Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 300-740 Exam - Topic 3 Question 1 Discussion

Refer to the exhibit.Refer to the exhibit. An engineer is troubleshooting an incident by using Cisco Secure Cloud Analytics. What is the cause of the issue?
C) An FTP client was installed on a domain controller.
A) An attacker installed an SSH server on the host.
B) An attacker opened port 22 on the host.
D) An FTP client was installed on a workstation.

Cisco 300-740 Exam - Topic 3 Question 1 Discussion

Actual exam question for Cisco's 300-740 exam
Question #: 1
Topic #: 3
[All 300-740 Questions]

Refer to the exhibit.

Refer to the exhibit. An engineer is troubleshooting an incident by using Cisco Secure Cloud Analytics. What is the cause of the issue?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Johnna
8 months ago
Nah, it’s definitely not C or D, those don’t fit the scenario.
upvoted 0 times
...
Audria
8 months ago
Surprised it's not about the FTP client, that seems odd.
upvoted 0 times
...
Aretha
9 months ago
Definitely A, SSH server is a big red flag!
upvoted 0 times
...
Alise
9 months ago
I think it could be B, but not sure.
upvoted 0 times
...
Frederica
9 months ago
Looks like port 22 was opened by an attacker.
upvoted 0 times
...
Amos
10 months ago
I vaguely remember that installing an SSH server is often linked to unauthorized access, so maybe option A is the cause of the issue?
upvoted 0 times
...
Aleisha
10 months ago
I’m a bit confused about the FTP client options. I feel like both could be problematic, but I can't recall which one was more critical.
upvoted 0 times
...
Leana
10 months ago
I think I saw a similar question about port vulnerabilities in our practice tests. Opening port 22 could definitely be a red flag.
upvoted 0 times
...
Ora
10 months ago
I remember something about SSH servers being a common sign of compromise, but I'm not entirely sure if that's the right answer here.
upvoted 0 times
...
Geraldine
10 months ago
This is a tricky one. The exhibit doesn't give me a clear picture of what's going on, and the answer choices all seem plausible. I'll need to use my security knowledge and troubleshooting skills to eliminate the less likely options and select the most probable cause.
upvoted 0 times
...
Elin
11 months ago
Okay, based on the question and the answer choices, it seems like the issue is related to an unauthorized SSH server or FTP client installation. I'll review the details of each option to figure out which one best matches the evidence in the exhibit.
upvoted 0 times
...
Annamaria
11 months ago
Hmm, the exhibit images don't seem to provide a lot of detail. I'm not sure I have enough information to confidently determine the cause of the issue. I'll need to read the question stem more closely and consider each answer option carefully.
upvoted 0 times
...
Judy
11 months ago
This looks like a pretty straightforward security incident analysis question. I'll start by carefully reviewing the exhibit images to see if I can spot any obvious signs of an attack or misconfiguration.
upvoted 0 times
...
Thora
12 months ago
Haha, I bet the attacker was trying to hide their tracks by installing an FTP client on a domain controller. Sneaky, but not very clever!
upvoted 0 times
Annice
8 months ago
Yeah, but it could be a distraction from the real issue.
upvoted 0 times
...
Louis
8 months ago
FTP on a domain controller? That's risky!
upvoted 0 times
...
Eun
9 months ago
True, but installing an SSH server is pretty sneaky too!
upvoted 0 times
...
Salena
9 months ago
I think it's more likely they opened port 22. That's a common move.
upvoted 0 times
...
...
Chara
1 year ago
I agree with Walker, installing an FTP client on a domain controller could be the cause of the issue.
upvoted 0 times
...
Walker
1 year ago
I think the issue might be related to an FTP client being installed on a domain controller.
upvoted 0 times
...
Refugia
1 year ago
Oh man, this is a tough one. I bet the engineer is really scratching their head, trying to figure out what's going on. Hopefully, they can use Cisco Secure Cloud Analytics to get to the bottom of this mystery!
upvoted 0 times
...
Derick
1 year ago
I'm not sure about that. The port 22 opening seems more suspicious to me. Maybe the attacker was trying to gain unauthorized access?
upvoted 0 times
Iola
11 months ago
I think you might be right. Opening port 22 could definitely be a sign of unauthorized access.
upvoted 0 times
...
...
Alishia
1 year ago
I disagree, I believe the issue is caused by an attacker opening port 22 on the host.
upvoted 0 times
...
Julio
1 year ago
Wait, but what if an FTP client was installed on a workstation? That could also be a potential issue, right?
upvoted 0 times
Glory
11 months ago
User 2: I think it could also be because an attacker opened port 22 on the host.
upvoted 0 times
...
Aliza
1 year ago
User 1: The cause of the issue is that an attacker installed an SSH server on the host.
upvoted 0 times
...
...
Gearldine
1 year ago
I think the cause of the issue is an attacker installing an SSH server on the host.
upvoted 0 times
...
Carri
1 year ago
Hmmm, looks like an attacker might have installed an SSH server on the host. That's definitely not a good sign!
upvoted 0 times
Chantell
1 year ago
B) An attacker opened port 22 on the host.
upvoted 0 times
...
Yesenia
1 year ago
A) An attacker installed an SSH server on the host.
upvoted 0 times
...
...

Save Cancel