Symantec 250-428 Exam Practice Questions (P. 3)
- Full Access (159 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #11
A Symantec Endpoint Protection Manager (SEPM) administrator notices performance issues with the SEPM server. The Client tab becomes unresponsive in the
SEPM console and .DAT files accumulate in the "agentinfo" folder.
Which tool should the administrator use to gather log files to submit to Symantec Technical Support?
SEPM console and .DAT files accumulate in the "agentinfo" folder.
Which tool should the administrator use to gather log files to submit to Symantec Technical Support?
- AcollectLog.cmd
- BLogExport.exe
- Csmc.exe
- DExportLog.vbs
Correct Answer:
A
References: https://support.symantec.com/en_US/article.TECH105955.html
A
References: https://support.symantec.com/en_US/article.TECH105955.html
send
light_mode
delete
Question #12
Which two considerations must an administrator make when enabling Application Learning in an environment? (Select two.)
- AApplication Learning should be deployed on a small group of systems in the enterprise.
- BApplication Learning can generate significant CPU or memory use on a Symantec Endpoint Protection Manager.
- CApplication Learning is dependent on Insight.
- DApplication Learning requires a file fingerprint list to be created in advance.
- EApplication Learning can generate increased false positives.
Correct Answer:
AB
References: https://support.symantec.com/en_US/article.TECH134367.html
AB
References: https://support.symantec.com/en_US/article.TECH134367.html
send
light_mode
delete
Question #13
Which task should an administrator perform to troubleshoot operation of the Symantec Endpoint Protection embedded database?
- AVerify the sqlserver.exe service is running on port 1433
- BVerify that dbsrv11.exe is listening on port 2638
- CCheck the database transaction logs in X:\Program Files\Microsoft SQL Server
- DCheck whether the MSSQLSERVER service is running
Correct Answer:
B
References: https://support.symantec.com/en_US/article.TECH160964.html
B
References: https://support.symantec.com/en_US/article.TECH160964.html
send
light_mode
delete
Question #14
An administrator changes the Virus and Spyware Protection policy for a specific group that disables Auto-Protect. The administrator assigns the policy and the client systems apply the corresponding policy serial number. Upon visual inspection of a physical client system, the policy serial number is correct. However, Auto-
Protect is still enabled on the client system.
Which action should the administrator take to ensure that the desired setting is in place on the client?
Protect is still enabled on the client system.
Which action should the administrator take to ensure that the desired setting is in place on the client?
- ARestart the client system.
- BEnable the padlock next to the setting in the policy.
- CRun a command on the computer to Update Content
- DWithdraw the Virus and Spyware Protection policy
Correct Answer:
B
B
send
light_mode
delete
Question #15
What does SONAR use to reduce false positives?
- AVirus and Spyware definitions
- BExtended File Attributes (EFA) table
- CFile Fingerprint list
- DSymantec Insight
Correct Answer:
D
References: https://support.symantec.com/en_US/article.HOWTO80929.html
D
References: https://support.symantec.com/en_US/article.HOWTO80929.html
send
light_mode
delete
All Pages