nerdexam
EC-Council

EC0-350 · Question #750

On a backdoored Linux box there is a possibility that legitimate programs are modified or trojaned. How is it possible to list processes and uids associated with them in a more reliable manner?

The correct answer is B. Use "lsof". See the full explanation below for the reasoning.

Question

On a backdoored Linux box there is a possibility that legitimate programs are modified or trojaned. How is it possible to list processes and uids associated with them in a more reliable manner?

Options

  • AUse "Is"
  • BUse "lsof"
  • CUse "echo"
  • DUse "netstat"

How the community answered

(54 responses)
  • A
    15% (8)
  • B
    76% (41)
  • C
    6% (3)
  • D
    4% (2)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice