ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 451 - 220-1102 discussion

Report
Export

A user's antivirus software reports an infection that it is unable to remove. Which of the following is the most appropriate way to remediate the issue?

A.
Disable System Restore.
Answers
A.
Disable System Restore.
B.
Utilize a Linux live disc.
Answers
B.
Utilize a Linux live disc.
C.
Quarantine the infected system.
Answers
C.
Quarantine the infected system.
D.
Update the anti-malware.
Answers
D.
Update the anti-malware.
Suggested answer: C

Explanation:

Quarantining the infected system is the most appropriate way to remediate the issue of an infection that the antivirus software cannot remove. Quarantining means isolating the system from the network and other devices to prevent the infection from spreading or causing further damage. Quarantining also allows the technician to perform further analysis and removal of the infection without risking the security of other systems or data.

Some of the steps involved in quarantining an infected system are:

Disconnect the system from the internet and any local network connections, such as Wi-Fi, Ethernet, Bluetooth, or USB.

Disable any file-sharing or remote access services on the system, such as Windows File Sharing, Remote Desktop, or TeamViewer.

Use a separate device to download and update the antivirus software and any other tools that may be needed to remove the infection, such as malware scanners, rootkit removers, or bootable rescue disks.

Transfer the updated antivirus software and tools to the infected system using a removable media, such as a CD, DVD, or USB flash drive. Scan the removable media for any infections before and after using it on the infected system.

Run the antivirus software and tools on the infected system and follow the instructions to delete or quarantine the infection. If the infection is persistent or complex, it may require booting the system from a rescue disk or using a Linux live disc to access and clean the system files.

After the infection is removed, restore the system to a previous clean state using System Restore, backup, or recovery partition. Scan the system again to ensure that it is clean and secure. Reconnect the system to the network and update the system and the antivirus software.

How to Identify and Repair Malware or Virus Infected Computers, section 31

Uninstalling Antivirus Software, the Clean Way: 40 Removal Tools & Instructions, section 22

How to manually remove an infected file from a Windows computer3

The Official CompTIA A+ Core 2 Study Guide (220-1102), page 2194

asked 02/10/2024
Sana Mehak
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first