EC-CouncilEC-Council
312-50V13 · Question #151
312-50V13 Question #151: Real Exam Question with Answer & Explanation
Sign in or unlock 312-50V13 to reveal the answer and full explanation for question #151. The question stem and answer options stay visible for context.
Submitted by the_admin· Mar 6, 2026Evading IDS, Firewalls, and Honeypots
Question
Study the snort rule given below and interpret the rule. alert tcp any any --> 192.168.1.0/24 111 (content:"|00 01 86 a5|"; msG. "mountd access";)
Options
- AAn alert is generated when a TCP packet is generated from any IP on the 192.168.1.0 subnet and
- BAn alert is generated when any packet other than a TCP packet is seen on the network and
- CAn alert is generated when a TCP packet is originated from port 111 of any IP address to the
- DAn alert is generated when a TCP packet originating from any IP address is seen on the network
Unlock 312-50V13 to see the answer
You've previewed enough free 312-50V13 questions. Unlock 312-50V13 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Snort rules#IDS#network intrusion detection#TCP