200-201 Host-Based Analysis • Set 4
200-201 Host-Based Analysis Practice Test 4 — 15 questions with explanations. Free, no signup.
A security analyst is investigating a Linux server that is suspected of being compromised. The analyst runs 'ps aux' and notices a process with a suspicious name running as root. The analyst wants to gather more information about this process to determine if it is malicious. Which TWO commands should the analyst use to examine the process's open files and its parent process ID? (Choose two.)
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.