
GIAC Certified Enterprise Defender
Domain 3Objective 2
Interactive and Manual Malware Analyses GCED Practice Questions (Page 11)
Part of the Malware Analysis domain, which makes up ~19% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~13–23 in this domain), expect 7–12 from this objective — we provide 54 practice questions to prepare you well beyond it. (estimate)
54questions here
11free pages
11concepts
Questions 51–54
- 51
Which of the following is a manual inspection method used to examine malware code?
Select an answer first - 52
A malware analyst needs to analyze a sample that uses a known vulnerability to escalate privileges and then attempts to spread across the network. The analyst has a single analysis workstation with a hypervisor and a limited number of VMs. The analyst must observe the malware's propagation attempts without risking the corporate network. Which approach best balances safety and observability?
Select an answer first - 53
Which practice is essential for a safe malware analysis environment?
Select an answer first - 54
An analyst is examining a suspicious document that contains an embedded macro. The analyst wants to manually inspect the macro code without executing it. Which approach is most appropriate?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GCED
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCED” is a trademark of its owner, used for identification only.