nerdexam
EC-Council

EC0-350 · Question #514

Neil notices that a single address is generating traffic from its port 500 to port 500 of several other machines on the network. This scan is eating up most of the network bandwidth and Neil is…

The correct answer is D. The attacker is trying to determine the type of VPN implementation and checking for IPSec. See the full explanation below for the reasoning.

Question

Neil notices that a single address is generating traffic from its port 500 to port 500 of several other machines on the network. This scan is eating up most of the network bandwidth and Neil is concerned. As a security professional, what would you infer from this scan?

Options

  • AIt is a network fault and the originating machine is in a network loop
  • BIt is a worm that is malfunctioning or hardcoded to scan on port 500
  • CThe attacker is trying to detect machines on the network which have SSL enabled
  • DThe attacker is trying to determine the type of VPN implementation and checking for IPSec

How the community answered

(42 responses)
  • A
    2% (1)
  • B
    10% (4)
  • C
    5% (2)
  • D
    83% (35)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice