312-50V13 · Question #47
What kind of detection techniques is being used in antivirus software that identifies malware by collecting data from multiple protected systems and instead of analyzing files locally it's made on…
The correct answer is D. Cloud based. Antivirus software that collects data from multiple systems and performs malware analysis remotely in the provider's environment uses cloud-based detection techniques.
Question
Options
- ABehavioral based
- BHeuristics based
- CHoneypot based
- DCloud based
How the community answered
(42 responses)- A5% (2)
- C2% (1)
- D93% (39)
Why each option
Antivirus software that collects data from multiple systems and performs malware analysis remotely in the provider's environment uses cloud-based detection techniques.
Behavioral-based detection monitors program actions for suspicious activities, rather than analyzing files remotely in the cloud.
Heuristics-based detection identifies malware by looking for suspicious code structures or patterns, often done locally, without necessarily relying on remote cloud analysis of collected data.
Honeypot-based detection involves deploying decoy systems to lure and study attackers, not a primary technique for client-side antivirus software detecting malware.
Cloud-based antivirus detection offloads the heavy processing and analysis of suspicious files and data to the security provider's cloud infrastructure, leveraging collective intelligence from a vast user base. This approach allows for rapid identification of new threats by analyzing patterns and behaviors across many systems and providing real-time updates without consuming significant local resources.
Concept tested: Cloud-based antivirus detection
Source: https://learn.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-antivirus/cloud-protection-microsoft-defender-antivirus
Topics
Community Discussion
No community discussion yet for this question.