Here you can find all the free questions related with CrowdStrike Certified Falcon Administrator (CCFA-200b) exam. You can also find on this page links to recently updated premium files with which you can practice for actual CrowdStrike Certified Falcon Administrator Exam. These premium versions are provided as CCFA-200b exam practice tests, both as desktop software and browser based application, you can use whatever suits your style. Feel free to try the CrowdStrike Certified Falcon Administrator Exam premium files for free, Good luck with your CrowdStrike Certified Falcon Administrator Exam.
Question No: 1
MultipleChoice
Which of the following prevention policy settings monitors contents of scripts and shells for execution of malicious content on compatible operating systems?
Options
Answer AExplanation
The prevention policy setting that monitors contents of scripts and shells for execution of malicious content on compatible operating systems is Script-based Execution Monitoring. Script-based Execution Monitoring is a feature that enables the Falcon sensor to monitor and prevent malicious script execution on Windows systems. The feature uses machine learning and behavioral analysis to detect suspicious scripts or commands executed by various script interpreters, such as PowerShell, WScript, CScript, or Bash.You can enable or disable Script-based Execution Monitoring in the Prevention Policy for Windows hosts1.