Cisco Conducting Forensic Analysis and Incident Response Using Cisco CyberOps Technologies (CBRFIR) 300-215 Question # 4 Topic 1 Discussion

Cisco Conducting Forensic Analysis and Incident Response Using Cisco CyberOps Technologies (CBRFIR) 300-215 Question # 4 Topic 1 Discussion

300-215 Exam Topic 1 Question 4 Discussion:
Question #: 4
Topic #: 1

Refer to the exhibit.

300-215 Question 4

According to the Wireshark output, what are two indicators of compromise for detecting an Emotet malware download? (Choose two.)


A.

Domain name: iraniansk.com


B.

Server: nginx


C.

Hash value: 5f31ab113af08=1597090577


D.

filename= “Fy.exe”


E.

Content-Type: application/octet-stream


Get Premium 300-215 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.