PCNSA · Question #353
Which profile must be applied to the Security policy rule to block spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers?
The correct answer is A. Anti-spyware. Anti-Spyware profiles blocks spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers, allowing you to detect malicious traffic leaving the network from infected clients…
Question
Which profile must be applied to the Security policy rule to block spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers?
Options
- AAnti-spyware
- BFile blocking
- CWildFire
- DURL filtering
How the community answered
(27 responses)- A89% (24)
- B7% (2)
- D4% (1)
Explanation
Anti-Spyware profiles blocks spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers, allowing you to detect malicious traffic leaving the network from infected clients. https://docs.paloaltonetworks.com/network-security/security-policy/security-profiles/security- profile-anti-spyware
Topics
Community Discussion
No community discussion yet for this question.