A user receives a potentially malicious email that contains spelling errors and a PDF document. A security analyst reviews the email and decides to download the attachment to a Linux sandbox for review. Which of the following commands would MOST likely indicate if the email is malicious?
A) sha256sum ~/Desktop/file.pdf
B) file ~/Desktop/file.pdf
C) strings ~/Desktop/file.pdf | grep "<script"
D) cat < ~/Desktop/file.pdf | grep -i .exe
Correct Answer:
Verified
Q55: A security analyst discovers a vulnerability on
Q56: A pharmaceutical company's marketing team wants to
Q57: A cybersecurity analyst is supporting an incident
Q58: A security analyst is conducting a post-incident
Q59: An analyst is investigating an anomalous event
Q61: An analyst has been asked to provide
Q62: During an incident, a cybersecurity analyst found
Q63: A developer wrote a script to make
Q64: A security analyst discovered a specific series
Q65: As part of a review of incident
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents