Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 300-215 Exam - Topic 8 Question 106 Discussion

An analyst finds .xyz files of unknown origin that are large and undetected by antivirus. What action should be taken next?
A) Isolate the files and perform a deeper heuristic analysis to detect potential unknown malware or data exfiltration payloads.
B) Rename the file extensions to .txt to enable easier opening and review by team members.
C) Delete the files immediately to prevent potential risks.
D) Move the files to a less secure network segment for analysis.

Cisco 300-215 Exam - Topic 8 Question 106 Discussion

Actual exam question for Cisco's 300-215 exam
Question #: 106
Topic #: 8
[All 300-215 Questions]

An analyst finds .xyz files of unknown origin that are large and undetected by antivirus. What action should be taken next?

Show Suggested Answer Hide Answer
Suggested Answer: A

The safest and most effective approach is to isolate the files and subject them to heuristic and behavioral analysis. This can reveal obfuscated malware or unauthorized data storage techniques, even if signature-based antivirus fails to flag them.


Contribute your Thoughts:

0/2000 characters
Gracia
5 months ago
A) Agreed! Better safe than sorry. Let’s dig deeper.
upvoted 0 times
...
Arthur
5 months ago
D) Moving to a less secure area? That sounds dangerous!
upvoted 0 times
...
Carey
5 months ago
C) Deleting could be too hasty. We need to analyze first.
upvoted 0 times
...
Zona
5 months ago
B) Renaming seems risky. What if they’re harmful?
upvoted 0 times
...
Blondell
5 months ago
Wait, how can they be undetected? Sounds sketchy!
upvoted 0 times
...
Marylou
6 months ago
A makes the most sense, better safe than sorry!
upvoted 0 times
...
Chau
6 months ago
C is too extreme, we should investigate first.
upvoted 0 times
...
Katie
6 months ago
Renaming to .txt? That sounds risky.
upvoted 0 times
...
Lettie
7 months ago
Definitely A, we need to analyze those files properly.
upvoted 0 times
...
Genevieve
7 months ago
D) Move to a less secure network? Are you kidding me? That's a recipe for disaster!
upvoted 0 times
...
Marjory
7 months ago
B) Rename to .txt? Nah, that's just asking for trouble. A) is the way to go.
upvoted 0 times
...
Dianne
7 months ago
A) Isolate and analyze. Can't be too careful with unknown files these days.
upvoted 0 times
...
Robt
7 months ago
A) Definitely the way to go. Better safe than sorry with those sketchy .xyz files.
upvoted 0 times
...
Frederica
7 months ago
A) Isolate the files and perform a deeper heuristic analysis to detect potential unknown malware or data exfiltration payloads. This is the safest approach.
upvoted 0 times
...
Silva
8 months ago
Moving files to a less secure segment seems risky. I recall that we should always prioritize containment first, so option A feels like the safest bet, but I’m not 100% confident.
upvoted 0 times
...
Gertude
8 months ago
Renaming the files to .txt sounds tempting, but I feel like that could lead to overlooking something critical. I think option C might be too extreme without further investigation.
upvoted 0 times
...
Madonna
8 months ago
I think we practiced a similar question where isolating files was emphasized. I would definitely lean towards option A, but I wonder if there are any risks involved in that process.
upvoted 0 times
...
Sunshine
8 months ago
I'm a little unsure about this one, to be honest. A sounds like the safest bet, but I'm also kind of curious about what's in those files. Maybe I'll take a quick peek before isolating them, just to see what's up.
upvoted 0 times
...
Gerald
8 months ago
Definitely A. No way I'm renaming those files or moving them to a less secure network. Isolate and analyze, that's the way to go. Gotta protect the system, you know?
upvoted 0 times
...
Talia
8 months ago
Okay, let's think this through. I'm leaning towards A as well - isolating the files and really digging into them seems like the most responsible way to handle this. Gotta be careful with that unknown malware!
upvoted 0 times
...
Karima
9 months ago
I remember we discussed the importance of isolating suspicious files for further analysis. Option A seems like the right choice, but I'm not entirely sure about the specifics of heuristic analysis.
upvoted 0 times
...
Micah
9 months ago
A) Definitely isolate them first. Safety first!
upvoted 0 times
...
Ocie
9 months ago
C) Delete them! Who needs the risk? Just get rid of those files and move on.
upvoted 0 times
...
Tayna
9 months ago
A) Heuristic analysis is key. We need to know what we’re dealing with.
upvoted 0 times
...
Mee
9 months ago
Ugh, I hate these types of questions. I'm tempted to just go with C and delete the files, but I guess that's not the best approach. Maybe I'll try to talk it through with the instructor after the exam.
upvoted 0 times
...
Skye
10 months ago
Hmm, this seems like a tricky one. I'd probably go with option A - isolating the files and doing a deeper analysis to see what's going on. Better safe than sorry, you know?
upvoted 0 times
Linette
4 months ago
Deleting them outright could be a mistake. Let's investigate!
upvoted 0 times
...
Stefanie
4 months ago
Renaming them to .txt? That's risky. Better to analyze first.
upvoted 0 times
...
Sophia
4 months ago
Option A seems smart. We need to understand what we're dealing with.
upvoted 0 times
...
Moon
4 months ago
Definitely! A deeper analysis could reveal hidden threats.
upvoted 0 times
...
Daniel
5 months ago
I agree, isolating the files is the best move. Can't take any chances.
upvoted 0 times
...
...

Save Cancel