{"id":23662,"date":"2026-09-28T08:14:44","date_gmt":"2026-09-28T08:14:44","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=23662"},"modified":"2026-09-28T08:14:44","modified_gmt":"2026-09-28T08:14:44","slug":"comptia-a-220-1102-practice-test-questions-and-exam-dumps-part9-q161-180","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/comptia-a-220-1102-practice-test-questions-and-exam-dumps-part9-q161-180\/","title":{"rendered":"CompTIA A+ 220-1102 Practice Test Questions and Exam Dumps Part9 Q161-180"},"content":{"rendered":"<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/220-1102-exam-dumps\"><b>CompTIA A+ 220-1102 Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/h2>\n<p>&nbsp;<\/p>\n<p><b>Question 161.<\/b><\/p>\n<p><b>A Windows workstation is running slowly, and the technician suspects one process is consuming excessive processor resources. Which built-in tool should be used first to identify the process?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Task Manager<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Disk Management<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> File Explorer Options<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Local Security Policy<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Task Manager provides a real-time view of running applications and background processes and shows how much CPU, memory, disk, network, and other resources each process is consuming. A technician can sort the process list by CPU usage to quickly identify an application or service that is placing unusual load on the processor. Disk Management handles disks, partitions, and volumes rather than process performance. File Explorer Options controls how files and folders are displayed, while Local Security Policy manages security-related settings such as account and audit policies. After identifying the process, the technician should determine whether it is legitimate, whether it can be closed safely, and whether an update, configuration change, or malware investigation is required.<\/span><\/p>\n<p><b>Question 162.<\/b><\/p>\n<p><b>Which Windows utility presents a historical timeline of application failures, Windows failures, and other events that can help correlate a problem with a recent change?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Device Manager<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Reliability Monitor<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Disk Cleanup<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Windows Firewall<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Reliability Monitor provides a graphical timeline showing system stability over time. It records events such as application crashes, Windows failures, hardware errors, driver installations, and software updates. This is particularly useful when a user says a system \u201cstarted acting up a few days ago\u201d because the technician can identify what changed around the same time the issue began. Device Manager focuses on hardware and drivers, Disk Cleanup removes unnecessary files, and Windows Firewall controls network traffic. Reliability Monitor provides a summarized historical view that can help narrow the troubleshooting scope before the technician examines more detailed logs in Event Viewer or changes any system configuration.<\/span><\/p>\n<p><b>Question 163.<\/b><\/p>\n<p><b>A Windows application crashes at the same time every day. Which utility should a technician use to review detailed application error events?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Task Scheduler<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Disk Management<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Event Viewer<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> BitLocker<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Event Viewer stores detailed logs for Windows, applications, security events, and other components. If an application crashes at a predictable time, the technician can review the Application log around that timestamp and look for error events, event IDs, faulting modules, or related service failures. Task Scheduler may be relevant if a scheduled task triggers the problem, but Event Viewer is the most direct tool for reviewing the crash itself. Disk Management is used for storage administration, while BitLocker provides full-volume encryption. Event Viewer is especially valuable for recurring problems because it preserves historical records that can be compared across multiple failures.<\/span><\/p>\n<p><b>Question 164.<\/b><\/p>\n<p><b>Which Windows utility is most appropriate for creating a task that launches a maintenance script every Friday evening?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Services<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Device Manager<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> System Restore<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Task Scheduler<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Task Scheduler allows administrators to create automated tasks that run according to defined triggers. A task can start at a specific time, on a recurring schedule, when a user logs on, at system startup, or when certain events occur. It can then launch a script, application, or other supported action. Services manages background services rather than general scheduled automation. Device Manager handles hardware and drivers, while System Restore rolls back certain system configuration changes. Task Scheduler is therefore the correct Windows utility when a technician needs to automate a maintenance script at a recurring time such as every Friday evening.<\/span><\/p>\n<p><b>Question 165.<\/b><\/p>\n<p><b>A technician wants to stop a Windows service temporarily to determine whether it is causing a software conflict. Which utility should be used?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Services<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> File History<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Disk Cleanup<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Storage Spaces<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Services management console allows a technician to view services, stop or start them, restart them, and configure how they start with Windows. Temporarily stopping a suspected service can help determine whether that service is involved in a software conflict. Before doing so, the technician should understand the service&#8217;s purpose and dependencies because stopping critical services can disrupt operating-system or application functionality. File History protects user files, Disk Cleanup removes unnecessary data, and Storage Spaces provides storage pooling and resiliency. The Services console is therefore the appropriate tool for testing whether a background service is contributing to an issue.<\/span><\/p>\n<p><b>Question 166.<\/b><\/p>\n<p><b>Which Windows command displays detailed network configuration, including the DHCP server and DNS server addresses assigned to an adapter?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ping<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> ipconfig \/all<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> tasklist<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> sfc \/scannow<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">ipconfig \/all<\/span><span style=\"font-weight: 400;\"> command provides detailed TCP\/IP configuration information for Windows network adapters. It can display the IP address, subnet mask, default gateway, DHCP status, DHCP server, DNS server addresses, lease information, and the adapter&#8217;s physical address. This makes it one of the first commands a technician should use when troubleshooting incorrect network settings. <\/span><span style=\"font-weight: 400;\">ping<\/span><span style=\"font-weight: 400;\"> tests basic connectivity, <\/span><span style=\"font-weight: 400;\">tasklist<\/span><span style=\"font-weight: 400;\"> displays running processes, and <\/span><span style=\"font-weight: 400;\">sfc \/scannow<\/span><span style=\"font-weight: 400;\"> checks protected Windows system files. If a workstation is receiving the wrong network configuration, <\/span><span style=\"font-weight: 400;\">ipconfig \/all<\/span><span style=\"font-weight: 400;\"> helps determine whether DHCP and DNS settings are being assigned as expected.<\/span><\/p>\n<p><b>Question 167.<\/b><\/p>\n<p><b>A Windows workstation has a valid IP address but cannot resolve a known server name. Which command should the technician use to test DNS resolution directly?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> netstat<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> hostname<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> nslookup<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> chkdsk<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">nslookup<\/span><span style=\"font-weight: 400;\"> queries DNS and can show whether a hostname resolves to an IP address and which DNS server is responding. If the workstation already has valid IP connectivity but cannot reach systems by name, DNS is a likely area to investigate. A technician can compare results using the configured DNS server and, when appropriate, another known DNS server to help isolate the issue. <\/span><span style=\"font-weight: 400;\">netstat<\/span><span style=\"font-weight: 400;\"> displays connections and listening ports, <\/span><span style=\"font-weight: 400;\">hostname<\/span><span style=\"font-weight: 400;\"> displays the local computer&#8217;s name, and <\/span><span style=\"font-weight: 400;\">chkdsk<\/span><span style=\"font-weight: 400;\"> checks disks and file systems. <\/span><span style=\"font-weight: 400;\">nslookup<\/span><span style=\"font-weight: 400;\"> is therefore the most appropriate command for directly investigating name-resolution problems.<\/span><\/p>\n<p><b>Question 168.<\/b><\/p>\n<p><b>A technician suspects that a Windows computer has an incorrect cached DNS entry. Which command should be used to remove locally cached DNS records?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ipconfig \/release<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> arp -a<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> route print<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> ipconfig \/flushdns<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">ipconfig \/flushdns<\/span><span style=\"font-weight: 400;\"> command clears the Windows DNS resolver cache. This is useful when the computer may have stored an outdated or incorrect DNS record, such as after a server IP address was recently changed. Once the cache is cleared, the next request for that hostname must be resolved again using the configured DNS server. <\/span><span style=\"font-weight: 400;\">ipconfig \/release<\/span><span style=\"font-weight: 400;\"> releases a DHCP lease, <\/span><span style=\"font-weight: 400;\">arp -a<\/span><span style=\"font-weight: 400;\"> displays local IP-to-MAC mappings, and <\/span><span style=\"font-weight: 400;\">route print<\/span><span style=\"font-weight: 400;\"> shows the routing table. Flushing the DNS cache changes only the locally cached name-resolution information and does not change the configured DNS server addresses themselves.<\/span><\/p>\n<p><b>Question 169.<\/b><\/p>\n<p><b>A Windows workstation has received an incorrect DHCP configuration. Which sequence is most appropriate for requesting a fresh lease?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ipconfig \/release followed by ipconfig \/renew<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> nslookup followed by tracert<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> sfc followed by chkdsk<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> netstat followed by taskkill<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">ipconfig \/release<\/span><span style=\"font-weight: 400;\"> gives up the current DHCP lease, and <\/span><span style=\"font-weight: 400;\">ipconfig \/renew<\/span><span style=\"font-weight: 400;\"> requests a new lease from the DHCP server. This sequence can help when the workstation has stale or incorrect dynamically assigned network settings. The technician should still investigate further if the computer repeatedly receives an incorrect address because the root cause may involve DHCP scope configuration, VLAN placement, a rogue DHCP server, or network connectivity. <\/span><span style=\"font-weight: 400;\">nslookup<\/span><span style=\"font-weight: 400;\"> and <\/span><span style=\"font-weight: 400;\">tracert<\/span><span style=\"font-weight: 400;\"> are network diagnostic tools but do not renew DHCP configuration. <\/span><span style=\"font-weight: 400;\">sfc<\/span><span style=\"font-weight: 400;\">, <\/span><span style=\"font-weight: 400;\">chkdsk<\/span><span style=\"font-weight: 400;\">, <\/span><span style=\"font-weight: 400;\">netstat<\/span><span style=\"font-weight: 400;\">, and <\/span><span style=\"font-weight: 400;\">taskkill<\/span><span style=\"font-weight: 400;\"> address entirely different operating-system or process-management tasks.<\/span><\/p>\n<p><b>Question 170.<\/b><\/p>\n<p><b>Which command should a technician use to display the path packets take from a Windows workstation to a remote destination?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> tasklist<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> tracert<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> gpupdate<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> format<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">tracert<\/span><span style=\"font-weight: 400;\"> command displays the sequence of network hops between the Windows computer and a destination. It can help identify where connectivity fails or where significant latency begins. This is particularly useful when local networking works but a remote resource across several routers cannot be reached reliably. Not every router is required to respond to traceroute-style probes, so missing responses do not always indicate a failure. <\/span><span style=\"font-weight: 400;\">tasklist<\/span><span style=\"font-weight: 400;\"> displays processes, <\/span><span style=\"font-weight: 400;\">gpupdate<\/span><span style=\"font-weight: 400;\"> refreshes Group Policy, and <\/span><span style=\"font-weight: 400;\">format<\/span><span style=\"font-weight: 400;\"> prepares a storage volume. Tracert is therefore the appropriate command for examining the route through an IP network.<\/span><\/p>\n<p><b>Question 171.<\/b><\/p>\n<p><b>Which Windows command is useful for checking whether a specific local service is listening on a TCP or UDP port?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> gpresult<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> hostname<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> netstat<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> diskpart<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">netstat<\/span><span style=\"font-weight: 400;\"> command can display active network connections and listening ports. With suitable options, it can also show numerical addresses and process identifiers, helping a technician associate a listening port with a process. This is useful when troubleshooting whether an application server or local service is actually listening for connections. <\/span><span style=\"font-weight: 400;\">gpresult<\/span><span style=\"font-weight: 400;\"> reports Group Policy information, <\/span><span style=\"font-weight: 400;\">hostname<\/span><span style=\"font-weight: 400;\"> displays the machine name, and <\/span><span style=\"font-weight: 400;\">diskpart<\/span><span style=\"font-weight: 400;\"> is a storage-management command-line utility. Netstat is therefore valuable for diagnosing connection problems, identifying open listeners, and investigating unexpected network activity on a Windows system.<\/span><\/p>\n<p><b>Question 172.<\/b><\/p>\n<p><b>Which Windows command shows the contents of the local ARP cache?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ipconfig \/all<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> net use<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> nslookup<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> arp -a<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">arp -a<\/span><span style=\"font-weight: 400;\"> command displays the local Address Resolution Protocol cache, which contains mappings between IPv4 addresses and MAC addresses learned on the local network. This can be useful when troubleshooting communication with devices on the same subnet or investigating whether the workstation has learned an unexpected hardware address for a destination. <\/span><span style=\"font-weight: 400;\">ipconfig \/all<\/span><span style=\"font-weight: 400;\"> provides adapter configuration, <\/span><span style=\"font-weight: 400;\">net use<\/span><span style=\"font-weight: 400;\"> manages connections to shared resources, and <\/span><span style=\"font-weight: 400;\">nslookup<\/span><span style=\"font-weight: 400;\"> tests DNS resolution. ARP operates between IP and Ethernet addressing on the local network, so the ARP cache is particularly relevant to local-subnet connectivity problems.<\/span><\/p>\n<p><b>Question 173.<\/b><\/p>\n<p><b>A user&#8217;s Windows computer repeatedly locks the account because an old password is still being used by a mapped network resource. Which command can help a technician review or remove mapped network connections?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> net use<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> sfc<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> taskkill<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> route print<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">net use<\/span><span style=\"font-weight: 400;\"> command displays, creates, and removes connections to network shares. If a mapped drive or resource is still attempting to authenticate with obsolete credentials, a technician can inspect existing mappings and remove or recreate the connection as appropriate. This can help resolve repeated account lockouts caused by stored or stale network authentication attempts. <\/span><span style=\"font-weight: 400;\">sfc<\/span><span style=\"font-weight: 400;\"> validates protected Windows system files, <\/span><span style=\"font-weight: 400;\">taskkill<\/span><span style=\"font-weight: 400;\"> terminates processes, and <\/span><span style=\"font-weight: 400;\">route print<\/span><span style=\"font-weight: 400;\"> displays routing information. Account lockouts can also come from services, scheduled tasks, mobile devices, or cached credentials, so the technician should continue investigating if the problem persists.<\/span><\/p>\n<p><b>Question 174.<\/b><\/p>\n<p><b>A company&#8217;s security policy requires each user to have a unique account rather than sharing a single department login. What is the primary security benefit?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Faster file transfers<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Improved accountability<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Increased display resolution<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Reduced disk fragmentation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Unique user accounts improve accountability because actions can be associated with a specific individual. This supports auditing, incident investigation, access control, and proper offboarding. Shared accounts make it difficult to determine who performed an action and often lead to password sharing, which increases security risk. Unique accounts also allow administrators to assign permissions according to job roles and revoke one person&#8217;s access without affecting everyone else. File-transfer performance, display resolution, and disk fragmentation are unrelated to account identity. In addition to unique accounts, organizations should use strong authentication, least privilege, and appropriate logging to maintain effective access control.<\/span><\/p>\n<p><b>Question 175.<\/b><\/p>\n<p><b>Which security principle requires administrators to grant users only the minimum permissions necessary to perform their assigned tasks?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Availability<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Redundancy<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Least privilege<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Non-repudiation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Least privilege means users, applications, and services should have only the permissions required to perform their legitimate functions. This reduces the potential impact of mistakes, malware, or stolen credentials. For example, a normal office user generally should not have local administrator rights merely for convenience. Availability focuses on keeping systems accessible, redundancy helps reduce single points of failure, and non-repudiation provides evidence that actions or communications cannot reasonably be denied. Least privilege should be combined with role-based access, regular permission reviews, and controlled elevation when administrative privileges are temporarily required.<\/span><\/p>\n<p><b>Question 176.<\/b><\/p>\n<p><b>A user leaves a laptop unattended in a public conference room. Which control best protects the active session from casual unauthorized access?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Disk Cleanup<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> File History<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Screen resolution settings<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Automatic screen lock<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An automatic screen lock protects an unattended active session by requiring authentication before the desktop can be used again. This helps prevent nearby individuals from accessing email, documents, internal applications, or other sensitive information when the user walks away. Disk Cleanup removes unnecessary files, File History protects copies of user data, and screen resolution settings affect display output. Users should also be trained to lock their screen manually before leaving a device unattended. An automatic timeout provides an additional safeguard in case they forget, but the timeout should balance security requirements with practical usability.<\/span><\/p>\n<p><b>Question 177.<\/b><\/p>\n<p><b>Which physical security control is designed primarily to deter theft of a laptop from a desk or workstation area?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Cable lock<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Privacy filter<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Smart card<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Biometric scanner<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A cable lock attaches a portable device to a fixed object and can help deter opportunistic theft. It is not impossible to defeat, but it adds a physical barrier that can make quick removal more difficult. A privacy filter reduces the viewing angle of the display and protects against shoulder surfing. Smart cards and biometric scanners are authentication controls rather than anti-theft devices. Portable computers are especially vulnerable in open offices, classrooms, public areas, and shared workspaces, so physical protection should complement encryption, screen locking, device tracking, and organizational inventory procedures.<\/span><\/p>\n<p><b>Question 178.<\/b><\/p>\n<p><b>Which physical security device is most appropriate for reducing the risk of shoulder surfing in an airport or other public environment?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Mantrap<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Privacy filter<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Cable lock only<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Door alarm<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A privacy filter limits the viewing angle of a screen so information is difficult to read from the side. This is useful in airports, aircraft, coffee shops, public transportation, and open offices where someone nearby could otherwise observe confidential information. A mantrap controls entry to a secure facility, a cable lock reduces theft risk, and a door alarm detects certain physical access events. Privacy filters work best when combined with careful screen positioning, awareness of nearby people, screen locking, and avoiding sensitive work in locations where confidentiality cannot be reasonably maintained.<\/span><\/p>\n<p><b>Question 179.<\/b><\/p>\n<p><b>A technician discovers malware on a user&#8217;s workstation that may be communicating with external systems. Which action should be taken early in the response process?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Continue normal network use<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Share the suspicious executable with coworkers<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Isolate the workstation from the network<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Disable all security tools<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Isolating the workstation helps contain the incident by reducing the chance that malware spreads internally, accesses shared resources, or communicates with command-and-control infrastructure. Once isolated, the technician can follow the organization&#8217;s incident-response or malware-removal process, identify symptoms, update tools as appropriate, perform scans, remediate the threat, patch vulnerabilities, and verify functionality. Continuing normal network use increases risk. Sharing the suspicious executable can spread the infection, while disabling security tools removes protective controls. Containment is therefore an important early step when malware may be active and network-connected.<\/span><\/p>\n<p><b>Question 180.<\/b><\/p>\n<p><b>After malware has been removed from a workstation, patches have been applied, and full system functionality has been verified, what should the technician do next?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Remove all endpoint protection<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Disable the user&#8217;s account permanently<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Delete all diagnostic information<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Document the findings, remediation steps, results, and preventive actions<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Documentation is the final step in the standard troubleshooting methodology after the solution has been implemented and system functionality has been verified. For a malware incident, the record should include the original symptoms, how the threat was identified, containment actions, scanning and remediation steps, patches or configuration changes, verification results, and recommendations for preventing recurrence. Good documentation supports future troubleshooting, trend analysis, security investigations, and organizational learning. Removing endpoint protection or deleting diagnostic information would weaken the environment and eliminate useful evidence. A complete support record helps ensure that the incident is closed in a controlled and professional manner.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full CompTIA A+ 220-1102 Exam Dumps and Practice Test Dumps &nbsp; Question 161. A Windows workstation is running slowly, and the technician suspects one process is consuming excessive processor resources. Which built-in tool should be used first to identify the process? Task Manager 2. Disk Management 3. File Explorer Options 4. Local Security Policy [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23662"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=23662"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23662\/revisions"}],"predecessor-version":[{"id":23663,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23662\/revisions\/23663"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=23662"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=23662"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=23662"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}