Which three statements are true from the results shown?

An Endpoint Standard analyst runs the query in the graphic below:

Which three statements are true from the results shown? (Choose three.)
A . The process is a PowerShell process running a script with a .ps1 extension.
B . The process has a threat score greater than 4.
C . The process made a network connection to another system.
D . The process had a NOT_LISTED reputation at the time the event occurred.
E . The process was run under the NT_AUTHORITYSYSTEM user context.
F . The process was able to inject code into another process.

Answer: A,D,F

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments