Soru

Zorluk: OrtaMalware Detection, Removal, and Prevention

A helpdesk technician at an architectural design studio is remediating a Windows 11 rendering workstation infected with persistent adware and unauthorized browser extensions. The technician has isolated the system from the network, disabled System Restore, updated the anti-malware signatures, and successfully removed all malicious files during a scan in Safe Mode. Which of the following procedures should the technician perform NEXT to follow the standard CompTIA 7-step malware remediation process?

  1. Schedule automatic anti-malware updates and recurring system scans.Cevap
  2. B
    Re-enable System Restore and create a fresh restore point.
  3. C
    Conduct security awareness training with the workstation operator.
  4. D
    Execute sfc /scannow from an elevated command prompt to repair system files.

Cevap

The technician should schedule automatic anti-malware updates and recurring system scans.
The standard CompTIA 7-step malware remediation workflow proceeds as follows: 1. Identify malware symptoms, 2. Quarantine infected systems, 3. Disable System Restore, 4. Remediate infected systems (update anti-malware and scan/remove), 5. Schedule updates and run scans, 6. Enable System Restore and create a restore point, 7. Educate the end user. Since the technician has just finished Step 4 (updating signatures and removing threat files in Safe Mode), the mandatory next step is Step 5: scheduling automatic updates and recurring scans.

Adım Adım Çözüm

1
Identify the completed steps in the CompTIA 7-step malware remediation process.
The technician has completed Step 1 (Identify symptoms), Step 2 (Quarantine system), Step 3 (Disable System Restore), and Step 4 (Remediate system by updating definitions and scanning/removing malware).
Determining the current phase of remediation establishes where the technician is in the mandatory protocol.
2
Determine the next sequential step following Step 4 (Remediate infected systems).
Step 5 in the CompTIA 7-step process is 'Schedule updates and run scans'.
Automating recurring scans and updates ensures ongoing protection against recurring threats before restoring operational features like System Restore.
3
Select the option matching Step 5.
Scheduling automatic anti-malware updates and recurring scans directly corresponds to Step 5.
This action adheres to the strict sequence established by CompTIA security standards.

Anahtar Kavram

CompTIA 7-Step Malware Remediation Process Sequence
Tahmini Süre:1m 15s
Bu soruyu puanla