A security team receives reports of multiple files causing suspicious activity on users' workstations. The file attempted to access highly confidential information in a centralized file server. Which two actions should be taken by a security analyst to evaluate the file in a sandbox? (Choose two.)
A. Inspect registry entries
B. Inspect processes.
C. Inspect file hash.
D. Inspect file type.
E. Inspect PE header.
A security team receives reports of multiple files causing suspicious activity on users' workstations. The file attempte
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
A security team receives reports of multiple files causing suspicious activity on users' workstations. The file attempte
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!