Independence Day Deal! Unlock 25% OFF Today – Limited-Time Offer - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Logical Operations Exam CFR-210 Topic 3 Question 33 Discussion

Actual exam question for Logical Operations's CFR-210 exam
Question #: 33
Topic #: 3
[All CFR-210 Questions]

A UNIX workstation has been compromised. The security analyst discovers high CPU usage during off-hours on the workstation. Which of the following UNIX programs can be used to detect the rogue process? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Maryann
1 months ago
If the rogue process is really good, it might even disguise itself as top to throw off the security analyst. Better bring some garlic and silver bullets just in case.
upvoted 0 times
...
Ernie
1 months ago
C) who? Sure, that'll tell me who's logged in, but it won't show me what's hogging the CPU. I need tools that actually monitor processes.
upvoted 0 times
Sharika
4 days ago
E) top is another useful tool to monitor processes and CPU usage.
upvoted 0 times
...
Malcolm
8 days ago
B) ps is a good option to check running processes and CPU usage.
upvoted 0 times
...
Muriel
10 days ago
A) arp? No, that won't help us detect the rogue process.
upvoted 0 times
...
...
Karan
2 months ago
D) dd? What, is the rogue process going to try and copy the whole hard drive? Hilarious!
upvoted 0 times
Luisa
15 days ago
E) top is also a good choice, it provides a dynamic real-time view of running processes.
upvoted 0 times
...
Arlyne
19 days ago
B) ps is the correct option, it shows information about processes running on the system.
upvoted 0 times
...
Elouise
29 days ago
A) arp is used for address resolution protocol, not for detecting rogue processes.
upvoted 0 times
...
...
Stefan
2 months ago
A) arp? Really? That's for network address resolution, not process monitoring. This exam question is trying to trick us.
upvoted 0 times
Jaime
2 days ago
A) arp is definitely not the right choice here. It's used for mapping IP addresses to MAC addresses.
upvoted 0 times
...
Paris
4 days ago
E) top is another good choice. It provides a dynamic real-time view of running processes.
upvoted 0 times
...
Val
25 days ago
B) ps is definitely one of the options we should consider. It shows information about processes running on the system.
upvoted 0 times
...
Helene
29 days ago
C) who is for displaying information about users, not processes. We should focus on ps and top.
upvoted 0 times
...
Georgeanna
1 months ago
A) arp is definitely not the right choice here. It's for network address resolution, not process monitoring.
upvoted 0 times
...
Darrin
1 months ago
E) top is another good choice. It provides a dynamic real-time view of running processes.
upvoted 0 times
...
France
2 months ago
B) ps is definitely one of the options we should choose. It shows running processes.
upvoted 0 times
...
...
Cherry
2 months ago
I'm not sure about E) top. I think C) who can also be used to check for rogue processes.
upvoted 0 times
...
Curtis
2 months ago
B) ps and E) top are the correct answers. They can help identify high CPU usage and running processes on the system.
upvoted 0 times
Franchesca
1 months ago
Yeah, and we can also use top to see which process is using the most CPU.
upvoted 0 times
...
Katy
1 months ago
I think we should use ps to check for running processes.
upvoted 0 times
...
...
Sueann
2 months ago
I agree with Ronnie. Ps can show the running processes and top can display the CPU usage.
upvoted 0 times
...
Ronnie
2 months ago
I think the answer is B) ps and E) top.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77