CompTIA A+ Core 2 (220-1102) — Question 8
A help desk technician is troubleshooting a workstation in a SOHO environment that is running above normal system baselines. The technician discovers an unknown executable with a random string name running on the system. The technician terminates the process, and the system returns to normal operation. The technician thinks the issue was an infected file, but the antivirus is not detecting a threat. The technician is concerned other machines may be infected with this unknown virus. Which of the following is the MOST effective way to check other machines on the network for this unknown threat?
Answer options
- A. Run a startup script that removes files by name.
- B. Provide a sample to the antivirus vendor.
- C. Manually check each machine.
- D. Monitor outbound network traffic.
Correct answer: C
Explanation
The correct answer is C, as manually checking each machine allows for a thorough inspection of all systems, ensuring that any unknown threats are identified. Options A and B are less effective because they do not guarantee a complete assessment of all machines on the network. Option D, while useful for monitoring traffic, may not directly reveal infected files or processes.