Question 175 of 270 from exam CAS-003: CompTIA CASP+

Question 175 of 270 from exam CAS-003: CompTIA CASP+

Question

A security analyst who is concerned about sensitive data exfiltration reviews the following:

10:01:32. 384853 IP (tos 0x0, ttl 64, id 40587, offset 0, flags [DF], proto ICMP (1), length 1500
192.168.1.20 -> 100.61.100.2: ICMP echo reply, id 1592, sea 8, lenath 1500

Which of the following tools would allow the analyst to confirm if data exfiltration is occuring?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

D.