nerdexam
CompTIA

220-1002 · Question #247

Ann, an external user, has received several calls from a company asking why she has been sending the company communications with internal users' names in the "from field". Ann calls a technician and…

The correct answer is A. Hijacked email. Since Ann's name and email are being used to send messages she did not originate, and her PC is clean, the email account itself has been compromised (hijacked). Attackers can gain access to an email account through credential theft or phishing and send messages from it, or…

Networking

Question

Ann, an external user, has received several calls from a company asking why she has been sending the company communications with internal users' names in the "from field". Ann calls a technician and explains she has not been sending any communications and would like this issue fixed. The technician investigates and determines the PC is not infected with any viruses or malware. Which of the following should the technician check NEXT?

Options

  • AHijacked email
  • BDNS entries
  • CHosts file
  • DPOP3 errors

How the community answered

(23 responses)
  • A
    83% (19)
  • B
    4% (1)
  • C
    9% (2)
  • D
    4% (1)

Explanation

Since Ann's name and email are being used to send messages she did not originate, and her PC is clean, the email account itself has been compromised (hijacked). Attackers can gain access to an email account through credential theft or phishing and send messages from it, or spoof the 'from' address. DNS entries and the hosts file affect name resolution, not email spoofing. POP3 errors are protocol-level connectivity issues unrelated to spoofed outbound messages.

Topics

#email hijacking#email spoofing#security#email

Community Discussion

No community discussion yet for this question.

Full 220-1002 Practice