A critical server was compromised by malware, and all functionality was lost. Backups of this server were taken; however, management believes a logic bomb may have been injected by a rootkit. Which of the following should a security analyst perform to restore functionality quickly?
A. Work backward, restoring each backup until the server is clean
B. Restore the previous backup and scan with a live boot anti-malware scanner
C. Stand up a new server and restore critical data from backups
D. Offload the critical data to a new server and continue operations
A critical server was compromised by malware, and all functionality was lost. Backups of this server were taken; however
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
A critical server was compromised by malware, and all functionality was lost. Backups of this server were taken; however
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!