A secretary receives an email from the company's chief executive officer with a request to pay a vendor immediately. After the payment is made, the chief executive officer tells the secretary that they never sent that email. Which of the following social engineering tactics best describes this type of attack?
A. Evil twin
B. Impersonation
C. Whaling
D. Spear phishing
Show Answer
Correct Answer: B
Explanation: The attacker pretended to be the company’s CEO in order to convince the secretary to make an immediate payment. That behavior is best described as impersonation—posing as a trusted individual to manipulate the victim. Whaling targets executives themselves, and spear phishing focuses on a targeted phishing campaign, but the defining characteristic here is impersonating the CEO.
Question 61
A technician installs a Bluetooth headset for a user. During testing, the sound is still coming from the speaker on the computer. The technician verifies the headset shows up in Device Manager. Which of the following would the technician most likely do to fix this issue?
A. Update the drivers for the wireless headset.
B. Replace the battery on the headset, and try again later.
C. Verify that the sound is not muted in the control panel.
D. Change the headset as the default device in sound settings.
Show Answer
Correct Answer: D
Explanation: The headset is detected by the system, but audio is still playing through the computer speakers. This indicates the output device has not been switched. Setting the Bluetooth headset as the default playback device in the sound settings will route audio to the headset.
Question 62
An administrator is investigating a technical outage. The management team wants information that includes the summary of the outage and actions taken. Which of the following documentation should the administrator provide to the management team?
A. Knowledge base article
B. Non-disclosure agreement
C. Incident report
D. Standard operating procedure
Show Answer
Correct Answer: C
Explanation: An incident report documents a technical outage by summarizing what happened, its impact, timeline, and the actions taken, which is exactly the information management needs. The other options serve different purposes (knowledge sharing, legal agreements, or procedures).
Question 63
A technician needs to disable guest log-ins on domain-joined desktop machines. Which of the following should the technician use?
A. Group Policy
B. Firewall
C. Microsoft Management Control
D. MSConfig
Show Answer
Correct Answer: A
Explanation: Group Policy allows centralized management of security and account settings across domain-joined machines. Disabling the Guest account (e.g., via the policy "Accounts: Guest account status") can be enforced consistently through a GPO, which the other tools cannot do at scale.
Question 64
Company employees do not have assigned workspaces and regularly work at different computers and physical locations. Which of the following should the company implement to maintain data security and minimize the amount of user data that needs to be transferred?
A. Centralized certificate storage
B. Cloud email
C. Portable drives
D. Roaming profiles
Show Answer
Correct Answer: D
Explanation: Employees work on different computers and locations, so their user data and settings should follow them without copying large amounts of data between devices. Roaming profiles store user profiles centrally and synchronize only necessary changes, allowing users to log in anywhere while maintaining security and minimizing local data transfer. Other options do not address user profile portability and data minimization.
Question 65
A technician follows the proper procedure for malware removal on an infected computer. However, the technician is unable to remove all the malware and decides to reload the OS. Which of the following should the technician select?
A. Version upgrade
B. System restore
C. OS repair
D. Clean install
Show Answer
Correct Answer: D
Explanation: If malware cannot be fully removed using standard remediation procedures, the recommended next step is to wipe the system and reload the operating system from a known-good source. A clean install formats the drive and installs a fresh OS, ensuring all malware is eliminated. The other options retain existing files or system components and may leave persistent malware behind.
Question 66
An international traveler is concerned about others accessing the contents of their smartphone if it is lost or stolen. The traveler has enabled biometrics. Which of the following additional security measures further reduces the risk of unauthorized data access?
A. Remote backups
B. Location tracking
C. PIN code screen lock
D. Device encryption
Show Answer
Correct Answer: D
Explanation: Device encryption protects the data stored on the smartphone at rest, ensuring that even if the device is lost, stolen, or the screen lock is bypassed, the contents remain unreadable without the proper credentials. This provides stronger protection beyond biometrics alone.
Question 67
A Windows 11 Home device is receiving constant pop-ups about an urgent need to update antivirus software in order to remove a detected threat. The user has been clicking the "X" button in the window frame, but it always reappears. The pop-up includes an "OK" button to install the update and remove the threat. Which of the following should the user do next?
A. Click the "OK" button to install the update.
B. Reinstall the Windows Operating System.
C. Run System File Checker.
D. Verify the current status and settings of protection measures.
Show Answer
Correct Answer: D
Explanation: Persistent pop-ups urging immediate antivirus updates are commonly scareware or browser-based notifications rather than legitimate system alerts. Clicking "OK" risks installing malware. Before taking drastic actions like reinstalling Windows or running system file checks, the correct next step is to verify the actual antivirus and Windows Security status in Settings to confirm whether protection is enabled and up to date, and to identify any rogue notifications.
Question 68
An end user wants to have a sales printer added to their computer. The printer is on the domain. Which of the following is the best method for the technician to add the printer?
A. Go to the print server and select the printer name.
B. Connect the laptop to the printer via US
C. Connect to the printer via Bluetooth.
D. Go to Local User and Groups to add the printer.
Show Answer
Correct Answer: A
Explanation: Because the printer is on the domain, the standard and best practice is to add it through the print server by selecting the shared printer name. This ensures proper drivers, permissions, and centralized management. The other options (USB, Bluetooth, or Local Users and Groups) are inappropriate for a domain-based network printer.
Question 69
An administrator requires information about a server to identify the product owner and whether it has any business-critical services. Which of the following can the administrator refer to in order to find this information?
A. CMDB
B. SLA
C. SOP
D. EULA
Show Answer
Correct Answer: A
Explanation: A Configuration Management Database (CMDB) contains detailed information about servers and other configuration items, including ownership, purpose, and whether they support business‑critical services. SLAs define service targets, SOPs describe procedures, and EULAs cover licensing, not asset ownership or criticality.
$19
Get all 187 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.