CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 2,651–2,700 of 5,000 matching questions

50 per page
2651
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2651), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Unsafe analysis can infect production systems or miss dormant behavior.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
2652
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2652), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Unsafe analysis can infect production systems or miss dormant behavior.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
2653
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2653), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Unsafe analysis can infect production systems or miss dormant behavior.
Practice
2654
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a financial-services purple-team test (FIN-PT-M07-2654), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Unsafe analysis can infect production systems or miss dormant behavior.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
2655
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2655), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Unsafe analysis can infect production systems or miss dormant behavior.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
2656
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a government risk-validation project (GOV-RISK-M07-2656), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Unsafe analysis can infect production systems or miss dormant behavior.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
2657
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During an e-commerce application review (ECOM-WEB-M07-2657), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Unsafe analysis can infect production systems or miss dormant behavior.
Practice
2658
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2658), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Unsafe analysis can infect production systems or miss dormant behavior.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
2659
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2659), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Unsafe analysis can infect production systems or miss dormant behavior.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
2660
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2660), which risk is most directly associated with "malware analysis"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Unsafe analysis can infect production systems or miss dormant behavior.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
2661
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2661), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
Practice
2662
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2662), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
2663
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2663), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
2664
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a financial-services purple-team test (FIN-PT-M07-2664), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
2665
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2665), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
Practice
2666
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a government risk-validation project (GOV-RISK-M07-2666), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
2667
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During an e-commerce application review (ECOM-WEB-M07-2667), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
2668
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2668), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
2669
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2669), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
Practice
2670
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2670), which action most directly controls the risk related to "malware analysis"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Use isolated sandboxes, snapshots, controlled networking, and multiple analysis methods.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
2671
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2671), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. A report correlating file structure, runtime behavior, persistence, and network indicators.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
2672
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2672), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. A report correlating file structure, runtime behavior, persistence, and network indicators.
Practice
2673
Module 7 · Foundation Domain 2 · Analysis / Assessment malware analysis Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2673), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. A report correlating file structure, runtime behavior, persistence, and network indicators.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
2674
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a financial-services purple-team test (FIN-PT-M07-2674), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. A report correlating file structure, runtime behavior, persistence, and network indicators.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
2675
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2675), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. A report correlating file structure, runtime behavior, persistence, and network indicators.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
2676
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During a government risk-validation project (GOV-RISK-M07-2676), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Timestamped probe logs matched to the approved source and scope.
  4. A report correlating file structure, runtime behavior, persistence, and network indicators.
Practice
2677
Module 7 · Applied Domain 2 · Analysis / Assessment malware analysis Unanswered

During an e-commerce application review (ECOM-WEB-M07-2677), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. A report correlating file structure, runtime behavior, persistence, and network indicators.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
2678
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2678), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Timestamped probe logs matched to the approved source and scope.
  3. A report correlating file structure, runtime behavior, persistence, and network indicators.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
2679
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2679), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. A report correlating file structure, runtime behavior, persistence, and network indicators.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
2680
Module 7 · Advanced Domain 2 · Analysis / Assessment malware analysis Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2680), which evidence best supports an assessment of "malware analysis"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. A report correlating file structure, runtime behavior, persistence, and network indicators.
Practice
2681
Module 7 · Foundation Domain 3 · Security anti-malware control Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2681), which statement most accurately defines "anti-malware control"?

View answer choices
  1. A preventive and detective control that identifies malicious files or behaviors.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2682
Module 7 · Foundation Domain 3 · Security anti-malware control Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2682), which statement most accurately defines "anti-malware control"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. A preventive and detective control that identifies malicious files or behaviors.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
2683
Module 7 · Foundation Domain 3 · Security anti-malware control Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2683), which statement most accurately defines "anti-malware control"?

View answer choices
  1. A preventive and detective control that identifies malicious files or behaviors.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2684
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During a financial-services purple-team test (FIN-PT-M07-2684), which statement most accurately defines "anti-malware control"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. A preventive and detective control that identifies malicious files or behaviors.
Practice
2685
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2685), which statement most accurately defines "anti-malware control"?

View answer choices
  1. A preventive and detective control that identifies malicious files or behaviors.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2686
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During a government risk-validation project (GOV-RISK-M07-2686), which statement most accurately defines "anti-malware control"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. A preventive and detective control that identifies malicious files or behaviors.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
2687
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During an e-commerce application review (ECOM-WEB-M07-2687), which statement most accurately defines "anti-malware control"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. A preventive and detective control that identifies malicious files or behaviors.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2688
Module 7 · Advanced Domain 3 · Security anti-malware control Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2688), which statement most accurately defines "anti-malware control"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. A preventive and detective control that identifies malicious files or behaviors.
Practice
2689
Module 7 · Advanced Domain 3 · Security anti-malware control Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2689), which statement most accurately defines "anti-malware control"?

View answer choices
  1. A preventive and detective control that identifies malicious files or behaviors.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2690
Module 7 · Advanced Domain 3 · Security anti-malware control Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2690), which statement most accurately defines "anti-malware control"?

View answer choices
  1. A preventive and detective control that identifies malicious files or behaviors.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2691
Module 7 · Foundation Domain 3 · Security anti-malware control Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2691), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2692
Module 7 · Foundation Domain 3 · Security anti-malware control Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2692), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2693
Module 7 · Foundation Domain 3 · Security anti-malware control Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2693), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
Practice
2694
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During a financial-services purple-team test (FIN-PT-M07-2694), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2695
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2695), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2696
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During a government risk-validation project (GOV-RISK-M07-2696), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2697
Module 7 · Applied Domain 3 · Security anti-malware control Unanswered

During an e-commerce application review (ECOM-WEB-M07-2697), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
Practice
2698
Module 7 · Advanced Domain 3 · Security anti-malware control Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2698), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2699
Module 7 · Advanced Domain 3 · Security anti-malware control Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2699), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2700
Module 7 · Advanced Domain 3 · Security anti-malware control Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2700), which risk is most directly associated with "anti-malware control"?

View answer choices
  1. Outdated or narrowly configured protection can miss packed, fileless, or new malware.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice