exam questions

Exam CCFA All Questions

View all questions & answers for the CCFA exam

Exam CCFA topic 1 question 246 discussion

Actual exam question from CrowdStrike's CCFA
Question #: 246
Topic #: 1
[All CCFA Questions]

Which prevention policy setting monitors contents of scripts and shells for execution of malicious content?

  • A. FileSystem Visibility
  • B. Engine (Full Visibility)
  • C. Script-based Execution Monitoring
  • D. Suspicious Scripts and Commands
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CiscoNoahexamtopic
1 week, 6 days ago
Selected Answer: C
C is correct Turn on the Script-Based Execution Visibility prevention policy setting to enable the Falcon sensor to monitor the contents of scripts and shells that are popular mechanisms for executing malicious code on hosts. This setting doesn't kill or block scripts.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...