GSNA · Question #195
You work as a professional Ethical Hacker. You are assigned a project to test the security of You suspect that your friend has installed the keyghost keylogger onto your computer. Which of the…
The correct answer is A. Use commercially available anti-keyloggers such as PrivacyKeyboard. B. Use on-screen keyboards and speech-to-text conversion software which can also be useful D. Monitor the programs running on the server to see whether any new process is running on the. It is very hard to detect a keylogger's activity. Hence, a Network Administrator should take the following steps as countermeasures against software keyloggers: Actively monitor the programs running on the server. Monitor the network whenever an application attempts to make a…
Question
You work as a professional Ethical Hacker. You are assigned a project to test the security of You suspect that your friend has installed the keyghost keylogger onto your computer. Which of the following countermeasures would you employ in such a situation?
Options
- AUse commercially available anti-keyloggers such as PrivacyKeyboard.
- BUse on-screen keyboards and speech-to-text conversion software which can also be useful
- CRemove the SNMP agent or disable the SNMP service.
- DMonitor the programs running on the server to see whether any new process is running on the
How the community answered
(34 responses)- A79% (27)
- C21% (7)
Explanation
It is very hard to detect a keylogger's activity. Hence, a Network Administrator should take the following steps as countermeasures against software keyloggers: Actively monitor the programs running on the server. Monitor the network whenever an application attempts to make a network connection. Use commercially available anti-keyloggers, such as PrivacyKeyboard. Update one's antivirus regularly. Use on-screen keyboards and speech-to-text conversion software which can also be useful against keyloggers, as there are no typing or mouse movements involved. Answer: C is incorrect. An SNMP service is not used for keystroke logging. Hence, removing an SNMP agent may be a valid option if, and only if, the server is vulnerable to SNMP enumeration.
Topics
Community Discussion
No community discussion yet for this question.