ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 547 - 220-1102 discussion

Report
Export

A user reports that an air-gapped computer may have been infected with a virus after the user transferred files from a USB drive. The technician runs a computer scan with Windows Defender but does not find an infection. Which of the following actions should the technician take next? (Select two).

A.
Examine the event logs
Answers
A.
Examine the event logs
B.
Connect to the network.
Answers
B.
Connect to the network.
C.
Document the findings.
Answers
C.
Document the findings.
D.
Update the definitions.
Answers
D.
Update the definitions.
E.
Reimage the computer.
Answers
E.
Reimage the computer.
F.
Enable the firewall.
Answers
F.
Enable the firewall.
Suggested answer: A, D

Explanation:

When a virus is suspected and an initial scan with Windows Defender does not reveal any infections, the next steps involve a deeper investigation into the system's activities and ensuring the antivirus software is fully equipped to detect threats.

Examine the event logs: This action involves checking the system's event logs to look for any suspicious activity or anomalies that could indicate malicious behavior. Event logs can provide detailed information about system events, including errors, warnings, and other significant occurrences, which might offer clues about the potential infection.

Update the definitions: Antivirus software relies on a database of definitions (signatures) to identify and neutralize threats. Regularly updating these definitions ensures that the software can recognize the latest viruses and malware. If the definitions are outdated, the software might not detect newer threats, making this step crucial in the troubleshooting process.

asked 02/10/2024
Franklin Leon
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first