GCIH · Question #114
Which of the following malicious code can have more than one type of trigger, multiple task capabilities, and can replicate itself in more than one manner?
The correct answer is B. Blended threat. A blended threat combines multiple attack vectors, trigger mechanisms, replication strategies, and malicious payloads into a single attack, distinguishing it from single-purpose malware types.
Question
Which of the following malicious code can have more than one type of trigger, multiple task capabilities, and can replicate itself in more than one manner?
Options
- AMacro virus
- BBlended threat
- CTrojan
- DBoot sector virus
How the community answered
(28 responses)- A4% (1)
- B86% (24)
- C7% (2)
- D4% (1)
Why each option
A blended threat combines multiple attack vectors, trigger mechanisms, replication strategies, and malicious payloads into a single attack, distinguishing it from single-purpose malware types.
A macro virus is limited to exploiting macro functionality within documents such as Word or Excel files and does not support multiple replication methods or diverse task capabilities.
A blended threat is specifically defined as malicious code that uses multiple methods of propagation (e.g., email, network shares, web exploits), can carry multiple payloads, supports multiple trigger conditions, and can replicate itself via more than one mechanism - making it uniquely multi-dimensional compared to other malware categories.
A Trojan horse masquerades as legitimate software but does not self-replicate, which disqualifies it from matching the multi-replication characteristic described in the question.
A boot sector virus targets and resides in the master boot record or volume boot record and relies on a single, specific replication method tied to disk access, not multiple replication techniques.
Concept tested: Definition and characteristics of blended threats
Source: https://www.cisco.com/c/en/us/about/security-center/blended-threats.html
Topics
Community Discussion
No community discussion yet for this question.