Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Proofpoint TPAD01 Exam - Topic 11 Question 6 Discussion

What does the default exestrip rule do?
C) Deletes the listed attachments from the message and continues processing
A) Quarantines the message and notifies the receiver that it has been quarantined
B) Sends the message to the Message Defense module
D) Deletes messages with executable attachments

Proofpoint TPAD01 Exam - Topic 11 Question 6 Discussion

Actual exam question for Proofpoint's TPAD01 exam
Question #: 6
Topic #: 11
[All TPAD01 Questions]

What does the default exestrip rule do?

Show Suggested Answer Hide Answer
Suggested Answer: C

The correct answer is C. Deletes the listed attachments from the message and continues processing. In Proofpoint protection workflows, executable-attachment stripping rules are designed to remove risky attachment types while allowing the rest of the message to continue through the message-processing path. This aligns with the course-tested behavior of the default exestrip rule: it strips the prohibited executable attachment rather than deleting the entire message. Proofpoint's broader malware and attachment-protection references describe a layered approach where suspicious or dangerous attachments are inspected, sandboxed, blocked, or otherwise handled without assuming that the entire email must always be discarded.

That distinction matters operationally. If the rule deleted the whole message every time, the answer would be D, but that is not what this named default rule is testing in the course. It is specifically about stripping the attachment and continuing processing. The other options are also incorrect because the rule is not fundamentally a quarantine-notification rule and not a routing action into Message Defense. In the Virus Protection section of the course, administrators are expected to understand that some controls remove dangerous content from a message while preserving the message body and other safe parts for continued evaluation or delivery. Therefore, the verified and course-aligned answer is C.


Contribute your Thoughts:

0/2000 characters
Lili
2 hours ago
I think it deletes messages with executable attachments. Seems straightforward.
upvoted 0 times
...
Felix
5 days ago
I thought it was just for attachments, not the whole message!
upvoted 0 times
...
Jeannetta
10 days ago
Nope, it actually sends them to the Message Defense module.
upvoted 0 times
...
Verdell
16 days ago
Wait, are you sure? I thought it just quarantined them.
upvoted 0 times
...
Brynn
2 months ago
Totally agree, that's what I read too!
upvoted 0 times
...
Bernadine
2 months ago
It deletes messages with executable attachments.
upvoted 0 times
...
Bette
3 months ago
I feel like the answer could be C, since it mentions deleting attachments, but I need to double-check what the default behavior is.
upvoted 0 times
...
Dominga
3 months ago
If I recall correctly, the exestrip rule should delete messages with executable attachments, but I’m not 100% certain.
upvoted 0 times
...
Vanda
3 months ago
I remember practicing a question like this, and I think it might be option D, but I could be mixing it up with another rule.
upvoted 0 times
...
Hyman
3 months ago
I think the default exestrip rule is about handling executable attachments, but I'm not sure if it deletes them or just quarantines the message.
upvoted 0 times
...

Save Cancel