CompTIA A+ Core 2 (220-1202) flashcards
171 free flashcards. Tap a card to flip it.
dumpchk command
Flip cardA command-line utility in Windows used to verify the integrity of a crash dump file.
- Verifies dump file headers and structure.
- Does not analyze the content, only integrity.
- Useful for confirming a dump file is usable before deeper analysis.
Memory trick: Don't Underestimate My Problem, Check KERNEL!
Change Advisory Board (CAB) Approval
Flip cardA formal review process where proposed changes are evaluated and approved before implementation to reduce risk to production systems.
- Change requests must be submitted before work begins
- CAB reviews risk, scope, and scheduling
- Approval reduces unplanned outages and conflicts
Memory trick: Ask before you act — approval comes first.
Incremental Backup Restore
Flip cardA restore process for incremental backups that requires restoring the last full backup first, followed by every incremental backup taken since, in chronological order.
- Incremental backups only capture changes since the last backup of any type
- Restore order: full backup, then each incremental in sequence
- Faster to back up, but slower/more complex to restore than differential
Memory trick: Full first, then follow the trail of increments in order.
DISM RestoreHealth
Flip cardA command-line option for the Deployment Image Servicing and Management (DISM) tool used to repair a corrupted Windows image by replacing damaged files from Windows Update.
- Used when SFC /scannow fails to fix issues.
- Requires an internet connection to download healthy files.
- Repairs the Windows Component Store.
Memory trick: Don't Ignore System Maintenance, Restore Health!
Phishing
Flip cardA type of social engineering attack where an attacker attempts to trick individuals into revealing sensitive information by impersonating a trustworthy entity in electronic communications, typically email.
- Often uses fake websites or login pages.
- Common red flags include generic greetings, grammatical errors, suspicious links/attachments.
- Aims to steal credentials, financial info, or deploy malware.
Memory trick: Social engineers trick you through talk, text, or email.
System File Checker (SFC)
Flip cardThe `sfc /scannow` command-line utility in Windows scans for and restores corrupted, damaged, or missing protected system files.
- Requires elevated (administrator) command prompt.
- Uses cached copies of system files for restoration.
- Often the first step in troubleshooting general Windows instability after ruling out malware/disk errors.
Memory trick: SFC scans for bad system files and makes them right.
Mobile Malware
Flip cardMalicious software designed to target mobile devices, often leading to data theft, unauthorized access, or device disruption.
- Can be distributed via app stores, phishing, or malicious websites.
- Symptoms include rapid battery drain, performance issues, unauthorized data usage, strange pop-ups, and unexpected app installs.
- Often aims to steal personal information, send premium SMS, or gain control of the device.
Memory trick: Mobile threats range from bad apps to lost devices.
Single-User EULA Violation
Flip cardInstalling a software license on more devices or users than permitted by its end-user license agreement breaches licensing terms.
- EULAs define permitted number of installations/users
- Personal licenses typically cannot be used for business-wide deployment
- Volume/enterprise licenses exist for multi-device use
Memory trick: One license, one seat—don't overshare.
RMM Software
Flip cardRemote monitoring and management software that provides centralized visibility, alerting, and automation across many client endpoints from one console.
- Used heavily by MSPs to manage many clients
- Supports patch management, alerting, and remote scripting
- Different from one-to-one tools like RDP, VNC, or SSH
Memory trick: RMM watches the whole fleet, not just one ship.
chkdsk command
Flip cardA Windows command-line utility used to check a disk volume for logical and physical errors, including bad sectors, and can attempt to repair them.
- Scans for file system errors and bad sectors.
- Can be run with different parameters for repair actions.
- Requires elevated privileges to run certain repair operations.
Memory trick: Check Disk: 'CHK' for 'Check', 'DSK' for 'Disk' - it's right there!
macOS Disk Utility
Flip cardA system utility in macOS for performing disk-related tasks, including formatting, partitioning, verifying, and repairing disks and disk permissions.
- Manages internal and external storage devices.
- Can create and manage disk images.
- Includes First Aid feature for basic disk health checks.
Memory trick: Disk Utility: Your 'Disk Doctor' for macOS.
Malware Removal Best Practices
Flip cardA standardized sequence for handling malware: identify, quarantine, disable System Restore, remediate, schedule scans/updates, re-enable System Restore, and educate the user.
- Quarantine isolates the system from the network
- System Restore is disabled to avoid restoring infected files
- End-user education is the final step
Memory trick: 'I Quit Dirty Rats, Schedule Regular Enforcement' = Identify, Quarantine, Disable Restore, Remediate, Schedule, Re-enable, Educate.
WPA3 Personal (SAE)
Flip cardThe version of WPA3 designed for home and small office networks, using Simultaneous Authentication of Equals (SAE) for stronger password-based authentication.
- Replaces WPA2-PSK with SAE, making it more resilient to offline dictionary attacks.
- Provides opportunistic wireless encryption (OWE) for open networks, enhancing privacy.
- Offers individual data encryption for each client, even with a shared password.
Memory trick: WPA3 brings SAE for personal, and 802.1X for enterprise.
Cloud-Based Screen Sharing
Flip cardA remote access method where both parties connect outbound to a cloud service that relays screen sharing and control, avoiding inbound firewall exposure.
- Ideal for ad hoc support/training sessions
- Avoids need to open inbound firewall ports
- Different from persistent access tools like VPN or RDP
Memory trick: Cloud meets in the middle—no open doors needed.
INACCESSIBLE_BOOT_DEVICE
Flip cardA BSOD stop code indicating Windows cannot access the boot drive, commonly caused by a storage controller/driver mismatch (e.g., changing AHCI to RAID in BIOS).
- Often triggered by BIOS SATA mode changes
- Fix by reverting BIOS setting or loading correct driver
- Different from missing OS or corrupted MBR errors
Memory trick: Flip AHCI to RAID and the drive becomes INACCESSIBLE overnight
Proper Lifting Technique
Flip cardA safety practice of bending at the knees and lifting with the legs, keeping the back straight, to prevent workplace injury when moving heavy equipment.
- Keep back straight, bend knees
- Use leg muscles, not back muscles
- Avoid twisting while carrying a load
Memory trick: Lift with your legs, not your back.
WPA3
Flip cardThe latest and most secure wireless security protocol, offering enhanced encryption and authentication methods.
- Uses Simultaneous Authentication of Equals (SAE) for stronger PSK.
- Provides individual data encryption in open Wi-Fi networks (opportunistic wireless encryption).
- More resilient against brute-force attacks compared to WPA2.
Memory trick: Wireless security goes from weak WEP to strong WPA3.
Windows Edition Features
Flip cardDifferent versions of Windows (Home, Pro, Enterprise) offer varying sets of features tailored to different user needs and environments.
- Windows Home is for general consumers, lacks advanced business features.
- Windows Pro adds features like Group Policy, Remote Desktop, BitLocker.
- Windows Enterprise/Education offer even more advanced management and security tools.
Memory trick: Home is basic, Pro is professional, Enterprise is exhaustive.
SquashFS
Flip cardA compressed read-only file system for Linux, designed for embedded systems, live CDs, and scenarios where storage space is at a premium and data integrity for read-only access is critical.
- Highly optimized for compression, often achieving significant space savings.
- Read-only by design, enhancing data integrity and security for fixed images.
- Efficient for fast read operations, ideal for quick boot times from embedded devices.
- Often used in firmware, Android recovery, and live Linux distributions.
Memory trick: SquashFS: 'SQUASH' down the size, 'SURE' for read-only kiosks!
dd command (Linux)
Flip cardA command-line utility in Unix-like operating systems used to convert and copy files block by block, often used for creating bootable media or disk cloning.
- Can write raw disk images (ISOs) directly to devices.
- Very powerful and can cause data loss if used incorrectly.
- Requires specifying input file (if), output file (of), and block size (bs).
Memory trick: To duplicate a disk, use 'dd'.
Least Privilege
Flip cardA security principle that requires that a user or process be given only the minimum level of access or permissions needed to perform its authorized functions, and no more. This limits the potential damage if an account or system is compromised.
- Grants minimum necessary permissions
- Reduces attack surface and potential damage
- Applies to users, applications, and services
- A fundamental principle in security design
Memory trick: Least Privilege means giving only a tiny key, not the master key.
macOS Activity Monitor
Flip cardA macOS utility that displays information about all processes running on the system, including their CPU, memory, energy, disk, and network usage, allowing users to identify and manage resource-intensive applications.
- Accessible from Applications/Utilities folder.
- Provides real-time resource usage graphs.
- Allows quitting or force quitting unresponsive processes.
Memory trick: Activities Monitor Computer's Real-time Use.
Root/Jailbreak Detection
Flip cardA security mechanism used by sensitive apps (like banking apps) to detect if a device has root (Android) or jailbreak (iOS) access and refuse to run, since root access can bypass OS sandboxing protections.
- Common in banking and enterprise apps
- Root/jailbreak weakens the OS security sandbox
- Solution: unroot the device or use official firmware
Memory trick: 'Rooted phones lock out the bank' — trust broken, access denied.
Brute-force Attack
Flip cardA trial-and-error method used by attackers to guess login information, encryption keys, or find hidden web pages by systematically trying all possible combinations.
- Often automated using specialized software.
- Can target passwords, PINs, or encryption keys.
- Mitigated by strong passwords, account lockout policies, and Multi-Factor Authentication (MFA).
Memory trick: Guessing game for passwords is a brute-force attack.
Mobile App Troubleshooting Order
Flip cardMobile app issues should be resolved using the least invasive method first: restart app, force stop, clear cache/data, update, reinstall, and factory reset last.
- Clearing cache removes temporary corrupted files.
- Force stop fully closes a frozen app process.
- Factory reset should be the last resort due to data loss risk.
Memory trick: 'Stop it, Wipe it, then Reinstall it'
Windows Admin Center
Flip cardA flexible, locally deployed, browser-based management platform and solution for Windows Servers, Windows 10/11, Azure virtual machines, and hyper-converged infrastructure.
- Provides centralized management for multiple servers.
- Offers a graphical interface for common administrative tasks.
- Does not require an internet connection for on-premises server management.
Memory trick: Admin Center is the central hub for Windows administration.
Mantrap
Flip cardA physical access control consisting of two interlocking doors that only allow one authenticated person to pass through at a time, preventing tailgating.
- Prevents tailgating/piggybacking
- Only one door opens at a time
- Often paired with badge or biometric access
Memory trick: 'Man'trap traps one 'man' at a time between two doors.
Legal Hold
Flip cardA directive requiring an organization to preserve specific data and suspend normal deletion/retention policies due to pending or anticipated litigation.
- Failure to comply can result in spoliation sanctions
- Overrides standard retention/deletion schedules for relevant data
- Distinct from routine data retention policy enforcement
Memory trick: Lawsuit looming? Lock the deletion down.
Risk Analysis in Change Requests
Flip cardA required component of a change request that identifies potential risks, impacts, and mitigation plans associated with a proposed change before it is approved.
- Helps decision-makers weigh benefits vs. risks
- Should address scope, affected systems, and downtime
- Works alongside rollback/backout plans in change documentation
Memory trick: No risk assessment, no change approval.
APN (Access Point Name) Settings
Flip cardCarrier-provided settings that configure how a mobile device connects to cellular data networks, including specific parameters for MMS delivery.
- MMS requires separate MMSC, proxy, and port settings within the APN
- Incorrect APN can break MMS while leaving calls/SMS/data working
- Carriers can push correct APN settings automatically or manually
Memory trick: APN = 'Access Point Needed' for pictures to travel
Startup Impact Management
Flip cardUsing Task Manager's Startup tab to identify and disable applications that load automatically and slow down boot time.
- High-impact startup apps delay reaching the desktop
- Task Manager > Startup tab shows impact ratings
- Disabling unneeded startup items is low-risk and free
Memory trick: Startup hogs sleeping in bed — kick them out first before buying new furniture
BitLocker Drive Encryption
Flip cardA full-disk encryption feature available in Microsoft Windows Pro, Enterprise, and Education editions, designed to protect data by encrypting entire volumes.
- Encrypts entire hard drives or removable drives.
- Requires a Trusted Platform Module (TPM) for seamless boot protection, but can be used without TPM via USB startup key or password.
- Provides protection against unauthorized data access if a device is lost or stolen.
Memory trick: BitLocker is the 'BIG LOCK' for your whole disk!
Account Lockout Policy
Flip cardA security setting that disables sign-in to an account for a period (or until admin reset) after a specified number of consecutive failed password attempts, mitigating brute-force attacks.
- Configured via Group Policy on domains
- Includes lockout threshold and duration
- Reduces effectiveness of automated password guessing
Memory trick: 'Five strikes, you're locked out' — the lockout bouncer.
Windows 11 UEFI Partitions
Flip cardThe standard set of partitions automatically created by a clean installation of Windows 11 on a system using UEFI firmware.
- Includes Recovery Partition for system repair.
- EFI System Partition (ESP) for boot files and firmware interface.
- Microsoft Reserved Partition (MSR) for internal OS use.
- Main Windows (OS) Partition for the operating system and user data.
Memory trick: UEFI needs four for sure: Recovery, EFI, MSR, OS.
Physical Destruction (SSDs)
Flip cardPhysical destruction for SSDs involves rendering the storage media unusable by methods such as shredding, crushing, or incineration, ensuring that data is absolutely unrecoverable.
- The most secure method for data destruction on SSDs, especially for highly sensitive data.
- Prevents any possibility of data recovery, even with advanced forensic tools.
- Methods include shredding, pulverizing, or melting the drive.
Memory trick: SSDs need shredding for ultimate security.
Remote Wipe
Flip cardA mobile device management (MDM) feature that allows an administrator or device owner to remotely delete all data from a lost or stolen mobile device, ensuring that sensitive information does not fall into the wrong hands.
- Deletes all data from a mobile device remotely
- Used for lost or stolen devices
- Prevents unauthorized access to sensitive information
- Requires the device to be powered on and connected to a network
Memory trick: Remote wipe makes the data disappear with a magic button click.
ext4 File System
Flip cardThe fourth extended filesystem (ext4) is a journaling file system for Linux, widely used as the default for many distributions.
- Supports very large file sizes (up to 16 TiB) and volume sizes (up to 1 EiB).
- Offers journaling for improved data integrity and faster recovery after crashes.
- Backward compatible with ext2 and ext3.
Memory trick: Linux Needs Excellent File System for Robust Tasks.
WPA2/WPA3-Personal Transition Mode
Flip cardA Wi-Fi security mode that allows an access point to simultaneously support both WPA2-Personal and WPA3-Personal clients. This enables backward compatibility for older devices while providing enhanced security for newer, WPA3-capable devices.
- Supports both WPA2 and WPA3 clients
- Ideal for mixed environments with old and new devices
- Maintains compatibility while improving security for WPA3-capable devices
- Also known as WPA3 Mixed Mode
Memory trick: Transition mode lets old and new devices hold hands securely.
Repairing MBR/Boot Sector
Flip cardThe `bootrec` command-line utility, specifically `/fixmbr`, is used to repair issues with the Master Boot Record (MBR) or boot sector, which can prevent a system from booting.
- Accessed from Windows Recovery Environment (WinRE).
- `/fixmbr` rewrites the MBR without overwriting partition table information.
- `/fixboot` writes a new boot sector to the system partition.
Memory trick: Bootrec fixes the boot, especially the MBR.
sfc /scannow
Flip cardA Windows command-line utility that scans all protected system files and replaces corrupted versions with cached correct copies.
- Must be run from an elevated Command Prompt
- Uses a local cache to restore correct file versions
- If it fails, run DISM /Online /Cleanup-Image /RestoreHealth first, then retry sfc
Memory trick: 'S'FC = 'Save the File Cache' — checks files first
Safety Data Sheet (SDS)
Flip cardA document that provides detailed information about a hazardous material, including handling, storage, and disposal procedures, formerly known as an MSDS.
- Required for hazardous materials like toner and batteries
- Provides first aid and spill response information
- Should be kept accessible where hazardous materials are used
Memory trick: Safety Data Sheet: your Safety Guide for hazardous goods.
Robocopy (Robust File Copy)
Flip cardA powerful command-line utility for copying files and directories in Windows, known for its robustness, advanced features, and ability to handle complex transfer scenarios.
- Can mirror directory trees.
- Copies NTFS permissions, timestamps, and attributes.
- Supports resuming interrupted transfers and detailed logging.
Memory trick: ROBOCOPY is the 'Robust' way to copy everything.
VPN for Secure Remote Access
Flip cardA VPN creates an encrypted tunnel between a remote user and the internal network, reducing the risk of exposing remote access protocols like RDP directly to the internet.
- VPN should be established before RDP session begins
- Direct internet-exposed RDP is a common attack vector
- VPN adds authentication and encryption layers
Memory trick: Tunnel first, then connect — VPN before RDP.
BitLocker
Flip cardA full-disk encryption feature included with Microsoft Windows that encrypts entire volumes to protect data at rest.
- Encrypts operating system drives, fixed data drives, and removable data drives.
- Can integrate with a Trusted Platform Module (TPM) for enhanced security.
- Protects data even if the physical drive is stolen or removed from the system.
Memory trick: Encrypt your data with BitLocker for full drive protection.
dd command (disk duplicator)
Flip cardA low-level, powerful command-line utility in Unix-like operating systems used for converting and copying files, often block-by-block, making it ideal for creating bootable media or backing up entire disks.
- Performs a raw, bit-for-bit copy of data.
- Used for creating bootable USB drives from .iso or .img files.
- Can be used for disk imaging, cloning, and wiping drives.
- Extremely powerful and can cause data loss if used incorrectly (e.g., specifying the wrong output device).
Memory trick: DD: 'Disk Duplicator' for 'Direct' copies!
On-Path (Man-in-the-Middle) Attack Indicator
Flip cardAn unexpected SSL/TLS certificate warning on a normally trusted site, especially on public Wi-Fi, can indicate traffic is being intercepted by an attacker positioned between the user and the destination server.
- Public Wi-Fi is a common attack vector
- Certificate warnings should never be dismissed on sensitive sites
- Best response is to disconnect and use a trusted network
Memory trick: 'Free Wi-Fi, costly trust' — a cert warning means someone's listening in.
Windows Settings App
Flip cardThe modern, touch-friendly graphical user interface in Windows 10 and 11 for configuring various system settings, including user accounts, display, network, privacy, and updates.
- Replaces many functions of the traditional Control Panel.
- Organized by categories for easier navigation.
- Designed for both desktop and tablet experiences.
Memory trick: Settings Consolidate All My Preferences.
WPA3 with SAE
Flip cardThe latest Wi-Fi Protected Access security protocol, WPA3, which introduces Simultaneous Authentication of Equals (SAE) to replace the WPA2 Pre-Shared Key (PSK) exchange. SAE provides stronger key establishment and forward secrecy.
- Replaces WPA2-PSK with SAE
- Provides individual data encryption for each client
- Protects against offline dictionary attacks
- Offers forward secrecy
Memory trick: WEP was weak, WPA improved, WPA2 became standard, but WPA3 is the newest and most secure.
Task Manager Startup Tab
Flip cardA section within Windows Task Manager that displays applications configured to launch automatically when the operating system starts, allowing users to enable or disable them.
- Helps improve Windows boot times and reduce resource consumption.
- Shows the impact of each startup program (e.g., 'High', 'Medium', 'Low', 'Not measured').
- Right-clicking an item allows disabling, opening file location, or searching online.
Memory trick: Task Manager: Processes, Performance, App History, Startup for System Control.
AAA Framework
Flip cardAuthentication, Authorization, and Accounting: a security model that verifies identity, grants appropriate access, and logs activity.
- Authentication = who you are
- Authorization = what you can do
- Accounting = tracking what was done
Memory trick: 'Who, What, Wrote it down' = Authenticate, Authorize, Account.
ipconfig /flushdns
Flip cardA Windows command-line utility parameter used to clear the DNS resolver cache, which stores recently resolved domain names and their corresponding IP addresses.
- Removes outdated or incorrect DNS entries from the local cache.
- Useful for troubleshooting DNS resolution issues.
- Forces the system to query DNS servers for new information.
Memory trick: Flush DNS: 'FLUSH' the old, 'DNS' new!
nslookup (Linux)
Flip cardA command-line tool used to query the Domain Name System (DNS) to obtain domain name or IP address mapping or for any other specific DNS record.
- Useful for diagnosing DNS resolution problems.
- Can specify a particular DNS server to query.
- Provides information on A records, MX records, NS records, etc.
Memory trick: Network Services Look Up Domain Names for Solutions.
Windows Task Manager (Startup Tab)
Flip cardA utility in Windows that allows users to monitor running processes, performance, and manage applications that launch automatically at system startup.
- Accessed via Ctrl+Shift+Esc or Ctrl+Alt+Del.
- Startup tab lists applications impacting boot time.
- Allows enabling/disabling startup items.
Memory trick: Task Managers Start Programs Efficiently.
Degaussing
Flip cardThe process of reducing or eliminating a magnetic field. In data destruction, it involves using a powerful magnetic field to erase data from magnetic storage media (like HDDs), rendering the data unrecoverable.
- Erases data on magnetic media (HDDs, tapes)
- Uses a strong magnetic field to randomize data
- Makes data irrecoverable
- Does not work on solid-state drives (SSDs)
Memory trick: Degaussing blasts your hard drive with a magnet, making data disappear like magic.
BitLocker with TPM + PIN
Flip cardA BitLocker configuration that uses both the Trusted Platform Module (TPM) for hardware-based encryption key storage and a user-entered Personal Identification Number (PIN) for pre-boot authentication, offering enhanced security.
- Requires a TPM chip
- Adds a 'something you know' factor (PIN) to the TPM's 'something you have' (hardware token)
- Protects against cold boot attacks and physical drive removal
Memory trick: TPM plus a PIN gives you the strongest lock on your BitLocker.
Containerization (Mobile Security)
Flip cardA mobile security strategy that creates a separate, encrypted, and managed environment on a mobile device to isolate corporate data and applications from personal data.
- Allows IT to manage and secure corporate data without controlling the entire device.
- Enables selective remote wipe of only corporate data.
- Commonly used in BYOD (Bring Your Own Device) environments.
Memory trick: Containers keep work separate from play.
ext4 (Extended File System 4)
Flip cardThe default and most commonly used journaling file system for Linux distributions, offering improved performance, reliability, and features over its predecessors (ext2, ext3).
- Supports large file sizes (up to 16TB) and volume sizes (up to 1EB).
- Includes journaling for faster recovery from crashes and data integrity.
- Optimized for modern solid-state drives (SSDs) and traditional hard drives.
Memory trick: Ext4 is the 'EXTended' choice for 'EXactly' what Linux needs!
BSOD Persisting in Safe Mode
Flip cardWhen a blue screen occurs even in Safe Mode, which loads minimal drivers/services, the cause is likely hardware (e.g., faulty RAM) rather than a driver or software conflict.
- Safe Mode isolates software vs. hardware causes
- Crash in Safe Mode points to hardware failure
- Run Windows Memory Diagnostic or MemTest86 next
Memory trick: Safe Mode strips it bare — if it still crashes, blame the bones (hardware)
gpupdate command
Flip cardA Windows command-line utility used to refresh local and Active Directory-based Group Policy settings on a computer or user account.
- Immediately applies new or changed GPOs.
- Can be used with '/force' to reapply all policies.
- Essential for verifying Group Policy deployment.
Memory trick: GPUPDATE 'updates' your Group Policies.
Firewall Rules
Flip cardFirewall rules are policies configured on a firewall that specify what network traffic is permitted or denied based on various criteria like source/destination IP, port, and protocol.
- Enforce network security policies.
- Can be stateless (packet filtering) or stateful (session-aware).
- Crucial for controlling inbound and outbound network access for devices and networks.
Memory trick: Firewall rules form a FENCE around your network access.