Tüm alıştırma soruları

3551 soru

Soru 2481Soru

A help desk technician is assisting an international employee who recently relocated to a new regional office. The employee needs to adjust the system currency and date formatting to match local standards, as well as configure folder cache settings to keep shared network files accessible while working offline. Which TWO Control Panel utilities should the technician open to configure these settings? (Select TWO.)

Geçerli olan tümünü seçin

Cevabı ve açıklamayı göster

Cevap: Region; Sync Center

Cevap

Region and Sync Center are the two Control Panel utilities required to complete these tasks.
The Region utility controls localized formatting such as dates, times, numbers, and currency. Sync Center manages Offline Files, enabling users to access shared network folder contents when disconnected from the corporate network.

Adım Adım Çözüm

1
Identify the applet required for localized date and currency standards.
Opening the Region utility allows customization of system date, time, currency, and numerical formats.
Localized formatting standards are managed within the Region applet.
2
Identify the applet required for offline file synchronization.
Opening the Sync Center utility allows configuration and management of Offline Files cached from network shares.
Network file synchronization and offline file caching are controlled through Sync Center.

Anahtar Kavram

Windows Control Panel Utilities for Regional Settings and Offline File Sync
Soru 2482Soru

A cloud engineer managing a web application for an international company receives an official request from an account holder residing in France who wants all of their profile details, search query history, and stored preferences permanently deleted from company databases. Which data privacy regulation directly obligates the organization to fulfill this specific request?

Cevabı ve açıklamayı göster

Cevap: General Data Protection Regulation (GDPR) right to erasure

Cevap

General Data Protection Regulation (GDPR) right to erasure
The General Data Protection Regulation (GDPR) applies to personal data processing of individuals located in the European Union. Its 'right to erasure' (or right to be forgotten) grants individuals the legal right to request the permanent deletion of their personal data from an organization's systems.

Adım Adım Çözüm

1
Identify the data subject and jurisdiction described in the scenario
The user resides in France (European Union), establishing jurisdiction under European data privacy legislation.
Data privacy requirements depend heavily on the geographic location of the individual whose data is being processed.
2
Analyze the nature of the request
The request asks for permanent deletion of personal account details, query history, and preferences.
Determines which specific data subject right or regulatory mandate is being invoked.
3
Map the request and jurisdiction to the appropriate regulatory directive
The GDPR right to erasure (right to be forgotten) explicitly covers deletion requests for EU citizens' personal data.
GDPR grants EU data subjects specific controls over their personal data, including removal upon request when processing is no longer required.

Anahtar Kavram

GDPR Data Subject Rights and Right to Erasure
Tahmini Süre:1m 15s
Soru 2483Soru

A system technician is inventorying motherboard components and form factors for an upcoming workstation deployment. Match each motherboard form factor or internal connector on the left with its defining design specification or primary function on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Micro-ATX form factor
8-pin EPS12V connector
PCIe x1 expansion slot
20-pin USB 3.0 header

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Micro-ATX matches the 9.6 × 9.6 inch maximum form factor specification; 8-pin EPS12V matches dedicated +12V CPU power delivery; PCIe x1 matches the single serial lane for lower-bandwidth expansion cards; 20-pin USB 3.0 header matches the keyed connection for front-panel SuperSpeed ports.
Micro-ATX motherboards strictly adhere to the 9.6 × 9.6 inch dimensional standard with up to 4 expansion slots. The 8-pin EPS12V connector delivers dedicated +12V power to the processor's VRMs. The PCIe x1 slot provides a single serial lane ideal for basic expansion cards. The 20-pin internal header connects USB 3.0 front-panel ports.

Adım Adım Çözüm

1
Identify the physical dimensions and slot limitations of common motherboard form factors.
Micro-ATX is defined by maximum dimensions of 9.6 × 9.6 inches with a maximum of 4 expansion slots.
Differentiates Micro-ATX from standard ATX (12 × 9.6 inches) and Mini-ITX (6.7 × 6.7 inches).
2
Analyze the primary role of the 8-pin EPS12V power connector.
It supplies supplementary +12V power directly to the CPU power phase components.
Main 24-pin ATX power supplies overall motherboard logic, whereas EPS12V specifically feeds CPU voltage regulators.
3
Determine throughput capabilities of PCIe slot configurations.
A PCIe x1 slot contains 1 communication lane for lower bandwidth devices like Wi-Fi or sound cards.
PCIe lanes scale from x1 up to x16 depending on bandwidth demands.
4
Match internal motherboard headers with front-panel connector types.
The 20-pin (19-pin active) keyed header connects front-panel USB 3.0 / USB 3.2 Gen 1 ports.
Distinguishes 5Gbps USB 3.0 headers from 9-pin USB 2.0 headers and front-panel audio headers.

Anahtar Kavram

Motherboard Form Factors, Power Connectors, Expansion Slots, and Internal Headers
Tahmini Süre:1m 30s
Soru 2484Soru

An IT infrastructure coordinator is organizing change request documentation to upgrade the central enterprise resource planning (ERP) application server over an upcoming weekend. Which of the following elements MUST be included in the change request before submitting it to the Change Advisory Board (CAB) for review? (Select TWO.)

Geçerli olan tümünü seçin

Cevabı ve açıklamayı göster

Cevap: A detailed scope of change outlining the exact software, hardware, and network services affected by the upgrade.; A documented rollback plan specifying procedures for restoring the server to its previous working state if the upgrade encounters critical issues.

Cevap

The correct elements that must be included in the change request are the detailed scope of change outlining affected systems and services, and a documented rollback plan specifying procedures for restoring the server if the upgrade fails.
Proper change management standards mandate that a formal request submitted to the Change Advisory Board includes a detailed scope of change (to identify all impacted systems and configurations) and a documented rollback plan (to provide an actionable recovery path if the change fails).

Adım Adım Çözüm

1
Identify the mandatory documentation components required during the pre-change phase of formal change management.
Formal change proposals require defining the scope of change, risk/impact analysis, schedule, plan for change, end-user notification, and a documented rollback plan.
The Change Advisory Board (CAB) evaluates risk and business impact based on comprehensive documentation before approving implementation.
2
Evaluate each provided option against standard CompTIA change management workflow rules.
The scope of change and the rollback plan are necessary pre-implementation requirements. Pre-deploying changes to production or skipping post-implementation testing breaches proper change controls.
Changes must never be executed on production systems prior to CAB approval, and post-implementation verification must always be conducted post-deployment.

Anahtar Kavram

Change Management Processes and Documentation Requirements
Soru 2485Soru

Match each storage medium and disposition scenario with its most appropriate data destruction or sanitization method based on CompTIA security standards.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Magnetic backup tape cartridges scheduled for permanent retirement
NVMe solid-state drives (SSDs) scheduled for internal reallocation to another department
Failed non-functional magnetic hard disk drive (HDD) containing sensitive data
Physical paper records and confidential optical discs slated for destruction

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Magnetic tapes match with degaussing; NVMe SSDs for reuse match with cryptographic erase; failed HDDs match with drive platter drilling or physical shredding; paper records and optical discs match with incineration or cross-cut shredding.
Each disposal method aligns directly with the underlying storage architecture and operational lifecycle requirement: degaussing destroys magnetic tape domains; cryptographic erasure sanitizes flash-based SSDs for safe internal reuse; physical destruction (drilling/shredding) guarantees data residual elimination on non-functional HDDs; and cross-cut shredding or incineration disposes of paper and optical media.

Adım Adım Çözüm

1
Identify the media substrate (magnetic, flash, paper/optical) and the disposition goal (reuse vs. destruction).
Magnetic tape and failed HDD are magnetic; SSD is flash memory; paper/optical are non-magnetic physical substrates.
Different storage technologies require specific destruction techniques to prevent data exposure.
2
Select the appropriate technique for each medium.
Degaussing works on magnetic tape; Cryptographic erase purges SSD data while preserving drive functionality for reuse; Physical drilling/shredding permanently destroys failed HDDs; Cross-cut shredding or incineration destroys paper and optical media.
Applying degaussing to SSDs fails because flash memory relies on floating-gate transistors, not magnetic domains.

Anahtar Kavram

Data Destruction and Disposal Methods
Soru 2486Soru

A technician is troubleshooting a desktop computer that displays the error 'Operating System Not Found' during startup. Upon inspecting the system, the technician notices a non-bootable USB flash drive connected to one of the external USB ports. Which of the following is the most likely cause of this boot error?

Cevabı ve açıklamayı göster

Cevap: The system BIOS/UEFI is attempting to boot from the non-bootable USB drive prior to the primary hard drive.

Cevap

The system BIOS/UEFI is attempting to boot from the non-bootable USB drive prior to the primary hard drive.
If the BIOS/UEFI firmware is configured with removable storage devices listed ahead of the primary internal hard drive in the boot order, the computer attempts to boot from the connected USB drive. Because the USB drive lacks boot files, the motherboard outputs an error such as 'Operating System Not Found'. Removing the drive or updating the boot sequence resolves the issue.

Adım Adım Çözüm

1
Analyze the error message and physical environment.
The screen reports 'Operating System Not Found' while an external non-bootable USB flash drive is attached.
External storage devices cause startup failures if the firmware boot order lists USB drives above the internal hard drive containing Windows.
2
Identify the primary cause and immediate resolution.
Recognize that removing the USB drive or adjusting the BIOS/UEFI boot order allows the PC to locate the operating system on the internal drive.
Removing non-bootable media forces the firmware to proceed to the next device in the boot priority sequence.

Anahtar Kavram

BIOS/UEFI Boot Order Configuration
Tahmini Süre:1m 0s
Soru 2487Soru

A network technician is configuring a SOHO wireless router for a small law firm. The firm wants to upgrade its wireless security to protect against offline password dictionary attacks and packet eavesdropping, but lacks the infrastructure to deploy a RADIUS server for central authentication. Which of the following wireless security standards should the technician implement?

Cevabı ve açıklamayı göster

Cevap: WPA3-Personal

Cevap

WPA3-Personal should be implemented because it utilizes Simultaneous Authentication of Equals (SAE) to protect against offline dictionary attacks while operating in pre-shared key mode without requiring a RADIUS server.
WPA3-Personal introduces Simultaneous Authentication of Equals (SAE) to replace the Pre-Shared Key (PSK) mechanism. SAE ensures forward secrecy and prevents offline dictionary attacks against captured handshake frames, fulfilling the firm's security goals without requiring an 802.1X/RADIUS server deployment.

Adım Adım Çözüm

1
Analyze the scenario constraints and security objectives
The firm requires protection against offline dictionary attacks without deploying a RADIUS server.
SOHO environments without centralized AAA servers cannot implement 802.1X/Enterprise authentication modes.
2
Evaluate candidate wireless security standards
WPA3-Personal replaces the traditional WPA2 Pre-Shared Key (PSK) 4-way handshake with Simultaneous Authentication of Equals (SAE).
SAE prevents offline dictionary cracking even if a passphrase is weak, fulfilling both security and infrastructure requirements.

Anahtar Kavram

WPA3-Personal authentication mechanisms and Simultaneous Authentication of Equals (SAE)
Soru 2488Soru

A technician is troubleshooting a desktop workstation that is experiencing intermittent system crashes and memory-related errors. The technician suspects an issue with the installed memory. Which TWO of the following diagnostic steps or checks should the technician perform to troubleshoot physical RAM issues?

Geçerli olan tümünü seçin

Cevabı ve açıklamayı göster

Cevap: Run a bootable memory diagnostic tool to test each RAM module individually for read/write errors.; Verify that memory modules are installed into the correct alternating slot channels as specified by the motherboard documentation.

Cevap

Running a bootable memory diagnostic tool to test modules individually and verifying that memory modules are correctly populated in designated motherboard channels are the two appropriate diagnostic steps.
Executing a bootable memory diagnostic isolates physical hardware faults without operating system interference, and verifying slot population according to motherboard specifications ensures proper multi-channel operation and physical stability.

Adım Adım Çözüm

1
Isolate hardware memory integrity
Memory diagnostic utilities (like MemTest86) run outside the OS environment to detect defective memory cells.
Testing each stick individually isolates specific faulty modules.
2
Inspect physical motherboard memory slot population
Proper placement in multi-channel slot configurations guarantees system stability and performance.
Incorrect slot population can lead to system instability, improper bus speeds, or unrecognised RAM.

Anahtar Kavram

RAM Diagnostics and Dual-Channel Slot Configuration
Soru 2489Soru

A technician identifies that a Windows computer is infected with malware. Arrange the following steps of the standard CompTIA malware removal procedure in the correct sequential order from first to last.

Öğeleri doğru sıraya koymak için sürükleyin

Cevabı ve açıklamayı göster

Cevap

The correct sequence of steps is: 1) Disconnect the computer from the local network and disable wireless connections, 2) Turn off System Restore in Windows to remove existing restore points, 3) Update the anti-malware signatures and perform a full system scan, and 4) Enable System Restore and create a clean restore point.
According to CompTIA's standard 7-step malware removal procedure, isolation of the infected system must occur first (Step 2) to stop the spread of infection. Disabling System Restore follows (Step 3) to clear infected restore points. Next, remediation occurs by updating anti-malware definitions and running scans (Step 4). Finally, System Restore is re-enabled and a clean restore point is created (Step 6) after verifying system cleanliness.

Adım Adım Çözüm

1
Isolate the infected device
Network communication is severed, stopping potential lateral movement or C2 communication.
CompTIA Step 2 (Isolate infected systems) must happen before modifying system configuration or scanning.
2
Disable System Restore
All existing restore points (which may contain malware copies) are purged.
CompTIA Step 3 (Disable System Restore) prevents reinfection from system restore points during remediation.
3
Remediate infected systems
Malware is scanned and removed using current signatures.
CompTIA Step 4 (Remediate infected systems) cleans the operating system environment.
4
Enable System Restore
A clean recovery baseline is established for future system protection.
CompTIA Step 6 (Enable System Restore and create a restore point) takes place after the malware is confirmed removed.

Anahtar Kavram

CompTIA 7-Step Malware Removal Process
Soru 2490Soru

A technician is sanitizing a local volume on a Windows 11 workstation after sensitive files were manually deleted. To comply with corporate privacy requirements, the technician must overwrite all unallocated disk space to prevent data recovery from deleted clusters, while preserving all existing active files on the drive. Which of the following commands should the technician execute from an elevated command prompt?

Cevabı ve açıklamayı göster

Cevap: cipher /w:C:

Cevap

The command 'cipher /w:C:' should be executed to overwrite all unallocated disk space on the C: drive without altering existing files.
The 'cipher /w:C:' command specifically targets and overwrites unallocated disk space on the specified volume. This permanently removes residual data left behind by deleted files while leaving all current active files untouched.

Adım Adım Çözüm

1
Identify the administrative requirement
Unallocated space containing deleted files needs to be securely wiped while keeping active system and user files intact.
Standard file deletion in Windows only removes pointers to data clusters, leaving recoverable data in unallocated space.
2
Select the appropriate native Windows command-line utility and switch
The 'cipher' tool with the '/w' switch is designed specifically to wipe available (free) space on NTFS or FAT volumes.
Executing 'cipher /w:C:' writes zeroed data, ones, and random numbers across unallocated clusters on the target directory or drive.

Anahtar Kavram

Windows Command-Line Utilities - Cipher /W Wiping Unallocated Space
Soru 2491Soru

A software development firm requires developer virtual machines that engineers can provision independently using a cloud management portal whenever new code repositories are created, without waiting for manual IT administration approval. Which cloud computing characteristic best describes this capability?

Cevabı ve açıklamayı göster

Cevap: On-demand self-service

Cevap

On-demand self-service
On-demand self-service allows consumers to provision cloud resources unilaterally without requiring direct intervention from cloud administrators or IT support personnel.

Adım Adım Çözüm

1
Analyze the operational requirement presented in the scenario.
Engineers need the ability to directly request and launch virtual machines through an automated portal without waiting for administrative approval.
Identifying key operational workflows helps determine which specific NIST cloud characteristic is being leveraged.
2
Evaluate standard cloud characteristics against the independent provisioning workflow.
On-demand self-service directly enables users to acquire compute resources independently as needed without human-to-human interaction.
This matches the definition of on-demand self-service under cloud computing standards.

Anahtar Kavram

On-Demand Self-Service in Cloud Computing
Soru 2492Soru

A bench technician is performing scheduled preventive maintenance and calibration on a Fused Deposition Modeling (FDM) 3D printer that has begun exhibiting poor first-layer adhesion and inconsistent filament extrusion. Which TWO of the following maintenance actions should the technician perform to resolve these issues? (Select TWO.)

Geçerli olan tümünü seçin

Cevabı ve açıklamayı göster

Cevap: Level the build plate and calibrate the Z-axis offset; Clean the heated print bed surface and clear residue from the extruder nozzle

Cevap

The correct maintenance actions are leveling the build plate while calibrating the Z-axis offset, and cleaning the heated print bed surface while clearing residue from the extruder nozzle.
For Fused Deposition Modeling (FDM) 3D printers, first-layer adhesion issues are primarily caused by an unlevel build plate or incorrect Z-axis offset gap between the nozzle and the bed. Inconsistent extrusion is typically caused by partial nozzle clogs or buildup on the extruder tip. Therefore, leveling the build plate, calibrating Z-axis offset, cleaning the print bed surface, and clearing nozzle residue are the correct maintenance actions.

Adım Adım Çözüm

1
Analyze the symptoms described in the scenario
The FDM printer experiences poor first-layer adhesion and inconsistent filament extrusion.
Identifying the printer technology (FDM) and failure symptoms points directly to bed distance and hot-end/nozzle delivery mechanisms.
2
Identify correct maintenance steps for FDM adhesion and extrusion
Leveling the print bed and adjusting the Z-axis offset establishes the correct distance between the nozzle and bed. Cleaning the print bed removes oils that prevent adhesion, and unclogging/cleaning the nozzle restores consistent filament output.
These steps address both first-layer bonding and mechanical extrusion pathway obstructions.
3
Differentiate FDM components from SLA and laser printer components
Resin vats belong to SLA printers, while fusers and charge rollers belong to laser printers.
CompTIA A+ requires distinguishing consumables and maintenance parts across different printer technologies.

Anahtar Kavram

FDM 3D Printer Maintenance and Consumables Troubleshooting
Soru 2493Soru

An IT administrator is preparing training material for help desk technicians on basic scripting constructs and data elements. Match each scripting concept on the left with its corresponding syntax or functional example on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Environment Variable
String Data Type
Loop Construct
Conditional Branch

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Environment Variable matches dynamic system parameter syntax (%USERPROFILE%), String Data Type matches quoted text values ("C:\Logs\output.txt"), Loop Construct matches repetitive execution blocks (for/while), and Conditional Branch matches decision structures (if/else).
Each scripting construct fulfills a distinct role in automation: environment variables store dynamic OS properties, strings hold literal text values, loops repeat tasks across data sets or conditions, and conditional branches direct code execution based on logical checks.

Adım Adım Çözüm

1
Identify the construct representing dynamic operating system properties.
Match Environment Variable to %USERPROFILE% / $env:COMPUTERNAME syntax.
Environment variables hold dynamic paths and configuration parameters assigned by the operating system.
2
Identify literal text data within scripts.
Match String Data Type to quoted path text.
Strings consist of alphanumeric text sequences surrounded by quotation marks.
3
Identify repetitive execution mechanisms.
Match Loop Construct to iterative control blocks like for and while.
Loops iterate through collections or repeat actions until termination criteria are met.
4
Identify decision-making flow control mechanisms.
Match Conditional Branch to logic structures like if/else.
Conditionals branch script execution based on true/false condition evaluations.

Anahtar Kavram

Basic Scripting Languages and Constructs
Soru 2494Soru

A corporate workstation is experiencing persistent web browser redirects to untrusted promotional websites whenever a user attempts to navigate to standard corporate URLs. In what order should a technician perform the following steps to properly remediate the browser security compromise?

Öğeleri doğru sıraya koymak için sürükleyin

Cevabı ve açıklamayı göster

Cevap

The correct sequence of steps is: Disconnect the workstation from the network; Terminate active browser processes via Task Manager; Remove unrecognized browser extensions and reset browser settings; Inspect the Windows hosts file and clear unauthorized proxy settings; Perform a full system anti-malware scan, reconnect to the network, and verify proper browser operation.
Remediating a browser redirection issue follows standard malware response principles: first isolate the system from the network to stop active communication, terminate active processes, clean browser application components (extensions and settings), inspect OS-level redirection configurations (hosts file and proxy settings), and finally perform a comprehensive anti-malware scan before reconnecting to confirm resolution.

Adım Adım Çözüm

1
Isolate the compromised machine from the network.
Network communication between the compromised browser/adware and external malicious servers is halted.
Isolation stops telemetry, prevents further adware payload downloads, and protects network assets.
2
Close active browser sessions and end malicious processes in Task Manager.
Memory-resident browser hijacker scripts and rogue helper objects are stopped.
Attempting to change settings while malicious processes are running can cause settings to immediately revert.
3
Purge rogue browser extensions and restore browser defaults.
Malicious search engines, home page hijacks, and pop-up scripts integrated into the browser profile are removed.
Browser add-ons are common vectors for search hijacking and persistent pop-up generation.
4
Review system-level network configurations including proxy settings and the hosts file.
System-wide traffic redirection rules configured in the OS layer are restored to default clean states.
Browser hijackers often inject loopback redirects into the hosts file or set up rogue local proxies to survive browser resets.
5
Execute an anti-malware scan, restore network access, and test web browsing.
System integrity is confirmed and verified clean before returning the system to normal operations.
Ensures no secondary malware persistence mechanisms remain active.

Anahtar Kavram

Browser Hijacker and Redirect Remediation Workflow
Soru 2495Soru

An IT support technician is setting up several new computers for a small business running Windows 11 Home. The technician opens the Run dialog and attempts to launch the Local Security Policy console using secpol.msc to adjust User Account Control (UAC) elevation settings, but Windows displays an error stating that the file cannot be found. Which of the following explains why the technician is unable to open this management snap-in?

Cevabı ve açıklamayı göster

Cevap: The Local Security Policy editor is not included in the Home edition of Windows.

Cevap

The Local Security Policy editor (secpol.msc) is an advanced management feature available in Windows Professional, Enterprise, and Education editions, but is absent in Windows Home edition.
The correct answer correctly identifies that the Local Security Policy console (secpol.msc) is a management feature restricted to Windows Pro, Enterprise, and Education editions. On Windows Home editions, attempting to launch secpol.msc produces an error because the utility is omitted from the operating system build.

Adım Adım Çözüm

1
Identify the requested tool and target operating system edition.
The technician is attempting to access secpol.msc on a computer running Windows 11 Home.
Understanding OS feature boundaries helps determine tool availability.
2
Evaluate feature support for administrative tools across Windows editions.
Local Security Policy (secpol.msc) and Group Policy (gpedit.msc) are excluded from Windows Home editions.
Microsoft reserves centralized and advanced policy management consoles for Pro, Enterprise, and Education editions.
3
Select the correct explanation for the missing executable/snap-in error.
The tool cannot be launched because it is not included in the installed edition of Windows.
This directly accounts for why secpol.msc cannot be found by the OS.

Anahtar Kavram

Windows Edition Feature Availability and Security Policy Tools
Soru 2496Soru

A system administrator is configuring a bare-metal virtualization host equipped with 64 GB64\text{ GB} of physical RAM. The hypervisor requires a dedicated allocation of 8 GB8\text{ GB} of RAM for host management and system overhead. Each virtual machine (VM) deployed on the host requires 4 GB4\text{ GB} of RAM. Assuming memory overcommitment is not permitted, what is the maximum number of virtual machines that can be concurrently hosted on this server?

Cevabı ve açıklamayı göster

Cevap: 14

Cevap

The maximum number of virtual machines that can be concurrently hosted is 14.
To determine the maximum number of virtual machines, host RAM overhead must first be subtracted from the total physical memory. 64 GB8 GB=56 GB64\text{ GB} - 8\text{ GB} = 56\text{ GB} of memory remains available for guest virtual machines. Dividing 56 GB56\text{ GB} by 4 GB4\text{ GB} per VM yields a maximum capacity of 14 VMs.

Adım Adım Çözüm

1
Calculate the usable RAM available for guest virtual machines
56 GB56\text{ GB} of RAM available (64 GB8 GB64\text{ GB} - 8\text{ GB})
The hypervisor host requires 8 GB8\text{ GB} reserved for host management and operations, which cannot be assigned to guest VMs.
2
Calculate the maximum number of guest VMs supported
1414 virtual machines (56 GB/4 GB56\text{ GB} / 4\text{ GB})
Dividing the remaining 56 GB56\text{ GB} of RAM by the 4 GB4\text{ GB} required per VM yields the maximum VM capacity without overcommitment.

Anahtar Kavram

Virtual Machine Resource Allocation and Hypervisor Overhead
Soru 2497Soru

A cybersecurity technician at a digital media firm is responding to a workstation infected with spyware. Arrange the following remediation steps in the exact sequence required by the CompTIA 7-step malware removal process.

Öğeleri doğru sıraya koymak için sürükleyin

Cevabı ve açıklamayı göster

Cevap

The correct sequence follows the standard CompTIA 7-step malware remediation process: first quarantine the infected workstation, then disable System Restore, followed by updating anti-malware signatures and scanning, then enabling System Restore and creating a new restore point, and finally educating the end user.
The official CompTIA 7-step malware remediation process consists of: 1. Identify symptoms, 2. Quarantine infected systems, 3. Disable System Restore, 4. Remediate infected systems (update anti-malware software and use scan/removal tools), 5. Schedule scans and run updates, 6. Enable System Restore and create a restore point, and 7. Educate the end user. The sequence correctly orders steps 2, 3, 4, 6, and 7.

Adım Adım Çözüm

1
Isolate the compromised system.
Workstation is quarantined from network connectivity.
Prevents lateral movement of the malware across the local network.
2
Turn off system backup mechanisms.
Windows System Restore is disabled.
Prevents malicious files from being indexed into restore snapshots.
3
Remediate active infections.
Anti-malware signatures are updated and a full scan purges infected files.
Ensures complete detection and removal of malware.
4
Re-establish system rollback points.
System Restore is enabled and a clean baseline point is created.
Restores system protection features only after the machine is verified clean.
5
Deliver user security training.
End user is trained on security awareness.
Mitigates future social engineering and malware infection vectors.

Anahtar Kavram

CompTIA 7-Step Malware Remediation Process
Soru 2498Soru

A help desk technician is troubleshooting a macOS workstation where a custom business application frequently crashes immediately upon launch. The technician needs to review historical system log files, application crash reports, and live diagnostic messages through a graphical interface to identify the root cause. Which native macOS utility should the technician open to inspect these logs?

Cevabı ve açıklamayı göster

Cevap: Console

Cevap

Console is the native macOS utility used to inspect system logs, diagnostic reports, and application crash events.
Console is the default graphical logging utility in macOS. It collects system-level log messages, application crash logs, and unified logging data, making it the appropriate tool for analyzing application startup failures.

Adım Adım Çözüm

1
Analyze the scenario requirement
The technician needs a graphical native macOS tool to view system logs and crash reports.
Identifying the correct administrative tool requires matching the specific task (log inspection) with the OS utility built for that function.
2
Evaluate native macOS administrative tools
Console aggregates log files (.log), crash reports (.crash), and diagnostic messages in a graphical interface.
Console provides unified access to macOS system and application event logging.
3
Eliminate incorrect options
Activity Monitor tracks resource usage, System Information lists hardware/software inventory, and Terminal is a CLI tool.
None of the alternative tools fulfill the requirement of a graphical log inspection utility.

Anahtar Kavram

macOS Administrative Utilities (Console)
Soru 2499Soru

An IT security technician is hardening several standalone Windows 11 workstations located in a hospital's semi-public reception lobby. The endpoints are utilized by floating medical staff to access check-in systems. According to the organization's security baseline, the technician must satisfy three core security controls:
1. Prevent unauthorized code from automatically running when removable storage devices are inserted, without disabling necessary USB hardware peripherals.
2. Ensure idle sessions automatically lock to protect patient data while maintaining active background processing for logged-in sessions.
3. Reduce exposure to targeted brute-force attacks against default built-in system accounts.

Which combination of administrative configurations best satisfies all three hardening requirements?

Cevabı ve açıklamayı göster

Cevap: Disable AutoPlay and AutoRun policies via Group Policy, set a password-protected screensaver lock timeout, disable the local Guest account, and rename the built-in Administrator account.

Cevap

Disabling AutoPlay and AutoRun policies, configuring a password-protected screen saver timeout, disabling the local Guest account, and renaming the local Administrator account best meets all specified hardening controls.
The correct configuration combines logical Group Policy settings (disabling AutoPlay and AutoRun to prevent unauthorized software execution from removable drives), account security best practices (disabling the Guest account and renaming the default Administrator account to frustrate automated brute-force attempts), and session security (enforcing a password-protected screensaver lock that secures the terminal without killing background user applications).

Adım Adım Çözüm

1
Address Requirement 1 (Preventing automatic execution of code from USB media without blocking peripherals)
Disabling AutoPlay and AutoRun in Group Policy stops Windows from automatically executing launcher scripts or programs upon mounting removable drives, while leaving USB controller drivers enabled for essential peripherals like keyboards and scanners.
Disabling hardware drivers entirely prevents essential input devices from functioning, whereas policy-based AutoPlay disabling addresses media execution threats specifically.
2
Address Requirement 2 (Securing idle sessions while keeping background processes running)
Configuring a screen saver lock timeout with 'On resume, display logon screen' locks the graphical display and requires password authentication, while keeping user processes actively running in the background.
Power sleep states or forced user logoff scripts either suspend operational system processes or terminate active work sessions, causing unnecessary operational disruption.
3
Address Requirement 3 (Mitigating targeted credential attacks on default accounts)
Disabling the Guest account and renaming the default Administrator account eliminates well-known default Security Identifiers (SIDs) and account names commonly targeted by automated brute-force tools.
Keeping default account names active—even with complex passwords—leaves the system vulnerable to account enumeration and targeted credential attacks.

Anahtar Kavram

Workstation Hardening Baselines and Attack Surface Reduction
Tahmini Süre:2m 0s
Soru 2500Soru

A technician is troubleshooting a Windows 11 workstation that fails to boot after a firmware update. Upon powering on, the system displays the error message 'An operating system wasn't found.' The workstation uses UEFI firmware and a GPT-partitioned NVMe boot drive. The technician boots into the Windows Recovery Environment (WinRE) Command Prompt and confirms that the main Windows installation partition (C:\Windows) is healthy and accessible. Which TWO of the following steps should the technician take to regenerate the boot files and restore bootability? (Select TWO.)

Geçerli olan tümünü seçin

Cevabı ve açıklamayı göster

Cevap: Use diskpart to locate the hidden FAT32 EFI System Partition (ESP) and assign it a temporary drive letter.; Execute bcdboot C:\Windows /s <drive_letter>: /f UEFI to copy the boot environment files to the EFI System Partition.

Cevap

The correct steps are to use diskpart to locate and assign a drive letter to the hidden FAT32 EFI System Partition, and then execute bcdboot C:\Windows /s <drive_letter>: /f UEFI to recreate the boot environment files.
On Windows workstations configured with UEFI firmware and GPT partition tables, boot execution depends on files residing in the FAT32 EFI System Partition (ESP). When the main C:\Windows directory is intact but the system displays boot errors, a technician must mount the hidden ESP using diskpart to assign a drive letter, and then run bcdboot targeting that partition to generate fresh UEFI boot files and configuration data.

Adım Adım Çözüm

1
Locate and mount the hidden EFI System Partition in WinRE
The hidden FAT32 EFI System Partition is assigned an accessible volume letter.
On GPT/UEFI installations, startup files reside on a dedicated FAT32 EFI System Partition that is hidden by default and requires a drive letter assignment to be targeted by repair commands.
2
Re-create the EFI boot environment files
Fresh EFI boot files and BCD entries are written from the Windows system folder to the ESP volume.
The bcdboot utility reads existing operating system files from C:\Windows and initializes a functional bootloader directory structure on the specified EFI System Partition for UEFI firmware.

Anahtar Kavram

Repairing UEFI/GPT Windows bootloader files using diskpart and bcdboot
ÖncekiSayfa 125 / 178Sonraki
Tüm alıştırma soruları — CompTIA A+ (Core 1 & Core 2) | Examkin