220-1102 exam dumps

220-1102 practice question 557 of 828

A+ Core 2. Associate level, CompTIA. Free question with the correct answer and a full explanation.

220-1102 Question 557

Single answerUntrusted sources

A user in the accounting department downloads a free PDF utility from a website linked in an online forum. When the user tries to run the installer on a Windows 11 company laptop, SmartScreen displays a warning that the app is from an unrecognized publisher and could put the PC at risk. The user says they need the tool immediately to merge invoices. As the technician, what is the BEST next step?

  1. A

    Bypass the warning and run the installer because the file is needed for business use

  2. B

    Verify the software through approved company sources or the vendor's trusted site before allowing installation

  3. C

    Disable SmartScreen temporarily so the installation can complete without interruption

  4. D

    Run the installer as administrator to see whether the warning clears

Show answer and explanation

Correct answer: B

Explanation

The key A+ Core 2 concept is to avoid installing or executing software from untrusted sources until it has been validated. In a real support environment, technicians should follow organizational policy, use approved repositories, confirm the software publisher, and obtain applications only from trusted vendor sites or internal deployment tools. Microsoft security guidance for Defender SmartScreen explains that these warnings are intended to help protect against malicious or unknown apps and should not be bypassed casually. The best response is to verify legitimacy first rather than disable protections, elevate privileges, or proceed based solely on urgency.

  • A. Incorrect.

    This is incorrect. Business need does not justify installing software from an untrusted or unverified source. A+ security best practices emphasize validating software origin before execution, especially when Windows warns that the publisher is unrecognized. Bypassing the warning could introduce malware, adware, or unwanted software.

  • B. Correct.

    This is correct. The safest and most appropriate action is to verify the software through approved internal channels, such as company software deployment processes, an approved software catalog, or the vendor's legitimate website. If the utility is needed, obtaining it from a trusted source and confirming publisher legitimacy aligns with standard endpoint security practices and the A+ Core 2 objective of avoiding untrusted sources.

  • C. Incorrect.

    This is incorrect. SmartScreen is a protective control designed to warn users about potentially unsafe applications and downloads. Disabling it to install unknown software weakens system security and does not address whether the file is legitimate. This reflects a common but unsafe shortcut when users are under time pressure.

  • D. Incorrect.

    This is incorrect. Running the installer as administrator does not validate the publisher or source. In fact, elevating privileges for unknown software increases the potential impact if the installer is malicious. The issue is trust and verification, not permissions.

Timed practice exam

Take a 220-1102 practice test under exam conditions

90 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam