A desktop support technician at a biotechnology research facility is remediating a Windows 11 workstation infected with a keylogger. The technician has already identified the malware symptoms, disconnected the system from the local network to quarantine it, and disabled System Restore. According to the CompTIA standard 7-step malware remediation process, which of the following actions should the technician perform NEXT?
- Update the anti-malware software signature definitions.Cevap
- BPerform a full system anti-malware scan to isolate and remove the threat.
- CRe-enable System Restore and create a fresh system restore point.
- DExecute sfc /scannow from an elevated command prompt to repair corrupted system files.
Cevap
Update the anti-malware software signature definitions.
According to the CompTIA 7-step malware remediation process, once System Restore is disabled (Step 3), the technician must proceed to Step 4: Remediate the infected system. The very first action in remediation is updating the anti-malware software and signature definitions (Step 4a) before scanning and removing the malware (Step 4b).
Adım Adım Çözüm
Anahtar Kavram
CompTIA 7-Step Malware Remediation Process Sequence