CrowdStrike Related Exams
CCFH-202b Exam
You get a detection for a malicious PowerShell script with the process flow below:
Unknown Process - > chrome.exe - > wscript.exe - > powershell.exe Which process should you investigate further to identify the source of the script?
Which document can reference any searchable event and its description?
What can a hunter add at the end of a search string in Advanced Event Search to identify outliers when quantifying the results?