Which of the following would be the BEST way to analyze diskless malware that has infected a VDI?

QuestionsCategory: SY0-601Which of the following would be the BEST way to analyze diskless malware that has infected a VDI?
Admin Staff asked 12 months ago
Which of the following would be the BEST way to analyze diskless malware that has infected a VDI?

A. Shut down the VDI and copy off the event logs.

B. Take a memory snapshot of the running system.

C. Use NetFlow to identify command-and-control IPs.

D. Run a full on-demand scan of the root volume.





 

Correct Answer: B

This question is in SY0-601 exam
For getting CompTIA Security+ certificate


Next Post

Recommended

Welcome Back!

Login to your account below

Create New Account!

Fill the forms below to register

Retrieve your password

Please enter your username or email address to reset your password.