Courseiva
mediumMultiple ChoiceObjective-mapped

220-1102 Practice Question: That their web browser's homepage has changed to…

A user reports that their web browser's homepage has changed to an unfamiliar search engine, and new toolbars have appeared without their consent. They have not installed any new software recently. Which type of malware is most likely responsible?

⚠ Common exam trap

CompTIA often tests the distinction between malware types by focusing on specific symptoms—here, the trap is that candidates confuse a browser hijacker with a Trojan horse because both can be installed without consent, but only the hijacker directly targets browser settings.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Browser hijacker

The symptoms—unwanted homepage changes, unfamiliar search engine, and new toolbars—are classic signs of a browser hijacker. This malware modifies browser settings (e.g., via registry keys or extension policies) without user consent, often bundled with freeware or installed through drive-by downloads. Unlike other malware types, it specifically targets the browser's configuration to redirect traffic and generate ad revenue.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Trojan horse

    Why it's wrong here

    A Trojan horse is a type of malware that disguises itself as legitimate software to trick users into installing it. Once executed, Trojans typically create backdoors for remote access, steal sensitive data, or download additional malicious payloads. While a Trojan could potentially facilitate other malware that changes browser settings, its primary function is not to directly alter a web browser's homepage.

  • Worm

    Why it's wrong here

    A worm is a standalone malicious program that replicates itself to spread to other computers, often exploiting network vulnerabilities without user interaction. Its primary goal is typically to consume network bandwidth, install backdoors, or deliver other malware payloads, leading to system instability or further compromise. Worms do not inherently target or modify specific browser settings like the homepage; their focus is on propagation and network impact.

  • Browser hijacker

    Why this is correct

    A browser hijacker is a type of unwanted software that modifies a web browser's settings without the user's permission. This typically includes changing the default homepage, search engine, or installing unwanted toolbars and extensions. The objective is often to redirect traffic to specific websites, display advertisements, or collect browsing data, significantly impacting the user's browsing experience and privacy.

  • Ransomware

    Why it's wrong here

    Ransomware is a malicious software that encrypts a user's files or locks down their computer system, then demands a ransom payment, usually in cryptocurrency, for the decryption key or system restoration. Its core function is extortion through data denial, making it distinctly different from malware that merely alters browser configurations. Ransomware's impact is severe data loss or system inaccessibility, not a changed homepage.

About these practice questions

Courseiva writes every 220-1202 question from scratch — 495 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.