SC-200 Perform threat hunting • Set 11
SC-200 Perform threat hunting Practice Test 11 — 15 questions with explanations. Free, no signup.
During a threat hunt, you discover a previously unknown malware variant that communicates over HTTPS to a command-and-control (C2) server. You want to create a custom detection in Microsoft Sentinel that triggers when any device in the organization resolves the C2 domain via DNS. Which data connector should you ensure is enabled?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.