nerdexam
CompTIA

220-1102 · Question #486

An employee has repeatedly contacted a technician about malware infecting a work computer. The technician has removed the malware several times, but the user's PC keeps getting infected. Which of…

The correct answer is C. Educate the end user. When a user's computer is repeatedly infected with malware despite technical remediation, the most effective next step is to educate the end user to prevent re-infection.

Security

Question

An employee has repeatedly contacted a technician about malware infecting a work computer. The technician has removed the malware several times, but the user's PC keeps getting infected. Which of the following should the technician do to reduce the risk of future infections?

Options

  • AConfigure the firewall
  • BRestore the system from backups.
  • CEducate the end user.
  • DUpdate the antivirus program.

How the community answered

(31 responses)
  • A
    3% (1)
  • B
    10% (3)
  • C
    71% (22)
  • D
    16% (5)

Why each option

When a user's computer is repeatedly infected with malware despite technical remediation, the most effective next step is to educate the end user to prevent re-infection.

AConfigure the firewall

Configuring the firewall can help prevent network-based attacks, but it doesn't directly address user actions that lead to repeated malware infections.

BRestore the system from backups.

Restoring the system from backups removes the current infection but doesn't prevent the user from re-introducing malware through the same behaviors.

CEducate the end user.Correct

Educating the end user is critical because repeated infections often stem from user behavior, such as clicking malicious links, downloading questionable files, or using insecure practices. Training the user on safe computing habits can significantly reduce future infection risks that technical solutions alone cannot fully address.

DUpdate the antivirus program.

Updating the antivirus program is a standard security practice, but if infections persist, it implies the existing AV isn't sufficient or user behavior is bypassing it.

Concept tested: User security awareness and malware prevention

Topics

#Malware prevention#User education#Security awareness#Risk reduction

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice