210-260 Exam QuestionsBrowse all questions from this exam

210-260 Exam - Question 40


Which action does standard antivirus software perform as part of the file-analysis process?

Show Answer
Correct Answer: A

Standard antivirus software often executes the file in a simulated environment, known as sandboxing, to examine its behavior. This approach allows the software to observe the file's activities in a controlled setting, determining whether it performs any malicious actions without risking the actual system's security.

Discussion

1 comment
Sign in to comment
lluu
Feb 10, 2020

The answer (C) is WRONG !!! on the test I answered C too but now I found C is WRONG !!! Based on the Cisco document below: this right answer is A. From Cisco document: https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-0/user_guide_fs/b_ESA_Admin_Guide_11_0/b_ESA_Admin_Guide_chapter_01011.pdf. I hope everyone get it right for this question. I did not double check all questions on this site... i failed my test :-(

max80
Feb 15, 2020

C is valid. sandbox it's feature of adviced AV like AMP.

max80
Feb 15, 2020

Question #48 Topic 2 What are two advanced features of the Cisco AMP solution for endpoints? (Choose two.) A. sandboxing B. reflection C. reputation D. foresight E. contemplation Correct Answer: AC