ExamGecko
Question list
Search
Search

Related questions











Question 197 - 200-201 discussion

Report
Export

Refer to the exhibit.

Which frame numbers contain a file that is extractable via TCP stream within Wireshark?

A.

7,14, and 21

Answers
A.

7,14, and 21

B.

7 and 21

Answers
B.

7 and 21

C.

14,16,18, and 19

Answers
C.

14,16,18, and 19

D.

7 to 21

Answers
D.

7 to 21

Suggested answer: A

Explanation:

The file that is extractable via TCP stream within Wireshark is the one that has the Content-Type header set to application/octet-stream, which indicates binary data. This header is present in frames 7, 14, and 21, which are part of the same TCP stream. The other frames have different Content-Type headers, such as text/html or image/jpeg, which are not extractable as binary files.Reference:= Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS) v1.0, Module 3: Network Intrusion Analysis, Lesson 3.2: Analyze Data from Common TCP/IP Protocols, Topic 3.2.3: HTTP

asked 07/10/2024
Jorge Correa
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first