🔥 3-day streak
Cisco CCNP Cybersecurity CBRCOR (350-201)70 / 147
Question 70 of 147
A malware analyst receives a suspicious executable recovered from an infected workstation. Before executing the sample, the analyst wants to safely extract metadata such as embedded strings, PE header details, imported API functions, and any packer signatures, without allowing the code to run. Which phase of the malware analysis process should the analyst perform FIRST, and why is it sequenced this way?
Reviewed for accuracy · Report an issueNext question