An IT support technician at a commercial bakery distribution facility has completed remediating a malware infection on an inventory control workstation. The technician previously isolated the system, disabled System Restore, removed the infected files, updated anti-malware definitions, and configured scheduled recurring scans. According to CompTIA standard malware removal procedures, which of the following actions should the technician take NEXT?
- Enable System Restore and create a new system restore point.Cevap
- BEducate the end user on malware prevention and safe browsing habits.
- CRun the System File Checker utility (`sfc /scannow`) to rebuild corrupted restore points.
- DRe-enable all disabled background startup services and startup applications.
Cevap
Enable System Restore and create a new system restore point.
According to the official CompTIA 7-step malware removal methodology (1. Identify symptoms, 2. Isolate system, 3. Disable System Restore, 4. Remediate infected systems, 5. Schedule scans and updates, 6. Enable System Restore and create a restore point, 7. Educate end user), once the technician has remediated the malware and configured recurring scans (Steps 4 and 5), the immediate NEXT step is to re-enable System Restore and generate a fresh, clean restore point (Step 6).
Adım Adım Çözüm
Anahtar Kavram
CompTIA 7-Step Malware Removal Procedure (Step 6: Enable System Restore)
Tahmini Süre:1m 0s