Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

VMware Exam 5V0-93.22 Topic 1 Question 13 Discussion

Actual exam question for VMware's 5V0-93.22 exam
Question #: 13
Topic #: 1
[All 5V0-93.22 Questions]

An administrator wants to prevent malicious code that has not been seen before from retrieving credentials from the Local Security Authority Subsystem Service, without causing otherwise good applications from being blocked.

Which rule should be used?

Show Suggested Answer Hide Answer
Suggested Answer: A, E, F

Contribute your Thoughts:

Lorean
22 days ago
Option B seems too broad. I don't want to risk shutting down every .exe file on the system. Let's go with the more targeted approach in Option C.
upvoted 0 times
Rosalind
2 days ago
User 2: Rosalind is right, let's go with the more targeted approach in Option C.
upvoted 0 times
...
Lou
4 days ago
User 1: I agree, Option B does seem too broad.
upvoted 0 times
...
...
Samira
1 months ago
Ha! I bet the person who wrote this question has a great sense of humor. 'Scrapes memory of another process' - that's a classic!
upvoted 0 times
Barb
4 days ago
A) [Unknown application] [Retrieves credentials] [Terminate process]
upvoted 0 times
...
...
Brianne
1 months ago
I'm not sure about that. Wouldn't terminating the process be a bit too harsh? Maybe we could try a less drastic approach first.
upvoted 0 times
Tiara
20 days ago
User 1: Maybe we should try denying the operation instead of terminating the process.
upvoted 0 times
...
...
Gracia
2 months ago
Option C looks good to me. Denying the operation to lsass.exe seems like the best way to prevent the malicious code without blocking legitimate applications.
upvoted 0 times
Karol
14 days ago
Yes, denying the operation to lsass.exe specifically targets the potential threat while allowing other applications to function normally.
upvoted 0 times
...
Karol
1 months ago
I agree, option C seems like the most effective way to prevent malicious code without causing issues for good applications.
upvoted 0 times
...
...
Meghann
2 months ago
Because it specifically targets lsass.exe, which is where credentials are stored.
upvoted 0 times
...
Bev
2 months ago
Why do you think that?
upvoted 0 times
...
Meghann
2 months ago
I think the answer is C.
upvoted 0 times
...

Save Cancel