
CrowdStrikeCertified Cloud Specialist (CCCS)
Domain 6Objective 2
6.2 Identify Suspicious/malicious Activity (IOAs) and Associated Persistence Mechanisms CCCS Practice Questions (Page 3)
Part of the Findings and Detection Analysis domain, which makes up ~22% of our current practice bank.
38questions here
8free pages
10concepts
Questions 11–15
- 11
An analyst is investigating a host where a legitimate application was replaced with a malicious binary. The malicious binary runs every time the system starts. Which persistence mechanism is most likely being used, and what is the best way to confirm it?
Select an answer first - 12
Which statement best describes an Indicator of Attack (IOA)?
Select an answer first - 13
What is a script-based persistence mechanism?
Select an answer first - 14
What is the primary focus of an Indicator of Attack (IOA) compared to an Indicator of Compromise (IOC)?
Select an answer first - 15
Which of the following is a common persistence mechanism?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCCS” is a trademark of its owner, used for identification only.