Answer – A
The AWS Documentation mentions the following.
Amazon GuardDuty is a managed threat detection service that continuously monitors for malicious or unauthorized behavior to help you protect your AWS accounts and workloads. It monitors for activity such as unusual API calls or potentially unauthorized deployments that indicate a possible account compromise. GuardDuty also detects potentially compromised instances or reconnaissance by attackers.
Option B is incorrect since this is used for API Monitoring.
Option C is incorrect since this is used for monitoring traffic in the VPC.Option D is incorrect since this is used for logging purposes.
For more information on Amazon GuardDuty, please visit the below link
https://aws.amazon.com/guardduty/