Blocking Malware and Other Attacks Flashcards

1
Q

What 4 common security controls can protect against malware?

A

1) spam filter on mail gateway
2) anti-malware on mail gateway
3) hosts/server anti-malware
4) boundary security devices - firewalls or UTMs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What must admins be aware to do when downloading and installing signature files manually?

A

they should compare the hash of signature file on the anti-virus site with the hash of the downloaded file

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How does heuristic-based analysis detect polymorphic malware?

A

by checking for variations in copies of applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

what malware protection mechanism prevents malware from executing code in certain regions of memory? Where would you enable it?

A

Data Execution Prevention

Enabled in the BIOS or UEFI (the newer replacement of the BIOS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

In a well setup network, on what devices would find spam filters?

A

1) on UTMs
2) On email gateways
3) On user’s email clients
All 3 together!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly