What protection technology should an administrator enable to prevent double executable file names of ransomware variants like Cryptolocker from running?
What protection technology should an administrator enable to prevent double executable file names of ransomware variants like Cryptolocker from running?
A . Download Insight
B . Intrusion Prevention System
C . SONAR
D . Memory Exploit Mitigation
Answer: C
Explanation:
To prevent ransomware variants, such as Cryptolocker, from executing with double executable file names, an administrator should enable SONAR (Symantec Online Network for Advanced Response). SONAR detects and blocks suspicious behaviors based on file characteristics and real-time monitoring, which is effective in identifying malicious patterns associated with ransomware. By analyzing unusual behaviors, such as double executable file names, SONAR provides proactive protection against ransomware threats before they can cause harm to the system.
Latest 250-580 Dumps Valid Version with 150 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund