Exam Essentials All QuestionsBrowse all questions from this exam
Question 36

Match each WatchGuard Subscription Service with its function.

Uses full-system emulation analysis to identify characteristics and behavior of zero-day malware. (Choose one).

    Correct Answer: I

    APT Blocker is intended to stop malware and zero-day threats attempting to invade an organization's network. It uses a next-gen sandbox for detailed views into the execution of a malware program. Initially, files are fingerprinted and checked against an existing database, first on the appliance and then in the cloud. If the file has never been seen before, it is analyzed using the system emulator, which monitors the execution of all instructions, detecting evasion techniques that other sandboxes might miss. None of the listed options correspond to APT Blocker.

Discussion
BillFlippen

"I" should read as APT Blocker, instead it is blank

imtheone

I. shows as empty.

LoCarb_Monster

The answer is APT, and should be the 'I.' option WatchGuard Network Security Essentials Study Guide v12.5 pg. 146 "APT Blocker Cloud-based service that uses emulation analysis to identify the characteristics and behavior of zero-day malware."

[Removed]Option: I

So the answer is not visible after 3 years? nice...should be APT

hfrpkrqgsrwwmlwjegOption: I

I is missing, but correct answer is Advanced Persistent Thread Blocker (APT Blocker)

EnjoiTechOption: I

APT Blocker Cloud-based service that uses emulation analysis to identify the characteristics and behavior of zero-day malware.

Arjjra

not able to see the rest of the boxes. only the first one

CodyR_86

This doesn't seem to be a reliable practice exam..

mrqwerty1980Option: I

The APT blocker provides a sandbox environment for all unknown files to be sent to and tested before they can enter your network

Satornjkk

Yes, APT Blocker is correct.