Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 212-89 Topic 3 Question 25 Discussion

Actual exam question for Eccouncil's 212-89 exam
Question #: 25
Topic #: 3
[All 212-89 Questions]

Bran is an incident handler who is assessing the network of the organization. In the

process, he wants to detect ping sweep attempts on the network using Wireshark tool.

Which of the following Wireshark filter he must use to accomplish this task?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Desmond
7 days ago
Ooh, a ping sweep detection task! This is right up my alley. I bet the answer is C, icmp.type==8. That's the ICMP echo request packet, which is exactly what you'd use to detect a ping sweep.
upvoted 0 times
...
Olen
19 days ago
I'm not sure, but I think icmp.ident could also be used to detect ping sweep attempts.
upvoted 0 times
...
Chantay
24 days ago
I agree with Elbert, icmp.type==8 is the correct filter for detecting ping sweep attempts.
upvoted 0 times
...
Elbert
25 days ago
I think Bran should use option C) icmp.type==8 to detect ping sweep attempts.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77