List of questions
Related questions
Question 85 - CS0-003 discussion
A security analyst discovers an ongoing ransomware attack while investigating a phishing email. The analyst downloads a copy of the file from the email and isolates the affected workstation from the network. Which of the following activities should the analyst perform next?
A.
Wipe the computer and reinstall software
B.
Shut down the email server and quarantine it from the network.
C.
Acquire a bit-level image of the affected workstation.
D.
Search for other mail users who have received the same file.
Your answer:
0 comments
Sorted by
Leave a comment first