A user receives a potentially malicious email that contains spelling errors and a PDF document. A security analyst reviews the email and decides to download the attachment to a Linux sandbox for review.
Which of the following commands would MOST likely indicate if the email is malicious?
A. sha256sum ~/Desktop/file.pdf
B. file ~/Desktop/file.pdf
C. strings ~/Desktop/file.pdf | grep "<script" Most Voted
D. cat < ~/Desktop/file.pdf | grep -i .exe
A user receives a potentially malicious email that contains spelling errors and a PDF document. A security analyst revie
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
A user receives a potentially malicious email that contains spelling errors and a PDF document. A security analyst revie
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!