ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 440 - SK0-005 discussion

Report
Export

A junior administrator reported that the website used for anti-malware updates is not working. The senior administrator then discovered all requests to the anti-malware site are being redirected to a malicious site. Which of the following tools should the senior administrator check first to identify the potential cause of the issue?

A.

Data loss prevention

Answers
A.

Data loss prevention

B.

File integrity monitor

Answers
B.

File integrity monitor

C.

Port scanner

Answers
C.

Port scanner

D.

Sniffer

Answers
D.

Sniffer

Suggested answer: D

Explanation:

A sniffer (also known as a packet analyzer) is a tool that captures and inspects data packets traveling across the network. In this case, using a sniffer would help identify suspicious or malicious redirection of traffic, possibly caused by a man-in-the-middle attack, DNS hijacking, or malware.

Sniffer (Answer D): This tool will allow the senior administrator to inspect the network traffic and identify if and how requests to the anti-malware website are being intercepted or redirected.

Data loss prevention (Option A): DLP tools focus on preventing data leakage rather than analyzing traffic redirection.

File integrity monitor (Option B): This checks for unauthorized changes to files, which may not directly address network traffic redirection.

Port scanner (Option C): A port scanner would only identify open ports on devices, which is unrelated to the redirection issue.

CompTIA Server+

Reference:

This topic is addressed under SK0-005 Objective 4.2: Explain server roles and their purposes.

asked 06/11/2024
Aldrin Plata
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first