nerdexam
EC-Council

312-39 · Question #37

You are a SOC analyst on duty during a high-severity incident involving a DDoS attack targeting your organization's e-commerce platform. The attack disrupts online transactions. Using SIEM tools and p

Sign in or unlock 312-39 to reveal the answer and full explanation for question #37. The question stem and answer options stay visible for context.

Security Incident Response

Question

You are a SOC analyst on duty during a high-severity incident involving a DDoS attack targeting your organization’s e-commerce platform. The attack disrupts online transactions. Using SIEM tools and packet capture systems, you identify unusual traffic patterns and trace activity back to command- and-control (C2) servers directing a botnet. Your goal is to recommend an eradication strategy that will sever the attackers’ control over infected devices and halt the attack. Which strategy should your team implement?

Options

  • ARate limiting
  • BNeutralizing handlers
  • CBlocking potential attacks
  • DDisabling botnets

Unlock 312-39 to see the answer

You've previewed enough free 312-39 questions. Unlock 312-39 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#DDoS eradication#botnet C2 neutralization#incident response#handler takedown
Full 312-39 Practice