An administrator ran the following query.
SELECT name, VERSION, install_location, install_source, publisher, install_date, uninstall_string FROM programs WHERE publisher = "Microsoft Corporation";
The administrator notices a lot of installed programs are not returned.
How can the administrator alter the query to see all results?
Answer : A
When dismissing alerts, when should an administrator select "If alert occurs in the future, automatically dismiss it from all devices"?
Answer : C
A Carbon Black Cloud analyst needs to identify the Internet Explorer extensions installed on Windows
endpoints.
Which Live Query statement will successfully query these items?
Answer : A
An Endpoint Standard administrator finds a binary in the environment and decides to manually add the file hash to the Banned List.
Which reputation does the file now have?
Answer : A
Which identifier is shared by all events when an alert is investigated?
Answer : B
There is a requirement to block ransomware when a sensor is offline.
Which blocking and isolation rule fulfills this requirement?
Answer : A
An administrator wants to find instances where the binary Is unsigned.
Which term will accomplish this search?
Answer : B