A security analyst is reviewing an IDS alert and sees the following: C:WindowsSystem32WindowsPowershellv1.0powershell.exe -noP -exe byPass -nonI -wind hidden -no1 -c dir; ndstr /s maldinuv %USERPROFILE%\*.lnk > %USERPROFILE%Documentsiijlqe.ps1;%USERPROFILE%Documentsiijlqe.psi;exit Which of the following triggered the IDS alert?

QuestionsCategory: SY0-601A security analyst is reviewing an IDS alert and sees the following: C:WindowsSystem32WindowsPowershellv1.0powershell.exe -noP -exe byPass -nonI -wind hidden -no1 -c dir; ndstr /s maldinuv %USERPROFILE%\*.lnk > %USERPROFILE%Documentsiijlqe.ps1;%USERPROFILE%Documentsiijlqe.psi;exit Which of the following triggered the IDS alert?
Admin Staff asked 12 months ago
A security analyst is reviewing an IDS alert and sees the following:
C:WindowsSystem32WindowsPowershellv1.0powershell.exe -noP -exe byPass -nonI -wind hidden -no1 -c dir; ndstr /s maldinuv %USERPROFILE%\*.lnk > %USERPROFILE%Documentsiijlqe.ps1;%USERPROFILE%Documentsiijlqe.psi;exit
Which of the following triggered the IDS alert?

A. Bluesnar ng attack

B. URL redirection attack

C. Fileless malware execution

D. Macro-based denial of service





 

Correct Answer: C

This question is in SY0-601 exam
For getting CompTIA Security+ certificate


Next Post

Recommended

Welcome Back!

Login to your account below

Create New Account!

Fill the forms below to register

Retrieve your password

Please enter your username or email address to reset your password.