Ch. 14 Flashcards

1
Q

What type of malware analysis involves the execution of malware to examine its conduct and impact on system resources and network?

A

Dynamic analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a common technique used to distribute malware on the web with tactics such as keyword stuffing, doorway pages, page swapping, and adding unrelated keywords to get higher search-engine ranking for malware pages?

A

Blackhat SEO

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a common technique used to distribute malware on the web by mimicking legitimate institutions in an attempt to steal passwords, credit cards, and bank account data?

A

Spear phishing sites

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a static malware analysis technique that uses unique hash values to help investigators recognize files that are sensitive to tracking and identify similar programs from a database?

A

File fingerprinting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a common technique used to distribute malware on the web when an attacker exploits flaws in browser software to install malware just by merely visiting a webstie?

A

Drive-by downloads

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which type of dynamic malware analysis involves monitoring process, examining event logs, looking for connected ports, examining DNS entries, and other forms of monitoring?

A

Observing runtime behavior

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What tool for Windows shows real-time file system, registry, and process/thread activity and combines the features of two Sysinternals utilities, Filemon and Regmon?

A

Process Monitor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly