Cisco Conducting Forensic Analysis and Incident Response Using Cisco CyberOps Technologies (CBRFIR) 300-215 Question # 15 Topic 2 Discussion

Cisco Conducting Forensic Analysis and Incident Response Using Cisco CyberOps Technologies (CBRFIR) 300-215 Question # 15 Topic 2 Discussion

300-215 Exam Topic 2 Question 15 Discussion:
Question #: 15
Topic #: 2

An analyst finds .xyz files of unknown origin that are large and undetected by antivirus. What action should be taken next?


A.

Isolate the files and perform a deeper heuristic analysis to detect potential unknown malware or data exfiltration payloads.


B.

Rename the file extensions to .txt to enable easier opening and review by team members.


C.

Delete the files immediately to prevent potential risks.


D.

Move the files to a less secure network segment for analysis.


Get Premium 300-215 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.