ExamGecko
Question list
Search
Search

Related questions











Question 90 - 200-201 discussion

Report
Export

Refer to the exhibit.

An engineer is analyzing this Cuckoo Sandbox report for a PDF file that has been downloaded from an email. What is the state of this file?

A.

The file has an embedded executable and was matched by PEiD threat signatures for further analysis.

Answers
A.

The file has an embedded executable and was matched by PEiD threat signatures for further analysis.

B.

The file has an embedded non-Windows executable but no suspicious features are identified.

Answers
B.

The file has an embedded non-Windows executable but no suspicious features are identified.

C.

The file has an embedded Windows 32 executable and the Yara field lists suspicious features for further analysis.

Answers
C.

The file has an embedded Windows 32 executable and the Yara field lists suspicious features for further analysis.

D.

The file was matched by PEiD threat signatures but no suspicious features are identified since the signature list is up to date.

Answers
D.

The file was matched by PEiD threat signatures but no suspicious features are identified since the signature list is up to date.

Suggested answer: C
asked 07/10/2024
Matteo Picchetti
28 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first