200-201 exam dumps

200-201 practice question 251 of 405

Cisco Cybersecurity Associate. Associate level, Cisco. Free question with the correct answer and a full explanation.

200-201 Question 251

Single answer

A cybersecurity analyst is investigating a suspicious file flagged by an endpoint detection and response (EDR) system. Upon further analysis, the file is found to be a legitimate system update from a trusted vendor. What should the analyst classify this file as?

  1. A

    Malicious

  2. B

    Benign

  3. C

    Unknown

  4. D

    Phishing

Show answer and explanation

Correct answer: B

Explanation

In cybersecurity, 'benign' refers to files, behaviors, or activities that do not pose a threat to systems or data. In this scenario, the suspicious file was analyzed and confirmed to be a legitimate system update. Therefore, it should be classified as benign.

  • A. Incorrect.

    Malicious is incorrect because there is no evidence to indicate that the file is harmful or designed to compromise the system.

  • B. Correct.

    Benign is correct because the file has been verified as legitimate and poses no threat to the system.

  • C. Incorrect.

    Unknown is incorrect because further analysis has already determined the file's legitimacy, so it is no longer unknown.

  • D. Incorrect.

    Phishing is incorrect because phishing refers to fraudulent attempts to obtain sensitive information, which is unrelated to this scenario.

Timed practice exam

Take a 200-201 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam