Security+ Indicators of Compromise Recognition Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 8865 | Total Attempts: 106,055
| Questions: 20 | Updated: Aug 12, 2026
Please wait...
Question 1 / 21
🏆 Rank #--
0 %
0/100
Score 0/100

1. Which of the following indicates a potential DNS poisoning or hijacking attack?

Submit
Please wait...
About This Quiz
Security+ Indicators Of Compromise Recognition Quiz - Quiz

This quiz evaluates your ability to identify and recognize indicators of compromise (IoCs) in enterprise security environments. You will assess suspicious system behaviors, network anomalies, and file artifacts that signal potential breaches or malware infections. Essential for Security+ certification and real-world threat detection, this assessment covers detection techniques, log analysis,... see moreand incident response fundamentals. see less

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. What does the presence of suspicious PowerShell commands in Windows event logs indicate?

Submit

3. An unexpected privileged account being used for interactive login at unusual times is an IoC for what?

Submit

4. Which of the following represents a strong IoC for ransomware infection?

Submit

5. Detecting a process with a legitimate name running from an unusual location is an IoC for which attack?

Submit

6. What does a sudden spike in error messages or crash dumps typically indicate?

Submit

7. The presence of obfuscated or encoded scripts in web server logs is an IoC for what?

Submit

8. Which indicator suggests possible data exfiltration is occurring?

Submit

9. Unexpected changes to system files detected by file integrity monitoring are an IoC for what?

Submit

10. What does detecting multiple failed authentication attempts from different geographic locations simultaneously suggest?

Submit

11. Which of the following is a primary indicator of compromise when detected on a user's workstation?

Submit

12. An unexpected increase in CPU or memory usage by a non-critical process is an IoC for which threat?

Submit

13. What does the presence of suspicious scheduled tasks in Windows Task Scheduler typically indicate?

Submit

14. Which network traffic pattern suggests possible command-and-control (C2) communication?

Submit

15. Unusual process execution from temporary directories is an IoC for what threat?

Submit

16. What does a hash mismatch between a known-good file and its current version indicate?

Submit

17. Which file system artifact would indicate malware persistence on a Windows system?

Submit

18. A sudden increase in failed login attempts followed by one successful login is a sign of what type of attack?

Submit

19. Which log source is most valuable for detecting lateral movement within a network?

Submit

20. What does an abnormal outbound network connection to an unknown IP address typically indicate?

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (20)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
Which of the following indicates a potential DNS poisoning or...
What does the presence of suspicious PowerShell commands in Windows...
An unexpected privileged account being used for interactive login at...
Which of the following represents a strong IoC for ransomware...
Detecting a process with a legitimate name running from an unusual...
What does a sudden spike in error messages or crash dumps typically...
The presence of obfuscated or encoded scripts in web server logs is an...
Which indicator suggests possible data exfiltration is occurring?
Unexpected changes to system files detected by file integrity...
What does detecting multiple failed authentication attempts from...
Which of the following is a primary indicator of compromise when...
An unexpected increase in CPU or memory usage by a non-critical...
What does the presence of suspicious scheduled tasks in Windows Task...
Which network traffic pattern suggests possible command-and-control...
Unusual process execution from temporary directories is an IoC for...
What does a hash mismatch between a known-good file and its current...
Which file system artifact would indicate malware persistence on a...
A sudden increase in failed login attempts followed by one successful...
Which log source is most valuable for detecting lateral movement...
What does an abnormal outbound network connection to an unknown IP...
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!