nerdexam
CompTIA

220-1102 · Question #55

A user is experiencing frequent malware symptoms on a Windows workstation. The user has tried several times to roll back the state but the malware persists. Which of the following would MOST likely…

The correct answer is B. Reimaging the workstation. When malware persists through multiple rollback attempts, it indicates the infection may have embedded itself into system restore points, the firmware, or areas not covered by rollback. Reimaging completely replaces the operating system and all software with a known-clean…

Security

Question

A user is experiencing frequent malware symptoms on a Windows workstation. The user has tried several times to roll back the state but the malware persists. Which of the following would MOST likely resolve the issue?

Options

  • AQuarantining system files
  • BReimaging the workstation
  • CEncrypting the hard drive
  • DDisabling TLS 1.0 support

How the community answered

(19 responses)
  • A
    5% (1)
  • B
    79% (15)
  • C
    5% (1)
  • D
    11% (2)

Explanation

When malware persists through multiple rollback attempts, it indicates the infection may have embedded itself into system restore points, the firmware, or areas not covered by rollback. Reimaging completely replaces the operating system and all software with a known-clean image, guaranteeing the malware is removed. Quarantining system files does not remove the underlying infection. Encrypting the hard drive does not eliminate malware already present. Disabling TLS 1.0 is a network security hardening step unrelated to removing existing malware.

Topics

#Malware remediation#Persistent malware#System reinstallation#Data sanitization

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice