nerdexam
Exams350-201Questions#111
Cisco

350-201 · Question #111

350-201 Question #111: Real Exam Question with Answer & Explanation

Sign in or unlock 350-201 to reveal the answer and full explanation for question #111. The question stem and answer options stay visible for context.

Question

An engineer received an incident ticket of a malware outbreak and used antivirus and malware removal tools to eradicate the threat. The engineer notices that abnormal processes are still occurring in the system and determines that manual intervention is needed to clean the infected host and restore functionality. What is the next step the engineer should take to complete this playbook step?

Options

  • AScan the network to identify unknown assets and the asset owners.
  • BAnalyze the components of the infected hosts and associated business services.
  • CScan the host with updated signatures and remove temporary containment.
  • DAnalyze the impact of the malware and contain the artifacts.

Unlock 350-201 to see the answer

You've previewed enough free 350-201 questions. Unlock 350-201 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full 350-201 Practice