CompTIA CySA+ CS0-003 Practice Question
When analyzing malware behavior in a sandbox environment, an analyst notices that the malware remains dormant and does not exhibit any malicious activity. What could be the reason for this behavior?
The malware is awaiting a specific system event or user interaction to trigger its payload
The network settings of the sandbox prevent the malware from communicating externally
The sandbox has automatically neutralized the malware upon detection
The malware detects the sandbox environment and is programmed to avoid execution within it