An attacker tries to replace a file in the file system with a Trojan that contains a payload he has created. The payload has records associated with the file he is uploading. Which of the following will you use to detect the file that is being uploaded by the attacker in the given scenario?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionAdigoptionBtimestompoptionCtheHarvesteroptionDnetstat
Question
An attacker tries to replace a file in the file system with a Trojan that contains a payload he has created. The payload has records associated with the file he is uploading. Which of the following will you use to detect the file that is being uploaded by the attacker in the given scenario?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionAdigoptionBtimestompoptionCtheHarvesteroptionDnetstat
Solution
The best tool to use in this scenario would be option B, timestomp. Timestomp is a tool that can detect changes in file system data, such as the modification, access, and creation times of a file. This can help identify if a file has been replaced or altered, as would be the case with the attacker's Trojan payload.
Similar Questions
Joseph, a security administrator, wants to monitor and make alterations on specific file changes to determine the possibility of system compromise. Which of the following will he use to check for integrity in the given scenario?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionATripwireoptionBwifiphisheroptionCaircrack-ngoptionDEttercap
If you wanted to get access to a file in the file system on a web server, which of these attack techniques might you use?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionAFile scriptingoptionBFile traversaloptionCSQL injectionoptionDCommand injection
Why would someone use a Trojan?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionAIt acts as a malware infrastructure.optionBIt's polymorphic.optionCIt pretends to be something else.optionDIt evades antivirus.
An attacker wants to manipulate log files by deleting the Windows Event Viewer logs. Which of the following will the attacker use?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionAhpingoptionBsmbclientoptionCclearevoptionDmasscan
In an XSS attack, where does the attack actually execute?This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option.optionADatabaseoptionBNone of these optionCBrowseroptionDApplication
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.