CompTIA CySA+ CS0-003 Practice Question
A security analyst is investigating a potential breach and needs to verify the integrity of system files. The analyst has a list of known good hash values for the files but finds that the current hash value of 'file.exe' does not match its corresponding known good hash value. Which of the following is the MOST likely explanation for this discrepancy?
The list of known good hash values contains errors and needs to be updated.
The hashing algorithm used to verify 'file.exe' has been updated to a new version causing inconsistency with previous results.
The file has been modified, potentially due to a malware infection or unauthorized alteration.
There was a transmission error when the hash value was calculated.