nerdexam
CompTIA

CS0-003 · Question #514

An analyst is trying to capture anomalous traffic from a compromised host. Which of the following are the best tools for achieving this objective? (Choose two.)

The correct answer is A. tcpdump D. Wireshark. To capture and analyze network traffic, the two best tools are: tcpdump - A command-line packet capture tool used for network traffic analysis. Wireshark - A GUI-based network packet analysis tool that provides deep inspection capabilities.

Submitted by asante_acc· Mar 6, 2026Security operations

Question

An analyst is trying to capture anomalous traffic from a compromised host. Which of the following are the best tools for achieving this objective? (Choose two.)

Options

  • Atcpdump
  • BSIEM
  • CVulnerability scanner
  • DWireshark
  • ENmap
  • FSOAR

How the community answered

(16 responses)
  • A
    94% (15)
  • E
    6% (1)

Explanation

To capture and analyze network traffic, the two best tools are: tcpdump - A command-line packet capture tool used for network traffic analysis. Wireshark - A GUI-based network packet analysis tool that provides deep inspection capabilities.

Topics

#network traffic analysis#packet capture#tcpdump#Wireshark

Community Discussion

No community discussion yet for this question.

Full CS0-003 Practice