Investigate dashboard to find the hosts processes that are connecting to an unusual IP
  2. B. Monitor the Falcon Console for alerts on suspicious process activity
  3. C. Utilize CrowdStrike Query Language (CQL) to search for files with specific hashes or attributes — đáp án hiện tại
  4. D. Analyze the Investigate Host dashboard to identify endpoints with high-risk file activity

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề