A help desk technician is responding to a ticket where a user's web browser consistently opens to a rogue search engine upon startup, and intrusive advertisement pop-ups appear periodically. The technician suspects a browser hijacker that modified shortcut parameters and installed a malicious extension. In what sequence should the technician perform the following steps to remediate the browser redirect and pop-up issue?
- 1Disconnect the workstation from the local network to isolate it from potential command-and-control servers.
- 2Inspect browser shortcut properties to remove injected URL arguments and uninstall unauthorized extensions.
- 3Reset browser security settings to default configurations and clear all cached web content and cookies.
- 4Execute a full anti-malware scan of the local system using updated signature definitions.
- 5Reconnect the workstation to the network and verify proper browser operation and redirect-free navigation.
Cevap
The correct sequence of steps is: 1) Disconnect the workstation from the local network; 2) Inspect browser shortcut properties to remove injected URL arguments and uninstall unauthorized extensions; 3) Reset browser security settings to default configurations and clear all cached web content and cookies; 4) Execute a full anti-malware scan of the local system; 5) Reconnect the workstation to the network and verify proper browser operation.
The correct order follows standard CompTIA malware and browser troubleshooting protocols: first isolate the system from the network to contain the threat; second, remove active browser hijacker components (shortcut target overrides and rogue extensions); third, reset browser settings and clear residual cached data and unauthorized notification permissions; fourth, run a comprehensive system anti-malware scan to clean OS-level artifacts; and fifth, restore network connectivity and verify resolution.
Adım Adım Çözüm
Anahtar Kavram
Browser Hijacker Remediation and Malware Best Practices