312-85 Dumps

312-85 Free Practice Test

EC-Council 312-85: Certified Threat Intelligence Analyst

QUESTION 11

Jian is a member of the security team at Trinity, Inc. He was conducting a real-time assessment of system activities in order to acquire threat intelligence feeds. He acquired feeds from sources like honeynets, P2P monitoring. infrastructure, and application logs.
Which of the following categories of threat intelligence feed was acquired by Jian?

Correct Answer: A

QUESTION 12

Cybersol Technologies initiated a cyber-threat intelligence program with a team of threat intelligence analysts.
During the process, the analysts started converting the raw data into useful information by applying various techniques, such as machine-based techniques, and statistical methods.
In which of the following phases of the threat intelligence lifecycle is the threat intelligence team currently working?

Correct Answer: A

QUESTION 13

A team of threat intelligence analysts is performing threat analysis on malware, and each of them has come up with their own theory and evidence to support their theory on a given malware.
Now, to identify the most consistent theory out of all the theories, which of the following analytic processes must threat intelligence manager use?

Correct Answer: C

QUESTION 14

Which of the following components refers to a node in the network that routes the traffic from a workstation to external command and control server and helps in identification of installed malware in the network?

Correct Answer: B

QUESTION 15

Which of the following characteristics of APT refers to numerous attempts done by the attacker to gain entry to the target’s network?

Correct Answer: C