Câu 118: 350-701: Implementing and Operating Cisco Security Core Technologies
A company discovered an attack propagating through their network via a file. A custom file detection policy was created in order to track this in the future and ensure no other endpoints execute to infected file. In addition, it was discovered during testing that the scans are not detecting the file as an indicator of…
Nội dung câu hỏi
A company discovered an attack propagating through their network via a file. A custom file detection policy was created in order to track this in the future and ensure no other endpoints execute to infected file. In addition, it was discovered during testing that the scans are not detecting the file as an indicator of compromise. What must be done in order to ensure that the policy created is functioning as it should?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Create an IP block list for the website from which the file was downloaded.
- B. Block the application that the file was using to open.
- C. Upload the hash for the file into the policy. — đáp án hiện tại
- D. Send the file to Cisco Threat Grid for dynamic analysis.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.