ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 467 - SY0-601 discussion

Report
Export

A web server has been compromised due to a ransomware attack. Further Investigation reveals the ransomware has been in the server for the past 72 hours. The systems administrator needs to get the services back up as soon as possible. Which of the following should the administrator use to restore services to a secure state?

A.
The last incremental backup that was conducted 72 hours ago
Answers
A.
The last incremental backup that was conducted 72 hours ago
B.
The last known-good configuration stored by the operating system
Answers
B.
The last known-good configuration stored by the operating system
C.
The last full backup that was conducted seven days ago
Answers
C.
The last full backup that was conducted seven days ago
D.
The baseline OS configuration
Answers
D.
The baseline OS configuration
Suggested answer: A

Explanation:

The last incremental backup that was conducted 72 hours ago would be the best option to restore the services to a secure state, as it would contain the most recent data before the ransomware infection. Incremental backups only store the changes made since the last backup, so they are faster and use less storage space than full backups. Restoring from an incremental backup would also minimize the data loss and downtime caused by the ransomware attack.

Reference:

https://www.comptia.org/blog/mature-cybersecurity-response-to-ransomware


asked 02/10/2024
Easwari Lakshminarayanan
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first