اختبار شهادة محلل الأمن السيبراني CompTIA CySA+

السؤال 560 من 1040

كل الأسئلة

A security analyst is reviewing a packet capture in Wireshark that contains an FTP session from a potentially compromised machine. The analyst sets the following display filter: ftp. The analyst can see there are several RETR requests with 226 Transfer complete responses, but the packet list pane is not showing the packets containing the file transfer itself. Which of the following can the analyst perform to see the entire contents of the downloaded files?

الخيارات

  • A Change the display filter to ftp.active.port
  • B Change the display filter to tcp.port=20
  • C Change the display filter to ftp-data and follow the TCP streams
  • D Navigate to the File menu and select FTP from the Export objects option

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.