exam questions

Exam 300-710 All Questions

View all questions & answers for the 300-710 exam

Exam 300-710 topic 1 question 66 discussion

Actual exam question from Cisco's 300-710
Question #: 66
Topic #: 1
[All 300-710 Questions]

A user within an organization opened a malicious file on a workstation which in turn caused a ransomware attack on the network. What should be configured within the Cisco FMC to ensure the file is tested for viruses on a sandbox system?

  • A. Spero analysis
  • B. capacity handling
  • C. local malware analysis
  • D. dynamic analysis
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/ file_policies_and_advanced_malware_protection.html#ID-2199-000005d8

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
tanri04
10 months, 3 weeks ago
D. Dynamic analysis. To ensure that files are tested for viruses on a sandbox system, the Cisco FMC should be configured to perform dynamic analysis on files. Dynamic analysis is a security technique that involves executing files in a sandbox environment and observing their behavior to determine whether they are malicious. The Cisco FMC supports dynamic analysis using its Advanced Malware Protection (AMP) feature, which includes a cloud-based sandbox for analyzing files. The AMP feature analyzes files in real-time to detect malware and other malicious activity. Local malware analysis and spere analysis are not appropriate solutions for testing files for viruses on a sandbox system. Local malware analysis involves scanning files using antivirus software installed on the local system, which is not as effective as dynamic analysis. Sphere analysis involves analyzing files in a separate virtual environment, but it is not as comprehensive as dynamic analysis. Capacity handling is a general term that refers to the ability of a system to handle a large volume of traffic or data, and is not related to testing files for viruses on a sandbox system.
upvoted 2 times
...
eazy99
1 year, 10 months ago
The answer is correct, and this link will explain each option in case you are interested to know the differences: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Reference_a_wrapper_Chapter_topic_here.html#ID-2199-000005fa
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...