Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Palo Alto Networks Exam PSE-Endpoint Topic 1 Question 42 Discussion

Actual exam question for Palo Alto Networks's PSE-Endpoint exam
Question #: 42
Topic #: 1
[All PSE-Endpoint Questions]

An administrator has decided to test Traps functionality using malware samples in an isolated non-production environment. In order to effectively test Traps, what three types of samples should the administrator avoid? (Choose three.)

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

Arlie
2 months ago
Wait, we're not supposed to use samples that are already known to be bad? Where's the fun in that?
upvoted 0 times
...
Emogene
2 months ago
False positives in production? No, thanks. I'd rather not get that phone call from the boss.
upvoted 0 times
Bethanie
1 months ago
E) A sample known to generate false positives in the production environment.
upvoted 0 times
...
Lisha
1 months ago
B) An MS Office document which contains a ransomware macro
upvoted 0 times
...
Willard
2 months ago
A) A sample with a low number of hits in Virus Total
upvoted 0 times
...
...
Taryn
2 months ago
A freeware video app that spawns malicious processes? Sounds like a party! Let's do it!
upvoted 0 times
Kip
27 days ago
User 3: We should also steer clear of the sample known to generate false positives in the production environment.
upvoted 0 times
...
Adaline
30 days ago
User 2: Yeah, that one won't really test Traps effectively.
upvoted 0 times
...
Rana
2 months ago
User 1: Let's avoid the sample with a low number of hits in Virus Total.
upvoted 0 times
...
...
Hyman
3 months ago
A sample known to be flagged as grayware by Traps? Nah, that's too easy. Where's the challenge?
upvoted 0 times
Arlette
3 months ago
User 2: Yeah, we need to test with more complex samples to really see how Traps performs.
upvoted 0 times
...
Linn
3 months ago
User 1: A sample known to be flagged as grayware by Traps? Nah, that's too easy. Where's the challenge?
upvoted 0 times
...
...
Vallie
3 months ago
The ransomware macro in the MS Office document is a definite no-go. That's just asking for trouble, even in a non-production environment.
upvoted 0 times
...
Kirk
3 months ago
I'd avoid the sample with a low number of hits on VirusTotal. That's probably not a good test case.
upvoted 0 times
Lonna
2 months ago
Let's make sure to avoid the MS Office document which contains a ransomware macro too.
upvoted 0 times
...
Kimberely
2 months ago
I think we should avoid the freeware video application which spawns malicious processes as well.
upvoted 0 times
...
Lilli
2 months ago
We should also steer clear of the sample known to generate false positives in the production environment.
upvoted 0 times
...
Oliva
2 months ago
I agree, we should definitely avoid the sample with a low number of hits on VirusTotal.
upvoted 0 times
...
...
Hyman
3 months ago
I think we should avoid samples flagged as grayware by Traps as well.
upvoted 0 times
...
Arlene
3 months ago
I agree, we should also avoid samples known to generate false positives.
upvoted 0 times
...
Alaine
4 months ago
I think we should avoid samples with low hits in Virus Total.
upvoted 0 times
...

Save Cancel