Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

CCFA-200 Exam Dumps - CrowdStrike Certified Falcon Administrator

Go to page:
Question # 4

Which of the following prevention policy settings monitors contents of scripts and shells for execution of malicious content on compatible operating systems?

A.

Script-based Execution Monitoring

B.

FileSystem Visibility

C.

Engine (Full Visibility)

D.

Suspicious Scripts and Commands

Full Access
Question # 5
A.

Enable Behavior-Based Threat Prevention sliders and Advanced Remediation Actions

B.

Enable Malware Protection and Windows Anti-Malware Execution Blocking

C.

Enable Next-Gen Antivirus Prevention sliders and "Quarantine & Security Center Registration

D.

Enable Malware Protection and Custom Execution Blocking

Full Access
Question # 6

What command should be run to verify if a Windows sensor is running?

A.

regedit myfile.reg

B.

sc query csagent

C.

netstat -f

D.

ps -ef | grep falcon

Full Access
Question # 7

Which of the following is an effective Custom IOA rule pattern to kill any process attempting to access www.badguydomain.com?

A.

.*badguydomain.com.*

B.

\Device\HarddiskVolume2\*.exe -SingleArgument www.badguydomain.com /kill

C.

badguydomain\.com.*

D.

Custom IOA rules cannot be created for domains

Full Access
Question # 8

On a Windows host, what is the best command to determine if the sensor is currently running?

A.

sc query csagent

B.

netstat -a

C.

This cannot be accomplished with a command

D.

ping falcon.crowdstrike.com

Full Access
Go to page: