QuestionQ1

Ransomware Protection

Which threat-intelligence source requires that the suspected file be sent externally?

  • A NSRL
  • B Palo Alto Wildfire
  • C VirusTotal
  • D CyberArk Application Risk Analysis Service (ARA)
Explanation

VirusTotal performs file analysis after the sample is uploaded to the VirusTotal service; its API accepts a file upload for analysis. Therefore, using it requires transmitting the suspect file externally. WildFire can also be deployed as an appliance, allowing local analysis. VirusTotal: Upload a file Palo Alto Networks: WildFire API Resources

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!