Deck 6: Malicious Software

Full screen (f)
exit full mode
Question
A __________ is code inserted into malware that lies dormant until a predefined condition, which triggers an unauthorized act, is met.

A) logic bomb
B) trapdoor
C) worm
D) Trojan horse
Use Space or
up arrow
down arrow
to flip the card.
Question
__________ are used to send large volumes of unwanted e-mail.

A) Rootkits
B) Spammer programs
C) Downloaders
D) Auto-rooters
Question
A program that is covertly inserted into a system with the intent of compromising the integrity or confidentiality of the victim's data is __________.

A) Adobe
B) Animoto
C) malware
D) Prezi
Question
Keyware captures keystrokes on a compromised system.
Question
A virus that attaches to an executable program can do anything that theprogram is permitted to do.
Question
Metamorphic code is software that can be shipped unchanged to aheterogeneous collection of platforms and execute with identical semantics.
Question
Many forms of infection can be blocked by denying normal users the right tomodify programs on the system.
Question
Malicious software aims to trick users into revealing sensitive personal data.
Question
A bot propagates itself and activates itself, whereas a worm is initiallycontrolled from some central facility.
Question
In addition to propagating, a worm usually carries some form of payload.
Question
A macro virus infects executable portions of code.
Question
A Trojan horse is an apparently useful program containing hidden code that,when invoked, performs some harmful function.
Question
E-mail is a common method for spreading macro viruses.
Question
Every bot has a distinct IP address.
Question
Computer viruses first appeared in the early __________.

A) 1960s
B) 1970s
C) 1980s
D) 1990s
Question
The term "computer virus" is attributed to __________.

A) Herman Hollerith
B) Fred Cohen
C) Charles Babbage
D) Albert Einstein
Question
It is not possible to spread a virus via a USB stick.
Question
Programmers use backdoors to debug and test programs.
Question
Packet sniffers are mostly used to retrieve sensitive information likeusernames and passwords.
Question
A logic bomb is the event or condition that determines when the payload isactivated or delivered.
Question
A computer __________ is a piece of software that can "infect" other programs or any type of executable content and tries to replicate itself.
Question
The __________ is what the virus "does".

A) infection mechanism
B) trigger
C) logic bomb
D) payload
Question
A __________ is when a user views a Web page controlled by the attacker that contains a code that exploits the browser bug and downloads and installs malware on the system without the user's knowledge or consent.
Question
Sometimes referred to as the "infection vector", the __________ is the means by which a virus spreads or propagates.
Question
A __________ attack is a bot attack on a computer system or network that causes a loss of service to users.

A) spam
B) phishing
C) DDoS
D) sniff
Question
A _________ is a set of programs installed on a system to maintain covert access to that system with administrator (root) privileges while hiding evidence of its presence.
Question
The __________ is when the virus function is performed.

A) dormant phase
B) propagation phase
C) triggering phase
D) execution phase
Question
A __________ virus is explicitly designed to hide itself from detection by anti-virus software.
Question
__________ is the first function in the propagation phase for a network worm.

A) Propagating
B) Fingerprinting
B) Keylogging
D) Spear phishing
Question
A __________ uses multiple methods of infection or propagation to maximize the speed of contagion and the severity of the attack.
Question
A __________ uses macro or scripting code, typically embedded in a document and triggered when the document is viewed or edited, to run and replicate itself into other such documents.

A) boot sector infector
B) file infector
C) macro virus
D) multipartite virus
Question
__________ is malware that encrypts the user's data and demands payment in order to access the key needed to recover the information.

A) Trojan horse
B) Ransomware
C) Crimeware
D) Polymorphic
Question
__________ will integrate with the operating system of a host computer and monitor program behavior in real time for malicious actions.

A) Fingerprint-based scanners
B) Behavior-blocking software
C) Generic decryption technology
D) Heuristic scanners
Question
Unsolicited bulk e-mail is referred to as __________.

A) spam
B) propagating
C) phishing
D) crimeware
Question
During the __________ the virus is idle.

A) dormant phase
B) propagation phase
C) triggering phase
D) execution phase
Question
The four phases of a typical virus are: dormant phase, triggering phase, execution phase and __________ phase.
Question
The ideal solution to the threat of malware is __________.

A) identification
B) removal
C) detection
D) prevention
Question
Sometimes known as a "logic bomb", the __________ is the event or condition that determines when the payload is activated or delivered.
Question
__________ code refers to programs that can be shipped unchanged to a heterogeneous collection of platforms and execute with identical semantics.
Question
During the __________ phase the virus is activated to perform the function for which it was intended.
Question
A bot can use a __________ to capture keystrokes on the infected machine to retrieve sensitive information.
Question
Countermeasures for malware are generally known as _________ mechanisms because they were first developed to specifically target virus infections.
Question
A __________ is a collection of bots capable of acting in a coordinated manner.
Question
Because __________ software can block suspicious software in real time, it has an advantage over such established anti-virus detection techniques as fingerprinting or heuristics.
Question
Two types of perimeter monitoring software are _________ monitoring and egress monitoring.
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/45
auto play flashcards
Play
simple tutorial
Full screen (f)
exit full mode
Deck 6: Malicious Software
1
A __________ is code inserted into malware that lies dormant until a predefined condition, which triggers an unauthorized act, is met.

A) logic bomb
B) trapdoor
C) worm
D) Trojan horse
A
2
__________ are used to send large volumes of unwanted e-mail.

A) Rootkits
B) Spammer programs
C) Downloaders
D) Auto-rooters
B
3
A program that is covertly inserted into a system with the intent of compromising the integrity or confidentiality of the victim's data is __________.

A) Adobe
B) Animoto
C) malware
D) Prezi
C
4
Keyware captures keystrokes on a compromised system.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
5
A virus that attaches to an executable program can do anything that theprogram is permitted to do.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
6
Metamorphic code is software that can be shipped unchanged to aheterogeneous collection of platforms and execute with identical semantics.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
7
Many forms of infection can be blocked by denying normal users the right tomodify programs on the system.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
8
Malicious software aims to trick users into revealing sensitive personal data.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
9
A bot propagates itself and activates itself, whereas a worm is initiallycontrolled from some central facility.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
10
In addition to propagating, a worm usually carries some form of payload.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
11
A macro virus infects executable portions of code.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
12
A Trojan horse is an apparently useful program containing hidden code that,when invoked, performs some harmful function.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
13
E-mail is a common method for spreading macro viruses.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
14
Every bot has a distinct IP address.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
15
Computer viruses first appeared in the early __________.

A) 1960s
B) 1970s
C) 1980s
D) 1990s
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
16
The term "computer virus" is attributed to __________.

A) Herman Hollerith
B) Fred Cohen
C) Charles Babbage
D) Albert Einstein
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
17
It is not possible to spread a virus via a USB stick.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
18
Programmers use backdoors to debug and test programs.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
19
Packet sniffers are mostly used to retrieve sensitive information likeusernames and passwords.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
20
A logic bomb is the event or condition that determines when the payload isactivated or delivered.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
21
A computer __________ is a piece of software that can "infect" other programs or any type of executable content and tries to replicate itself.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
22
The __________ is what the virus "does".

A) infection mechanism
B) trigger
C) logic bomb
D) payload
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
23
A __________ is when a user views a Web page controlled by the attacker that contains a code that exploits the browser bug and downloads and installs malware on the system without the user's knowledge or consent.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
24
Sometimes referred to as the "infection vector", the __________ is the means by which a virus spreads or propagates.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
25
A __________ attack is a bot attack on a computer system or network that causes a loss of service to users.

A) spam
B) phishing
C) DDoS
D) sniff
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
26
A _________ is a set of programs installed on a system to maintain covert access to that system with administrator (root) privileges while hiding evidence of its presence.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
27
The __________ is when the virus function is performed.

A) dormant phase
B) propagation phase
C) triggering phase
D) execution phase
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
28
A __________ virus is explicitly designed to hide itself from detection by anti-virus software.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
29
__________ is the first function in the propagation phase for a network worm.

A) Propagating
B) Fingerprinting
B) Keylogging
D) Spear phishing
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
30
A __________ uses multiple methods of infection or propagation to maximize the speed of contagion and the severity of the attack.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
31
A __________ uses macro or scripting code, typically embedded in a document and triggered when the document is viewed or edited, to run and replicate itself into other such documents.

A) boot sector infector
B) file infector
C) macro virus
D) multipartite virus
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
32
__________ is malware that encrypts the user's data and demands payment in order to access the key needed to recover the information.

A) Trojan horse
B) Ransomware
C) Crimeware
D) Polymorphic
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
33
__________ will integrate with the operating system of a host computer and monitor program behavior in real time for malicious actions.

A) Fingerprint-based scanners
B) Behavior-blocking software
C) Generic decryption technology
D) Heuristic scanners
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
34
Unsolicited bulk e-mail is referred to as __________.

A) spam
B) propagating
C) phishing
D) crimeware
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
35
During the __________ the virus is idle.

A) dormant phase
B) propagation phase
C) triggering phase
D) execution phase
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
36
The four phases of a typical virus are: dormant phase, triggering phase, execution phase and __________ phase.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
37
The ideal solution to the threat of malware is __________.

A) identification
B) removal
C) detection
D) prevention
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
38
Sometimes known as a "logic bomb", the __________ is the event or condition that determines when the payload is activated or delivered.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
39
__________ code refers to programs that can be shipped unchanged to a heterogeneous collection of platforms and execute with identical semantics.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
40
During the __________ phase the virus is activated to perform the function for which it was intended.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
41
A bot can use a __________ to capture keystrokes on the infected machine to retrieve sensitive information.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
42
Countermeasures for malware are generally known as _________ mechanisms because they were first developed to specifically target virus infections.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
43
A __________ is a collection of bots capable of acting in a coordinated manner.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
44
Because __________ software can block suspicious software in real time, it has an advantage over such established anti-virus detection techniques as fingerprinting or heuristics.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
45
Two types of perimeter monitoring software are _________ monitoring and egress monitoring.
Unlock Deck
Unlock for access to all 45 flashcards in this deck.
Unlock Deck
k this deck
locked card icon
Unlock Deck
Unlock for access to all 45 flashcards in this deck.