A desktop technician at a municipal water treatment facility is remediating a Windows 11 workstation used for SCADA oversight that has been infected with persistent adware and unauthorized browser redirects. The technician has already verified the malware symptoms and quarantined the computer from the network. According to the standard CompTIA 7-step malware remediation workflow, which TWO of the following actions should the technician perform NEXT prior to running a full anti-malware scan?
- Disable System Restore in Windows configuration settings.Cevap
- Update the anti-malware signature definitions and scanning engine.Cevap
- CEnable System Restore and generate a new restore point.
- DConduct end-user training on safe web browsing and browser security practices.
Cevap
The technician should disable System Restore in Windows settings and update the anti-malware signature definitions.
Following quarantine (Step 2), the technician must proceed sequentially to Step 3 (Disable System Restore) and Step 4a (Update anti-malware definitions). Disabling restore points ensures malware cannot hide within volume shadow copies, and updating definitions ensures the anti-malware engine can recognize the specific adware and browser hijacking components during the subsequent scan.
Adım Adım Çözüm
Anahtar Kavram
CompTIA 7-Step Malware Remediation Best Practices
Tahmini Süre:1m 30s