Valid 350-201 Dumps shared by ExamDiscuss.com for Helping Passing 350-201 Exam! ExamDiscuss.com now offer the newest 350-201 exam dumps, the ExamDiscuss.com 350-201 exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com 350-201 dumps with Test Engine here:
An analyst is alerted for a malicious file hash. After analysis, the analyst determined that an internal workstation is communicating over port 80 with an external server and that the file hash is associated with Duqu malware. Which tactics, techniques, and procedures align with this analysis?
Correct Answer: A
The tactics, techniques, and procedures that align with the analysis of an internal workstation communicating over port 80 with an external server, where the file hash is associated with Duqu malware, would be Command and Control (C2) via an Application Layer Protocol. Duqu is known for its sophisticated command and control capabilities, which often involve communication over common network protocols to evade detection67.