VMware Carbon Black Portfolio Skills - 5V0-91.20 Exam Practice Test
Question 1
There is a need to ignore all activity at an application path.
Which rule definition should be used to address this need?
Which rule definition should be used to address this need?
Correct Answer: B
Question 2
Given the following query:
SELECT hostname, cpu_type, cpu_brand, cpu_physical_cores, cpu_logical_cores, cpu_microcode, (1.0 * physical_memory / (1000*1000*1000)) AS physical_mem_gb, hardware_vendor, hardware_model, hardware_version, hardware_serial FROM system_info; Which statement Is correct?
SELECT hostname, cpu_type, cpu_brand, cpu_physical_cores, cpu_logical_cores, cpu_microcode, (1.0 * physical_memory / (1000*1000*1000)) AS physical_mem_gb, hardware_vendor, hardware_model, hardware_version, hardware_serial FROM system_info; Which statement Is correct?
Correct Answer: B
Question 3
While an administrator is reviewing an alert, the device is observed beaconing to an unknown destination.
Which action should be taken to stop this behavior?
Which action should be taken to stop this behavior?
Correct Answer: D
Question 4
Refer to the exhibit:

Which two logic statements correctly explain filtering within the UI? (Choose two.)

Which two logic statements correctly explain filtering within the UI? (Choose two.)
Correct Answer: B,D
Question 5
How can an analyst disregard alerts on multiple devices with the least amount of administrative effort?
Correct Answer: B
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 6
After an emergency, what does the Restore computer button do on the App Control Home page?
Correct Answer: D
Question 7
Which Live Query statement is properly constructed?
Correct Answer: C

