200-201 Network Intrusion Analysis • Set 3
200-201 Network Intrusion Analysis Practice Test 3 — 15 questions with explanations. Free, no signup.
A SOC analyst is reviewing a packet capture from a suspected compromised host. The capture shows a single TCP session where the client sends a crafted packet with the SYN, FIN, and PSH flags all set simultaneously to a closed port on a server, and the server responds with a single RST/ACK. No further packets are exchanged for that session. Which type of scan does this activity most likely represent?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.