nerdexam
CompTIA

220-1102 · Question #366

A user calls the help desk and reports a workstation is infected with malicious software. Which of the following tools should the help desk technician use to remove the malicious software? (Choose…

The correct answer is E. Windows Defender F. Network Packet Analyzer. To remove malicious software, a help desk technician should use Windows Defender for direct removal and a Network Packet Analyzer to understand and mitigate the malware's network activity.

Security

Question

A user calls the help desk and reports a workstation is infected with malicious software. Which of the following tools should the help desk technician use to remove the malicious software? (Choose two.)

Options

  • ALocal Network Connection
  • BUser Account Control
  • CWindows Backup and Restore
  • DWindows Firewall
  • EWindows Defender
  • FNetwork Packet Analyzer

How the community answered

(19 responses)
  • A
    5% (1)
  • B
    5% (1)
  • C
    11% (2)
  • E
    79% (15)

Why each option

To remove malicious software, a help desk technician should use Windows Defender for direct removal and a Network Packet Analyzer to understand and mitigate the malware's network activity.

ALocal Network Connection

Local Network Connection settings are for configuring network adapters and do not provide malware removal capabilities.

BUser Account Control

User Account Control (UAC) is a security feature that prompts for administrative consent, not a tool for malware removal.

CWindows Backup and Restore

Windows Backup and Restore is used for system recovery and data restoration, not for actively scanning and removing malicious software.

DWindows Firewall

Windows Firewall controls network traffic based on rules but does not scan for or remove malicious software residing on the system.

EWindows DefenderCorrect

Windows Defender is Microsoft's integrated anti-malware solution, specifically designed to scan, detect, and remove various types of malicious software from a Windows device, making it a primary tool for malware removal.

FNetwork Packet AnalyzerCorrect

A Network Packet Analyzer, while not directly removing files, is crucial for identifying and understanding the network activity of malicious software, such as command-and-control communications or data exfiltration. This information is vital for comprehensive remediation, including blocking malicious traffic and ensuring the malware's network capabilities are neutralized as part of the removal process.

Concept tested: Malware identification and remediation tools

Source: https://learn.microsoft.com/en-us/windows/security/threat-protection/windows-defender-antivirus/windows-defender-antivirus-in-windows-10

Topics

#Malware removal#Antivirus software#Incident response#Network analysis

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice