Please keep at least one language enabled. || కనీసం ఒక భాషను ఎంచుకోండి.
Question 1
ప్రశ్న 1
Consider the following statements about computer viruses:
1. A virus may reproduce by inserting or attaching its code to host files or boot-related areas.
2. Every unexplained slowdown of a computer proves that a virus is present.
3. Infected files and removable storage devices can act as sources of virus infection.
4. Installing antivirus software makes operating-system security updates unnecessary.
Which of the statements given above are correct?
1. A virus may reproduce by inserting or attaching its code to host files or boot-related areas.
2. Every unexplained slowdown of a computer proves that a virus is present.
3. Infected files and removable storage devices can act as sources of virus infection.
4. Installing antivirus software makes operating-system security updates unnecessary.
Which of the statements given above are correct?
Explanation:
• Statements 1 and 3 correctly describe common virus behaviour and infection methods.
• Slow performance can have many hardware or software causes, so Statement 2 is too absolute.
• Antivirus protection does not eliminate the need for operating-system and application security updates.
• Slow performance can have many hardware or software causes, so Statement 2 is too absolute.
• Antivirus protection does not eliminate the need for operating-system and application security updates.
వివరణ:
Question 2
ప్రశ్న 2
An employee receives an unexpected executable attachment from an unknown sender. Which action provides the safest immediate response?
Explanation:
• Executing an untrusted attachment can activate malicious code if the file is infected.
• Source verification and scanning with current antivirus protection reduce the risk of infection.
• Renaming or copying an untrusted executable does not make its contents safe.
• Source verification and scanning with current antivirus protection reduce the risk of infection.
• Renaming or copying an untrusted executable does not make its contents safe.
వివరణ:
Question 3
ప్రశ్న 3
A computer suddenly becomes slow, some files are unexpectedly modified and applications occasionally crash. Which conclusion is technically the most appropriate?
Explanation:
• Unexplained file changes, abnormal performance and application failures can occur during some virus infections.
• However, similar symptoms can also arise from storage, memory, driver or operating-system problems.
• Proper troubleshooting and antivirus scanning are required before identifying the cause.
• However, similar symptoms can also arise from storage, memory, driver or operating-system problems.
• Proper troubleshooting and antivirus scanning are required before identifying the cause.
వివరణ:
Question 4
ప్రశ్న 4
Which combination represents the BEST general practice for preventing computer-virus infection?
Explanation:
• Effective prevention uses multiple protective measures rather than depending on a single tool.
• Updated antivirus software, security updates, cautious file handling and scanning of external media reduce infection risk.
• Backups do not prevent infection directly but provide important protection against data loss.
• Updated antivirus software, security updates, cautious file handling and scanning of external media reduce infection risk.
• Backups do not prevent infection directly but provide important protection against data loss.
వివరణ:
Question 5
ప్రశ్న 5
A traditional signature-based antivirus program has not yet received information about a newly created or significantly modified virus. What is the principal limitation in this situation?
Explanation:
• Signature-based detection compares files or activity with known identifying patterns.
• A previously unknown or sufficiently modified threat may not match signatures already present in the antivirus database.
• This is one reason antivirus products require regular updates and may also use behavioural or heuristic techniques.
• A previously unknown or sufficiently modified threat may not match signatures already present in the antivirus database.
• This is one reason antivirus products require regular updates and may also use behavioural or heuristic techniques.
వివరణ:
Question 6
ప్రశ్న 6
A traditional boot-sector virus primarily attempts to infect which part of a storage device?
Explanation:
• Traditional boot-sector viruses target boot-related areas of disks or other bootable media.
• Malicious code placed there may be executed when a computer attempts to boot from the infected medium.
• This differs from file viruses that primarily attach to executable files.
• Malicious code placed there may be executed when a computer attempts to boot from the infected medium.
• This differs from file viruses that primarily attach to executable files.
వివరణ:
Question 7
ప్రశ్న 7
Which type of virus is most closely associated with malicious instructions embedded in documents that support programmable macros?
Explanation:
• Macro viruses use macro-programming capabilities provided by applications such as document-processing software.
• They may spread through infected macro-enabled documents or templates.
• Boot-sector viruses instead target startup-related areas of storage media.
• They may spread through infected macro-enabled documents or templates.
• Boot-sector viruses instead target startup-related areas of storage media.
వివరణ:
Question 8
ప్రశ్న 8
An antivirus program detects a suspicious file and places it in quarantine. What is the primary purpose of quarantine?
Explanation:
• Quarantine isolates a detected file from its normal location or execution path.
• This reduces the possibility that the suspicious or infected item will continue affecting the system.
• Depending on the antivirus product, the quarantined item can later be deleted, analysed or restored if found safe.
• This reduces the possibility that the suspicious or infected item will continue affecting the system.
• Depending on the antivirus product, the quarantined item can later be deleted, analysed or restored if found safe.
వివరణ:
Question 9
ప్రశ్న 9
What is the principal function of real-time antivirus protection?
Explanation:
• Real-time protection operates continuously while the computer is in use.
• It can inspect files and activities when they are accessed or executed rather than relying only on manually initiated scans.
• It is a software-security function and does not replace firmware or physical hardware.
• It can inspect files and activities when they are accessed or executed rather than relying only on manually initiated scans.
• It is a software-security function and does not replace firmware or physical hardware.
వివరణ:
Question 10
ప్రశ్న 10
Why should antivirus definitions or detection databases be updated regularly?
Explanation:
• Antivirus vendors continually identify new malicious programs and variants.
• Updated detection information helps antivirus software recognize threats that were not covered by older definitions.
• Updating security databases does not modify physical hardware specifications.
• Updated detection information helps antivirus software recognize threats that were not covered by older definitions.
• Updating security databases does not modify physical hardware specifications.
వివరణ:
Question 11
ప్రశ్న 11
Which statement correctly distinguishes POST from an antivirus scan?
Explanation:
• POST is a firmware-controlled startup procedure concerned primarily with essential hardware initialization and testing.
• Antivirus scanning is a software-security activity intended to identify malicious code.
• Successful POST therefore does not prove that storage devices and files are free from viruses.
• Antivirus scanning is a software-security activity intended to identify malicious code.
• Successful POST therefore does not prove that storage devices and files are free from viruses.
వివరణ:
Question 12
ప్రశ్న 12
A USB drive obtained from an unknown computer contains an executable file. Which statement is the most appropriate before using the file on a police-office computer?
Explanation:
• Removable media can carry infected files between computers.
• Copying an infected file to another storage device does not remove malicious code embedded in it.
• Untrusted files should therefore be verified and scanned before execution.
• Copying an infected file to another storage device does not remove malicious code embedded in it.
• Untrusted files should therefore be verified and scanned before execution.
వివరణ:
Question 13
ప్రశ్న 13
A computer completes POST successfully and BIOS/UEFI detects its RAM and SSD correctly. After the operating system loads, CPU usage becomes abnormally high and several files change unexpectedly. Which diagnostic approach is most appropriate FIRST?
Explanation:
• Successful POST and correct hardware detection reduce the immediate evidence for a basic startup-hardware fault.
• Abnormal processing activity and unexpected file modification after the operating system starts can justify investigation for malicious or unwanted software.
• Hardware should not be replaced without diagnostic evidence.
• Abnormal processing activity and unexpected file modification after the operating system starts can justify investigation for malicious or unwanted software.
• Hardware should not be replaced without diagnostic evidence.
వివరణ:
Question 14
ప్రశ్న 14
An infected program has been loaded into RAM and is currently executing. The computer is then completely powered off. Which statement is correct?
Explanation:
• Ordinary system RAM is volatile and loses its contents when normal power is removed.
• SSDs and hard disks are non-volatile, so infected files stored there can persist after shutdown.
• If such a file is executed again, the malicious code can become active again.
• SSDs and hard disks are non-volatile, so infected files stored there can persist after shutdown.
• If such a file is executed again, the malicious code can become active again.
వివరణ:
Question 15
ప్రశ్న 15
Which of the following is a normal BIOS/UEFI startup responsibility rather than an antivirus function?
Explanation:
• BIOS/UEFI firmware executes before the normal operating system and performs low-level startup functions.
• These include hardware initialization and selection of a boot device or boot entry.
• Quarantine, signature scanning and malware-definition updates belong to security software.
• These include hardware initialization and selection of a boot device or boot entry.
• Quarantine, signature scanning and malware-definition updates belong to security software.
వివరణ:
Question 16
ప్రశ్న 16
A PC is configured to boot from USB before its internal SSD. An inserted USB device contains malicious traditional boot code. What risk does this configuration create?
Explanation:
• Firmware follows its configured boot priority when deciding which available boot medium to try first.
• If an infected bootable device is selected first, malicious boot code can potentially execute before the normal operating system loads.
• Appropriate boot-device control and cautious use of unknown removable media reduce this risk.
• If an infected bootable device is selected first, malicious boot code can potentially execute before the normal operating system loads.
• Appropriate boot-device control and cautious use of unknown removable media reduce this risk.
వివరణ:
Question 17
ప్రశ్న 17
Consider the following statements:
1. Viruses can spread through infected removable media or files.
2. Macro-enabled documents can be used by some viruses as infection carriers.
3. Maintaining antivirus software eliminates the need for backups.
4. Unexpected file modification can be a symptom of infection but is not by itself conclusive proof.
Which statements are correct?
1. Viruses can spread through infected removable media or files.
2. Macro-enabled documents can be used by some viruses as infection carriers.
3. Maintaining antivirus software eliminates the need for backups.
4. Unexpected file modification can be a symptom of infection but is not by itself conclusive proof.
Which statements are correct?
Explanation:
• Statements 1 and 2 describe recognized methods through which virus infections can spread.
• Statement 4 is correct because suspicious symptoms should be investigated rather than treated as absolute proof.
• Statement 3 is incorrect because antivirus protection cannot replace reliable backups.
• Statement 4 is correct because suspicious symptoms should be investigated rather than treated as absolute proof.
• Statement 3 is incorrect because antivirus protection cannot replace reliable backups.
వివరణ:
Question 18
ప్రశ్న 18
Assertion (A): Keeping antivirus detection information updated improves protection against many newly identified virus variants.
Reason (R): Signature-based detection depends on information that identifies known malicious patterns, and that information must be updated as new threats are discovered.
Choose the correct answer.
Reason (R): Signature-based detection depends on information that identifies known malicious patterns, and that information must be updated as new threats are discovered.
Choose the correct answer.
Explanation:
• Detection databases must evolve as new malicious programs and variants are identified.
• Signature-based methods depend directly on recognizable information about known threats.
• The Reason therefore correctly explains why regular antivirus updates improve detection coverage.
• Signature-based methods depend directly on recognizable information about known threats.
• The Reason therefore correctly explains why regular antivirus updates improve detection coverage.
వివరణ:
Question 19
ప్రశ్న 19
Match List I with List II:
List I
(a) POST
(b) RAM
(c) Antivirus quarantine
(d) Boot order
List II
1. Isolates a detected suspicious or infected item
2. Determines priority among boot devices or boot entries
3. Provides volatile working storage
4. Checks/initializes essential hardware during startup
Choose the correct matching code.
List I
(a) POST
(b) RAM
(c) Antivirus quarantine
(d) Boot order
List II
1. Isolates a detected suspicious or infected item
2. Determines priority among boot devices or boot entries
3. Provides volatile working storage
4. Checks/initializes essential hardware during startup
Choose the correct matching code.
Explanation:
• POST performs startup hardware checking and initialization, giving (a)-4.
• RAM is volatile working memory, giving (b)-3.
• Quarantine isolates suspicious items and boot order determines startup-device priority, giving (c)-1 and (d)-2.
• RAM is volatile working memory, giving (b)-3.
• Quarantine isolates suspicious items and boot order determines startup-device priority, giving (c)-1 and (d)-2.
వివరణ:
Question 20
ప్రశ్న 20
A computer is suspected of virus infection but can still boot normally. Which response represents the most systematic approach?
Explanation:
• A suspected infection should be handled in a way that reduces opportunities for further propagation.
• Updated security tools can be used to detect, quarantine or remove identified threats.
• Known-clean backups provide a safer recovery source for damaged or compromised data when restoration is required.
• Updated security tools can be used to detect, quarantine or remove identified threats.
• Known-clean backups provide a safer recovery source for damaged or compromised data when restoration is required.
వివరణ:
Answer Key సమాధానాల పట్టిక
-
Question 1 ప్రశ్న 1Answer: D. 1 and 3 only సమాధానం: D.
-
Question 2 ప్రశ్న 2Answer: A. Do not execute it; verify the source and scan it with updated security software or delete it if it is untrusted. సమాధానం: A.
-
Question 3 ప్రశ్న 3Answer: C. These symptoms may indicate virus infection, but further diagnosis is required because other faults can produce similar symptoms. సమాధానం: C.
-
Question 4 ప్రశ్న 4Answer: B. Keep antivirus and software updated, obtain files from trusted sources, scan suspicious/removable media and maintain backups. సమాధానం: B.
-
Question 5 ప్రశ్న 5Answer: B. The virus may escape signature-based detection until an appropriate detection signature or method becomes available. సమాధానం: B.
-
Question 6 ప్రశ్న 6Answer: D. Boot-related sectors or records containing code used during system startup సమాధానం: D.
-
Question 7 ప్రశ్న 7Answer: A. Macro virus సమాధానం: A.
-
Question 8 ప్రశ్న 8Answer: C. To isolate the file so that it cannot normally execute or affect the system while further action is decided సమాధానం: C.
-
Question 9 ప్రశ్న 9Answer: D. To monitor relevant file access, execution or system activity so that malicious code can be detected or blocked as it is encountered సమాధానం: D.
-
Question 10 ప్రశ్న 10Answer: C. To provide information needed to recognize newly identified or modified threats సమాధానం: C.
-
Question 11 ప్రశ్న 11Answer: B. POST checks and initializes essential hardware during startup, whereas antivirus software examines files or activity for malicious code. సమాధానం: B.
-
Question 12 ప్రశ్న 12Answer: A. The file should be treated as potentially unsafe, scanned with updated antivirus protection and executed only if its source and integrity are trusted. సమాధానం: A.
-
Question 13 ప్రశ్న 13Answer: C. Investigate software activity and perform an updated antivirus scan before replacing functioning hardware. సమాధానం: C.
-
Question 14 ప్రశ్న 14Answer: A. The contents of ordinary RAM are lost when power is removed, but an infected file stored on non-volatile storage can remain and execute again later. సమాధానం: A.
-
Question 15 ప్రశ్న 15Answer: D. Initializing essential hardware and identifying an appropriate boot path సమాధానం: D.
-
Question 16 ప్రశ్న 16Answer: B. The firmware may execute the USB device's boot code before attempting to start the operating system from the SSD. సమాధానం: B.
-
Question 17 ప్రశ్న 17Answer: B. 1, 2 and 4 only సమాధానం: B.
-
Question 18 ప్రశ్న 18Answer: D. Both A and R are true, and R is the correct explanation of A. సమాధానం: D.
-
Question 19 ప్రశ్న 19Answer: A. (a)-4, (b)-3, (c)-1, (d)-2 సమాధానం: A.
-
Question 20 ప్రశ్న 20Answer: C. Limit further spread, use updated security software to scan and isolate detected threats, and restore affected data from known-clean backups where necessary. సమాధానం: C.
