Courseiva
easyMultiple Select

SSCP Practice Question: Which THREE of the following are common types of…

Which THREE of the following are common types of malware?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Trojan horse

A Trojan horse (A) is a correct answer because it is a classic malware category: it disguises itself as legitimate software to trick a user into executing it, then performs malicious actions such as backdoor installation or data theft. A virus (B) is correct because it is self-replicating malicious code that attaches itself to a host file or boot sector and spreads when the infected host is executed. A worm (C) is correct because it is standalone self-replicating malware that spreads across networks (e.g., via SMB or email) without needing a host file or user action. By contrast, a firewall (D) is a network security control that filters traffic based on rules, and a patch (E) is a software update that remediates vulnerabilities — neither is malware, so they are not correct.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Trojan horse

    Why this is correct

    A Trojan horse is malware disguised as legitimate software, which the user willingly executes, granting the attacker a foothold. It is a distinct malware category defined by deception rather than self-replication, satisfying the question's requirement for a common malware type.

  • ✓

    Virus

    Why this is correct

    A virus is malicious code that attaches to a host file and replicates when that file is executed, requiring user action or a triggering program. This self-replicating, host-dependent behaviour defines it as a common malware category.

  • ✓

    Worm

    Why this is correct

    A worm is standalone malware that self-replicates and spreads across networks without a host file or user interaction, exploiting vulnerabilities directly. This autonomous propagation distinguishes it from viruses and satisfies the requirement for a common malware type.

  • ✗

    Firewall

    Why it's wrong here

    A firewall is a network security control filtering traffic by rules, not executable malicious code. It is tempting because firewalls defend against malware, but they are a mitigation, not a malware category. The question asks for malware types such as viruses, worms and trojans.

  • ✗

    Patch

    Why it's wrong here

    A patch is a vendor-supplied code fix remediating vulnerabilities, the opposite of malicious software. It is tempting because patching is a core malware-defence activity, yet a patch is a legitimate remediation artefact. Malware types include viruses, worms, trojans and ransomware.

About these practice questions

Courseiva writes every SSCP question from scratch — 971 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SSCP practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SSCP exam.