A+ Certification Exam: Core 2 Free Sample Questions

19 free sample questions259 in the full practice test Other versions: 220-1202(292),220-1102(49)

Try simulator

220-1002 Sample Questions

  1. Question 1

    A technician arrives on site to find that two users who have the same model on Android smartphone are having the same issue with a specific application.
    Whenever they attempt to launch the application, it fails and gives an error message.
    Which of the following should the technician do FIRST?

    Answer and explanation

    Correct answer: D

    When multiple users with the same Android device model experience identical application crashes, this typically indicates an OS compatibility issue between the application and the specific Android version. Updating the OS resolves compatibility conflicts and often includes security patches that fix app stability issues. Reinstalling the app would not address underlying OS compatibility problems, rolling back may not be available, and clearing cache only addresses temporary data issues, not systemic compatibility problems.

  2. Question 2

    Multiple answers

    A technician is working on a Windows 10 PC that is running slowly.
    Which of the following commands should the technician use to correct this issue? (Choose two.)

    Answer and explanation

    Correct answers: B, C

    For a Windows 10 PC running slowly, chkdsk and dism are the most effective commands. The chkdsk command scans and repairs file system errors, bad sectors, and disk corruption that can significantly slow system performance. The dism command can repair Windows system image corruption and restore missing or damaged system files. The other options serve different purposes: dir lists directory contents, ipconfig manages network settings, format erases drives completely, and diskpart manages disk partitions but does not repair performance issues.

    For a Windows 10 PC running slowly, chkdsk and dism are the most effective commands. The chkdsk command scans and repairs file system errors, bad sectors, and disk corruption that can significantly slow system performance. The dism command can repair Windows system image corruption and component store issues. Dir simply lists directory contents, ipconfig manages network configuration, format erases drives, and diskpart manages disk partitions - none of these directly address system slowness.

  3. Question 3

    Multiple answers

    An administrator is setting up a Windows terminal server.
    Which of the following settings should the administrator modify to increase server security? (Choose two.)

    Answer and explanation

    Correct answers: C, E

    To increase Windows terminal server security, placing the server in the router DMZ and blocking unused ports on the LAN switch are the most effective measures. DMZ placement isolates the terminal server from the internal network, limiting potential damage if compromised. Blocking unused switch ports prevents unauthorized physical network access and reduces attack surface. Changing the default port and enforcing password complexity are good practices but less critical than network isolation, while disabling logon restrictions and using local certificates actually decrease security.

    To increase Windows terminal server security, placing the server in the router DMZ and blocking unused ports on the LAN switch are the most effective measures. DMZ placement isolates the terminal server from the internal network, limiting potential damage from breaches. Blocking unused ports prevents unauthorized network access and reduces attack surface. Changing the default port, enforcing password complexity, and disabling logon restrictions are good practices but less critical than network isolation and port security.

  4. Question 4

    A company has hired a new IT firm to manage its network switches and routers. The firm is geographically separated from the company and will need to able to securely access the devices.
    Which of the following will provide the ability to access these devices?

    Answer and explanation

    Correct answer: B

    SSH (Secure Shell) is the correct protocol for secure remote access to network switches and routers. SSH provides encrypted authentication and data transmission, protecting credentials and configuration commands from interception. Telnet transmits data in plain text and is inherently insecure. RDP and VNC are designed for remote desktop access to Windows and graphical systems respectively, not for command-line network device management. SSH is the industry standard for secure network device administration.

  5. Question 5

    Multiple answers

    A small office’s wireless network was compromised recently by an attacker who brute forced a PIN to gain access. The attacker then modified the DNS settings on the router and spread malware to the entire network.
    Which of the following configurations MOST likely allowed the attack to take place? (Choose two.)

    Answer and explanation

    Correct answers: C, F

    The attack described indicates WPS (Wi-Fi Protected Setup) and WEP vulnerabilities were exploited. WPS uses an 8-digit PIN that can be brute-forced relatively easily, especially since the last digit is a checksum, leaving only 7 digits to crack. Once WPS is compromised, attackers gain full network access. WEP encryption is also notoriously weak and easily cracked. Default login credentials on the router allowed DNS modification after network access was gained. Guest networks, TKIP, and outdated firmware, while security concerns, were not the primary attack vectors described in this scenario.

  6. Question 6

    A client wants a technician to create a PC naming convention that will make the client’s PCs easier to track and identify while in use.
    Which of the following naming convention formats should the technician follow?

    Answer and explanation

    Correct answer: C

    Asset ID and MAC address provide the most effective PC naming convention for tracking and identification. Asset IDs are unique organizational identifiers that link directly to inventory management systems for asset tracking, warranty management, and support records. MAC addresses are globally unique hardware identifiers that never change, making devices easily identifiable on networks. Domain names and locations can change, IP addresses are dynamic and reassignable, and RFID requires additional hardware infrastructure that may not be present in all environments.

  7. Question 7

    Multiple answers

    Which of the following provide the BEST security for a server room? (Choose two.)

    Answer and explanation

    Correct answers: A, C

    Badge readers and biometric locks provide the best security for server rooms by implementing multi-factor authentication and access control. Badge readers validate authorized personnel through ID cards linked to access control systems, providing audit trails of entry/exit times. Biometric locks use unique physical characteristics like fingerprints or retinal scans that cannot be duplicated or shared, ensuring only authorized individuals gain access. Bollards protect against vehicle intrusion but not relevant for server rooms, cable locks secure individual devices but not room access, USB tokens are authentication devices but not access control systems, and privacy window shades provide visual security but no access control.

  8. Question 8

    Which of the following threats uses personalized information in an attempt at obtaining information?

    Answer and explanation

    Correct answer: D

    Spear phishing uses personalized information to target specific individuals with customized attacks that appear legitimate. Unlike generic phishing, spear phishing incorporates personal details like names, job titles, company information, or recent activities to increase credibility and success rates. Whaling targets high-profile executives but is not necessarily personalized, impersonation involves pretending to be someone else but may not use personal information, and spoofing involves falsifying sender information but does not necessarily incorporate personalized content about the target.

  9. Question 9

    A technician receives an invalid certificate error when visiting a website with port 443 enabled. Other computers on the same LAN do not exhibit this symptom.
    Which of the following needs to be adjusted on the workstation to fix the issue?

    Answer and explanation

    Correct answer: A

    Invalid certificate errors on port 443 (HTTPS) affecting only one workstation typically indicate incorrect date and time settings. SSL/TLS certificates have validity periods defined by start and end dates, and browsers reject certificates if the local system time falls outside this range. Since other computers on the same LAN work properly, the issue is isolated to this specific workstation system configuration. UEFI boot mode affects hardware initialization not certificate validation, logon times control user access periods not certificate verification, and user access control manages permissions but does not affect certificate date validation.

Register free to unlock 10 more sample questions

Lifetime One

Own this practice test forever.

$79.99
$75.99
one-time
  • Full access to 600 questions
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • Brainy AI Assistant
  • Lifetime updates

Two

Any 2 exams per month.

$20.00/exam
$39.99
/month
  • 2 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 1,000 Brainy AI Credits
  • Cancel anytime

Premium Twelve

Any 12 exams over 3 months.

$15.00/exam
$179.99
/3 months
  • 4 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 15,000 Brainy AI Credits
  • Dedicated support
  • Friend seat included — full access

Trusted by professionals at

NvidiaSupabaseGitHubOpenAITursoClerkClaude AIAmazon