nerdexam
CompTIA

220-1102 · Question #384

A company is experiencing a DDoS attack. Several internal workstations are the source of the traffic. Which of the following types of infections are the workstations most likely experiencing?…

The correct answer is A. Zombies D. Botnet. Internal workstations acting as sources of a DDoS attack indicate they are compromised and part of a botnet, effectively becoming "zombies" controlled by an attacker.

Security

Question

A company is experiencing a DDoS attack. Several internal workstations are the source of the traffic. Which of the following types of infections are the workstations most likely experiencing? (Choose two.)

Options

  • AZombies
  • BKeylogger
  • CAdware
  • DBotnet
  • ERansomware
  • FSpyware

How the community answered

(41 responses)
  • A
    80% (33)
  • B
    10% (4)
  • C
    2% (1)
  • E
    2% (1)
  • F
    5% (2)

Why each option

Internal workstations acting as sources of a DDoS attack indicate they are compromised and part of a botnet, effectively becoming "zombies" controlled by an attacker.

AZombiesCorrect

Workstations compromised by malware and used to launch attacks are often referred to as "zombies" because they are under the control of an attacker (botmaster) without the user's knowledge, contributing to larger attacks like DDoS.

BKeylogger

A keylogger captures keystrokes and is designed for espionage or data theft, not for launching DDoS attacks.

CAdware

Adware displays unwanted advertisements and does not typically turn a system into a platform for launching DDoS attacks.

DBotnetCorrect

A botnet is a network of compromised computers (bots) controlled by a single attacking party (botmaster) and is commonly used to launch large-scale distributed denial of service (DDoS) attacks, where each bot contributes traffic. The workstations in this scenario are acting as bots within a botnet.

ERansomware

Ransomware encrypts a user's files and demands payment, and while disruptive, it does not typically turn the infected system into a DDoS attack source.

FSpyware

Spyware secretly monitors user activity and collects information, similar to a keylogger, but is not designed to participate in DDoS attacks.

Concept tested: Malware types and DDoS attack sources

Source: https://www.microsoft.com/en-us/security/business/security-101/what-is-ddos-attack

Topics

#DDoS attack#Botnet#Zombie computer#Malware types

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice