Free CompTIA CySA+ CS0-003 Practice Question

An analyst is reviewing a system's task scheduler and notices a newly added task that launches a script at midnight daily. Upon further investigation, it is found that the script is obfuscated and has no documentation regarding its purpose. To determine if this task is benign or should be elevated as a security incident, which of the following actions would BEST establish the legitimacy of the scheduled task?

  • Review the account that created the scheduled task for any correlations with other known user activities.

  • Analyze the script's code and behavior in a sandbox environment.

  • Inspect the scheduling pattern to check for consistency with other administrative tasks.

  • Monitor resource utilization during the task's operation to identify any abnormal consumption patterns.

This question's topic:
CompTIA CySA+ CS0-003 / 
Security Operations
Your Score:

Check or uncheck an objective to set which questions you will receive.