Which category describes systems that are currently running malware?

Prepare for the SANS FOR508 Exam. Use flashcards and multiple-choice questions, each with hints and explanations. Maximize your readiness for the test!

Multiple Choice

Which category describes systems that are currently running malware?

Explanation:
The key idea is distinguishing by whether the malware is actively executing on a host. When malware is currently running, the system is described as having active malware. Dormant malware is present but not executing, and Living off the Land refers to attackers using legitimate tools rather than indicating the malware’s running state. Isolated systems describe containment status and can be either clean or infected, but isolation doesn’t imply malware is actively running. So the description for systems where malware is actually running is the one with active malware.

The key idea is distinguishing by whether the malware is actively executing on a host. When malware is currently running, the system is described as having active malware. Dormant malware is present but not executing, and Living off the Land refers to attackers using legitimate tools rather than indicating the malware’s running state. Isolated systems describe containment status and can be either clean or infected, but isolation doesn’t imply malware is actively running. So the description for systems where malware is actually running is the one with active malware.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy