Question 45 of 160 from exam CS0-002: CompTIA CySA+

Question 45 of 160 from exam CS0-002: CompTIA CySA+

Question

During routine monitoring, a security analyst discovers several suspicious websites that are communicating with a local host.

The analyst queries for IP 192.168.50.2 for a 24-hour period:

Time SRC DST Domain Bytes
Se 192...1,68:..50 . 138.10.2.5 | www.wioapsfeje.co 50
oe 192.168.50. 138.10.2.5 | www.wioapsfeje.co | 1000
ereere 192.168.50.2]138.10.25.5] www.wfaojsjfjoe.co | 1000
a 192.168.50.2|172.10.25.5| www.wfalksdjflse.co| 1000
eee 192.168.50.2|172.10.45.5|www.wsahlfsdjlfe.co|} 1000
oreert® 192.168.50. 172.10.3.5 | ftp.walksdjgfl.co | 50000
a 192.168.50.2])175.35.20.5|] www.whatsmyip.com 25
Bie 1/18 192.168.50.2])175.35.20.5| www.whatsmyip.com 25

11225

To further investigate, the analyst should request PCAP for SRC 192.168.50.2 and __________.

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D. E.

C.