Question 67 of 76 from exam 350-201-CBRCOR: Performing CyberOps Using Cisco Security Technologies

Question 67 of 76 from exam 350-201-CBRCOR: Performing CyberOps Using Cisco Security Technologies

Question

Refer to the exhibit.

Which indicator of compromise is represented by this STIX?

t
"type": "bundle",
"id": "bundle--S6be2a39",
“objects”: [
t

“type”: "indicator",
“spec_version": "2.1",

"name": "Malicious site hosting downloader’,
“indicator_types":[

"malicious-activity”
1

“pattern”: "[url:value = 'http://y2z7ate.cn/4823/]",
“pattern_type”: "stix",
“valid_from": "2020-08-10T 13:49:37.0792"

"ype": “malware”,

"spec_version”: "2.1",

“id”: ‘malware— —162d917e-766f—461 1-b5d6-652791454fca”

"created": "2020-08-13T09:15:17.1822",

“modified”: "2020-08-13T09:

“name”: "y2z7atc backdoor",

“malware_types”: [
“packdoor",
“remote-access-trojan”

1
*is_family”: false,
“kil_chain_phases”: [

“kill_chain_name": “mandant-attack-lifecycle-model",
“phase_name": “establish-foothold”
2

¥

“type”: "relationship",

“spec_version": "2.1",

“id”: “relationship— -864af2ea—46f9—-4d23—b3a2—1c2adf81c265",

“created”: "2020-08-15T 18:03:58.0292",

“modified”: "2020-08-15T 18:03:58.0292",

“relationship_type”: “indicat

“source_ref": *indicator--d8 1f86b9-975b-4c0b-875e-810c5ad45ad"
“target_r Tef": "malware--162d917e07661-461 1-b5d6-652791454fca"
,

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

C.