A tier-2 desktop support technician is investigating a Windows 11 workstation where users report persistent pop-up advertisement redirects. While auditing the browser environment, the technician removes a rogue browser add-on, but finds that a local HTTP proxy setting pointing to address automatically reinstates itself in the system network settings every time the computer restarts. Which of the following actions should the technician perform NEXT to permanently resolve the redirect issue?
- Inspect Task Scheduler and background system services for unauthorized persistence scripts or executable files re-applying the proxy settings.Cevap
- BClear the web browser's local storage, cache, and SSL state cache via the Internet Options applet.
- CRun netsh winsock reset from an elevated command prompt to repair corrupted local system file signatures.
- DConfigure User Account Control (UAC) to the highest level to block unauthorized web page redirects.
Cevap
Inspect Task Scheduler and background system services for unauthorized persistence scripts or executable files re-applying the proxy settings.
Inspecting Task Scheduler and background services directly targets the persistent loader causing the setting to revert. Adware and browser hijackers frequently write scheduled tasks or background services to monitor and re-apply proxy registry entries whenever the user logs in or reboots.
Adım Adım Çözüm
Anahtar Kavram
Browser Hijacker Persistence Remediation
Tahmini Süre:1m 15s