ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 661 - 312-49v10 discussion

Report
Export

You are an information security analyst at a large pharmaceutical company. While performing a routine review of audit logs, you have noticed a significant amount of egress traffic to various IP addresses on destination port 22 during off- peak hours. You researched some of the IP addresses and found that many of them are in Eastern Europe. What is the most likely cause of this traffic?

A.
Malicious software on internal system is downloading research data from partner 5FTP servers in Eastern Europe
Answers
A.
Malicious software on internal system is downloading research data from partner 5FTP servers in Eastern Europe
B.
Internal systems are downloading automatic Windows updates
Answers
B.
Internal systems are downloading automatic Windows updates
C.
Data is being exfiltrated by an advanced persistent threat (APT)
Answers
C.
Data is being exfiltrated by an advanced persistent threat (APT)
D.
The organization's primary internal DNS server has been compromised and is performing DNS zone transfers to malicious external entities
Answers
D.
The organization's primary internal DNS server has been compromised and is performing DNS zone transfers to malicious external entities
Suggested answer: C
asked 18/09/2024
Shafqat Balouch
29 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first