اختبار شهادة محلل الأمن السيبراني CompTIA CySA+

السؤال 130 من 1040

كل الأسئلة

A user clicks on a malicious adware link, and the malware successfully downloads to the machine. The malware has a script that invokes command-and-control activity. Which of the following actions is the best way to contain the incident without any additional impact?

الخيارات

  • A Disable the user account until the malware investigation is complete.
  • B Review EDR information to determine whether the file was detected and quarantined locally.
  • C Block the server on the proxy and firewall.
  • D Submit a recategorization update to the vendor.

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.