CompTIA
CAS-001 · Question #155
CAS-001 Question #155: Real Exam Question with Answer & Explanation
Sign in or unlock CAS-001 to reveal the answer and full explanation for question #155. The question stem and answer options stay visible for context.
Question
A morphed worm carrying a 0-day payload has infiltrated the company network and is now spreading across the organization. The security administrator was able to isolate the worm communication and payload distribution channel to TCP port 445. Which of the following can the administrator do in the short term to minimize the attack?
Options
- ADeploy the following ACL to the HIPS: DENY - TCP - ANY - ANY ?445.
- BRun a TCP 445 port scan across the organization and patch hosts with open ports.
- CAdd the following ACL to the corporate firewall: DENY - TCP - ANY - ANY - 445.
- DForce a signature update and full system scan from the enterprise anti-virus solution.
Unlock CAS-001 to see the answer
You've previewed enough free CAS-001 questions. Unlock CAS-001 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.