An administrator wants to prevent a compromised internal host from communicating with known command-and-control (C2) servers. Which combination of features provides the most comprehensive protection?
-
A
URL Filtering with the 'malware' category blocked
-
B
Anti-spyware profile with DNS sinkholing and C2 signature blocking enabled
-
C
Application override policy blocking suspicious ports
-
D
Custom application signatures for known C2 ports