Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 212-89 Topic 4 Question 77 Discussion

Actual exam question for Eccouncil's 212-89 exam
Question #: 77
Topic #: 4
[All 212-89 Questions]

An organization's customers are experiencing either slower network communication or unavailability of services. In addition, network administrators are receiving alerts from security tools such as IDS/IPS and firewalls about a possible DoS/DDoS attack. In result, the organization requests the incident handling and response (IH&R) team further investigates the incident. The IH&R team decides to use manual techniques to detect DoS/DDoS attack.

Which of the following commands helps the IH&R team to manually detect DoS/DDoS attack?

Show Suggested Answer Hide Answer
Suggested Answer: B

Email Dossier is a tool designed to perform detailed investigations on email messages to verify their authenticity and trace their origin. It can analyze email headers and provide information about the route an email has taken, the servers it passed through, and potentially malicious links or origins. For an incident handler like Stenley, tasked with verifying the validity of emails and containing malicious email threats, Email Dossier serves as a practical tool for analyzing and validating emails received by employees. By using this tool, Stenley can identify fraudulent or suspicious emails, thereby helping to protect the organization from phishing attacks, malware distribution, and other email-based threats.


Contribute your Thoughts:

Carolynn
3 days ago
Option D, 'nbtstat/S', sounds like it's made up. I'm going to have to go with C, 'netstat an', as the best choice here.
upvoted 0 times
...
Nu
13 days ago
That makes sense, netstat an would provide more detailed information for detecting DoS/DDoS attacks.
upvoted 0 times
...
Lashon
13 days ago
I'm not sure about the answer, but I know that 'nbtstat' is used for NetBIOS over TCP/IP, which doesn't seem relevant to this scenario. I'd go with C or A.
upvoted 0 times
...
Glynda
15 days ago
I disagree, I believe the correct command is netstat an because it shows all connections and listening ports.
upvoted 0 times
...
Ronald
17 days ago
I think option C, 'netstat an', is the correct answer. It provides detailed information about network connections, which can help detect DoS/DDoS attacks.
upvoted 0 times
...
Nu
21 days ago
I think the command that helps detect DoS/DDoS attack is netstat -r.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77