exam questions

Exam 350-201 All Questions

View all questions & answers for the 350-201 exam

Exam 350-201 topic 1 question 92 discussion

Actual exam question from Cisco's 350-201
Question #: 92
Topic #: 1
[All 350-201 Questions]

A SOC analyst is notified by the network monitoring tool that there are unusual types of internal traffic on IP subnet 103.921.2239.0/24. The analyst discovers unexplained encrypted data files on a computer system that belongs on that specific subnet. What is the cause of the issue?

  • A. DDoS attack
  • B. phishing attack
  • C. virus outbreak
  • D. malware outbreak
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
27ea763
4 months, 4 weeks ago
Selected Answer: D
I would go with D. It's a Malware Outbreak of Ransonware type.
upvoted 1 times
...
jay_c_an
9 months, 1 week ago
C according to https://www.crowdstrike.com/cybersecurity-101/malware/malware-vs-virus/ Malware works in different ways, but most start by ensuring a means of persistent access to a system so adversaries can slip into the network any time they like. Once inside, the malware takes control of the system with the purpose of communicating back to its original sender. The information it communicates may include sensitive data, intellectual property, captured keystrokes or images from a device’s camera, among other items. Viruses, on the other hand, are usually dormant until the victim activates the attack, either through opening an infected application, downloading a corrupt file or clicking an infected link. Once activated, the virus may complete any number of tasks that it was designed to do, including deleting files, encrypting data, taking over system functions or disabling security settings.
upvoted 1 times
...
DrVoIP
9 months, 3 weeks ago
The question has an error in the IP address, so I resubmitted it: The cause of the issue is more likely a malware outbreak. The unusual types of internal traffic and the presence of unexplained encrypted data files on a system are indicators of a possible malware infection. The specific IP subnet may have been targeted by the attacker to spread the malware within the network. The SOC analyst should conduct further analysis to identify the malware type and determine the extent of the infection to mitigate the issue.
upvoted 3 times
...
DrVoIP
10 months ago
Based on the information provided, it is not possible to determine the cause of the issue with certainty. However, the presence of unusual types of internal traffic and unexplained encrypted data files on a system suggest that some type of security incident or compromise may have occurred. Further investigation is necessary to determine the cause of the issue, identify any malicious activity, and mitigate any potential damage. - ChatGPT
upvoted 1 times
...
Medjai89
12 months ago
Selected Answer: C
Virus outbreak. 100% sure
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...