nerdexam
Cisco

200-201 · Question #300

A user received a malicious email attachment named "DS045-report1122345.exe" and executed it. In which step of the Cyber Kill Chain is this event?

The correct answer is D. installation. In the Cyber Kill Chain model: Reconnaissance: Involves the attacker gathering information about potential targets. Delivery: Refers to the initial point at which an attacker delivers a weaponized payload, such as sending a phishing email. Weaponization: Involves the crafting…

Submitted by naveen.iyer· Mar 6, 2026Security Concepts

Question

A user received a malicious email attachment named "DS045-report1122345.exe" and executed it. In which step of the Cyber Kill Chain is this event?

Options

  • Areconnaissance
  • Bdelivery
  • Cweaponization
  • Dinstallation

How the community answered

(41 responses)
  • A
    10% (4)
  • B
    2% (1)
  • C
    7% (3)
  • D
    80% (33)

Explanation

In the Cyber Kill Chain model: Reconnaissance: Involves the attacker gathering information about potential targets. Delivery: Refers to the initial point at which an attacker delivers a weaponized payload, such as sending a phishing email. Weaponization: Involves the crafting of the exploit or malicious payload. Installation: Occurs when the malicious code is executed or installed on the victim's system. In this scenario, the user executing the malicious attachment is part of the installation phase, where the payload is activated or run on the user's system, potentially compromising it.

Topics

#Cyber Kill Chain#Malware Execution#Installation

Community Discussion

No community discussion yet for this question.

Full 200-201 Practice