wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Day 4 Review

Total questions: 12

Worksheet time: 6mins

Name
Class
Date
1.

A user’s PC fails to boot and shows "No OS found." Which is the first step a technician should take?

a)

Run sfc /scannow

b)

Check boot order in BIOS/UEFI

c)

Perform a Windows reinstall

d)

Replace the hard drive

2.

A PC begins rebooting repeatedly after a recent driver installation. The technician wants to load Windows with only the most essential drivers and services to isolate the problem. Which option should they choose?

a)

Launch Task Manager and disable startup items

b)

Boot into Safe Mode using Advanced Boot Options

c)

Open System Restore and roll back changes

d)

Use “Reset this PC” with “Keep my files”

3.

After updating a graphics driver, the system crashes frequently with blue screens. The technician decides to restore the previous stable driver. Which tool should be used?

a)

Device Manager → Roll Back Driver

b)

System Restore from Safe Mode

c)

Windows Update History

d)

Recovery Partition reinstall

4.

A technician suspects Windows system files are corrupted after multiple crashes and missing icons. Which command should they run to verify and automatically repair those files?

a)

bootrec /fixmbr

b)

chkdsk /r

c)

sfc /scannow

d)

ping -t localhost

5.

A forensic investigation reveals malware that has embedded itself deep in the OS, intercepting system calls and running with kernel-level privileges. What type of malware is this?

a)

Worm

b)

Rootkit

c)

Trojan horse

d)

Spyware

6.

An executive connects to a Wi-Fi hotspot called “Hotel_Conference_Free” and later discovers their credentials were stolen. Security logs reveal the access point was maliciously created. Which attack does this represent?

a)

Phishing

b)

Evil Twin

c)

Vishing

d)

Shoulder surfing

7.

The security team enforces the CIA triad. Which principle ensures data is only accessible by authorized personnel?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authentication

8.

During an incident response, the first step taken is to disconnect the infected laptop from the network to prevent spreading. Which malware removal best practice does this demonstrate?

a)

Remediate infected systems

b)

Quarantine the system

c)

Disable System Restore

d)

Educate the end user

9.

An attacker calls the help desk pretending to be the CEO, demanding urgent password resets. Which social engineering technique is this?

a)

Piggybacking

b)

Shoulder surfing

c)

Dumpster diving

d)

Impersonation

10.

A user reports that a payroll application crashes every time it runs. The technician needs to determine the source of the error. Which Event Viewer log should they check?

a)

Security log

b)

Application log

c)

Setup log

d)

System log

11.

A user unknowingly installed malware disguised as a legitimate app. It allows attackers to log in remotely, install programs, and view files. What type of malware is this?

a)

Rootkit

b)

RAT (Remote Access Trojan)

c)

Worm

d)

Keylogger

12.

An employee reports that their workstation displays a message: “Your files have been encrypted. Pay 1 Bitcoin to restore access.” Which type of malware is this?

a)

Spyware

b)

Rootkit

c)

Ransomware

d)

Worm