Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Ruby continued to look through her security logs . Before the previous command was executed, the following script was executed: Add - MpPreference - ExclusionExtension

Ruby continued to look through her security logs. Before the previous command was executed, the following script was executed:
Add-MpPreference -ExclusionExtension ".dll",".cmd",".bat", ".zip", ".exe"
Add-MpPreference -ExclusionPath "C:\Windows\System32\drivers\etc","C:\Windows\System32\Config","$env:APPDATA"
Add-MpPreference -ExclusionProcess "Zeip.dll", "Zeip.exe"
Use this information to answer the following 5 questions:
Question 13
Not yet answered
Points out of 1.00
Not flaggedFlag question
Question text
What is the purpose of the -ExclusionPath parameter?
Select one:
To list all the excluded paths in the security logs
To delete specific directories from the system
To exclude specific directories from being accessed by the script
To add specific directories to the exclusion list for scanning
Question 14
Not yet answered
Points out of 1.00
Not flaggedFlag question
Question text
What security tool is the script modifying?
Select one:
ClamAV
Microsoft Defender
Norton Antivirus
Symantec End-user Endpoint Security
Question 15
Not yet answered
Points out of 1.00
Not flaggedFlag question
Question text
Which native tool is being used to modify the security tool?
Select one:
Bash
PowerShell
Python
ConEmu
Question 16
Not yet answered
Points out of 1.00
Not flaggedFlag question
Question text
Ruby is still correlating logs to determine the source IP address. What should Ruby's next steps be?
Select one:
Identify the infected system and collect more forensic evidence
Contain infection, alert all consumers, and rebuild network
Do nothing, this script is fine
Quarantine the infected system
Question 17
Not yet answered
Points out of 1.00
Not flaggedFlag question
Question text
Which process(es) were added to the exclusion list?
Select one:
Zeip.exe
Zeip.zip
Zeip.exe & Zeip.dll
Zeip.bat
image text in transcribed

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Machine Learning And Knowledge Discovery In Databases European Conference Ecml Pkdd 2010 Barcelona Spain September 2010 Proceedings Part 2 Lnai 6322

Authors: Jose L. Balcazar ,Francesco Bonchi ,Aristides Gionis ,Michele Sebag

2010th Edition

364215882X, 978-3642158827

More Books

Students also viewed these Databases questions