nerdexam
CompTIA

CS0-003 · Question #450

A network security analyst for a large company noticed unusual network activity on a critical system. Which of the following tools should the analyst use to analyze network traffic to search for…

The correct answer is B. Wireshark. Wireshark is a network protocol analyzer that allows analysts to capture and inspect data packets traveling through a network. This makes it ideal for investigating unusual network activity, as it provides detailed insights into the nature and content of network traffic. In…

Submitted by ravi_2018· Mar 6, 2026Incident Response Management

Question

A network security analyst for a large company noticed unusual network activity on a critical system. Which of the following tools should the analyst use to analyze network traffic to search for malicious activity?

Options

  • AWAF
  • BWireshark
  • CEDR
  • DNmap

How the community answered

(41 responses)
  • A
    2% (1)
  • B
    90% (37)
  • C
    2% (1)
  • D
    5% (2)

Explanation

Wireshark is a network protocol analyzer that allows analysts to capture and inspect data packets traveling through a network. This makes it ideal for investigating unusual network activity, as it provides detailed insights into the nature and content of network traffic. In this case, Wireshark can help identify potentially malicious packets and understand the nature of the observed traffic.

Topics

#network analysis#packet capture#Wireshark#incident investigation

Community Discussion

No community discussion yet for this question.

Full CS0-003 Practice