ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 169 - CAS-004 discussion

Report
Export

A large number of emails have been reported, and a security analyst is reviewing the following information from the emails:

As part of the image process, which of the following is the FIRST step the analyst should take?

A.
Block the email address carl b@comptia1 com, as it is sending spam to subject matter experts
Answers
A.
Block the email address carl b@comptia1 com, as it is sending spam to subject matter experts
B.
Validate the final 'Received' header against the DNS entry of the domain.
Answers
B.
Validate the final 'Received' header against the DNS entry of the domain.
C.
Compare the 'Return-Path' and 'Received' fields.
Answers
C.
Compare the 'Return-Path' and 'Received' fields.
D.
Ignore the emails, as SPF validation is successful, and it is a false positive
Answers
D.
Ignore the emails, as SPF validation is successful, and it is a false positive
Suggested answer: C
asked 02/10/2024
Steven Reyes
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first