3.3 Flashcards

1
Q

What is the first best practice procedure for malware removal?

A

Identify and research malware symptoms

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the second best practice procedure for malware removal?

A

Quarantine the infected systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the third best practice procedure for malware removal?

A

Disable System Restore (In Windows)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the fourth best practice procedure for malware removal?

A

Remediate the infected systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the fifth best practice procedure for malware removal?

A

Schedule scans and run updates

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the sixth best practice procedure for malware removal?

A

Enable System Restore and create a restore point

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the seventh best practice procedure for malware removal?

A

Educate the end user

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

When attempting to quarantine an infected system, what is the first step you should take?

A

Disconnect it from the network and isolate all removable media.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Why do we disable System Restore in step 3?

A

Because malware infects restore points making them unusable.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How do you delete all of your previous restore points?

A

Under restore settings, select the “disable system protection” option.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Why do we delete all of the previous restore points?

A

To prevent an accidental restoration which would reintroduce the malware.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is involved with remediating the infected systems?

A

Updating AV/AM signatures and making sure they’re automatically being updated for the future.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

You try downloading a AV/AM utility to your infected computer, but the malware prevents you. How do you go about getting AV/AM software?

A

Download it on a clean computer and then copy it over to the infected one.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

After moving AV/AM software from a clean to infected computer, what should you do with the removable media you used for transfer?

A

Get rid of it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly