CompTIA Server+ SK0-005 Practice Question

A server administrator is investigating anomalous activity on multiple web servers. Analysis of system logs reveals that malicious, unsigned PowerShell scripts are being executed directly in memory, a technique characteristic of fileless malware. The currently installed anti-malware solution, which is configured for signature-based detection, has not raised any alerts. To mitigate this specific type of threat across the server fleet, which of the following host security methods should the administrator implement?

  • Increase the frequency of full disk scans using the signature-based anti-malware.

  • Implement a host-based firewall rule to block the PowerShell executable.

  • Enable behavioral-based detection and memory scanning in the host security software.

  • Deploy a network intrusion detection system (NIDS) to monitor traffic to and from the servers.

CompTIA Server+ SK0-005
Security and Disaster Recovery
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $47
$390.00 $343.00
SAVE $53
CompTIA Server+ Voucher with Retake
v5 / SK0-005
Includes Retake
$439.00 $386.00
Bash, the Crucial Exams Chat Bot
AI Bot