Which of the following statements are true about rootkits? (Select THREE.)
The latest changes and updates from the administration for this exam.
Latest Update: Jun 15 2026
All questions are working fine.
Which of the following statements are true about rootkits? (Select THREE.)
Select all that apply
A user has attempted to log in twice with the wrong password, and on the third attempt, the user logs in successfully. However, these two failures were not logged in a security log. What is preventing the first two attempts from being logged?
An organization wants to implement configuration control by ensuring that all systems are deployed with the same baseline settings. Which of the following tools could the organization use?
An IDS has provided notification of a potential adverse event. When is an event considered an incident?
What type of DNS record allows a DNS server to resolve IP addresses to host names?
Which of the following best describes a threat event?
Your organization has recently suffered a significant attack on one of its web servers in the DMZ. IT personnel quickly determined that they couldn’t easily fix all the problems. Security personnel removed the server for later analysis in an isolated network and IT personnel re-created the server from an image. What should be done with the knowledge gained by analyzing the removed server?
You are preparing to download a file from a secure website. Your supervisor tells you to verify the hash before you use the downloaded file. Of the following choices, what best describes a hash?
A network is using an anomaly-based IDS. The administrators have modified the network by upgrading and changing some components. What must be done to ensure that the IDS can accurately detect events?
An antivirus program is attempting to detect previously unknown malware. What method of detection is this?