CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 31 Topic 4 Discussion

CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 31 Topic 4 Discussion

CS0-003 Exam Topic 4 Question 31 Discussion:
Question #: 31
Topic #: 4

A security analyst is reviewing the following alert that was triggered by FIM on a critical system:

CS0-003 Question 31

Which of the following best describes the suspicious activity that is occurring?


A.

A fake antivirus program was installed by the user.


B.

A network drive was added to allow exfiltration of data


C.

A new program has been set to execute on system start


D.

The host firewall on 192.168.1.10 was disabled.


Get Premium CS0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.