nerdexam
CompTIA

220-1002 · Question #365

A technician recently updated a printer driver on all the computers in an office. Shortly after the update, several users' accounts and passwords were compromised. Which of the following MOST likely…

The correct answer is A. Botnet. The listed correct answer is A (Botnet). The scenario describes a malicious printer driver that was distributed across all office computers simultaneously, which is consistent with a supply-chain or watering-hole attack that installs botnet malware. The botnet agent could then…

Hardware and network troubleshooting

Question

A technician recently updated a printer driver on all the computers in an office. Shortly after the update, several users' accounts and passwords were compromised. Which of the following MOST likely explains the compromised accounts?

Options

  • ABotnet
  • BRansomware
  • CAntivirus definitions
  • DKeylogger

How the community answered

(51 responses)
  • A
    67% (34)
  • B
    20% (10)
  • C
    8% (4)
  • D
    6% (3)

Explanation

The listed correct answer is A (Botnet). The scenario describes a malicious printer driver that was distributed across all office computers simultaneously, which is consistent with a supply-chain or watering-hole attack that installs botnet malware. The botnet agent could then exfiltrate credentials to a command-and-control server, compromising multiple accounts at once. Note: D (Keylogger) is arguably a more precise fit since a rogue driver with embedded keystroke logging directly explains how passwords were captured - and many test-takers would select D. If your exam source marks D as correct, that is also defensible. The key concept is that a malicious driver update is an attack vector for delivering credential-stealing malware.

Topics

#botnet#malicious driver#account compromise#malware infection

Community Discussion

No community discussion yet for this question.

Full 220-1002 Practice