nerdexam
CompTIA

SY0-501 · Question #413

A user downloads and installs an MP3 converter, and runs the application. Upon running the application, the antivirus detects a new port in a listening state. Which of the following has the user…

The correct answer is A. RAT. The detection of a new listening port in a listening state after running a suspicious application is a classic indicator of malware designed for remote access.

Submitted by hans_de· Mar 4, 2026Threats, vulnerabilities, and mitigations

Question

A user downloads and installs an MP3 converter, and runs the application. Upon running the application, the antivirus detects a new port in a listening state. Which of the following has the user MOST likely executed?

Options

  • ARAT
  • BWorm
  • CRansomware
  • DBot

How the community answered

(35 responses)
  • A
    71% (25)
  • B
    9% (3)
  • C
    14% (5)
  • D
    6% (2)

Why each option

The detection of a new listening port in a listening state after running a suspicious application is a classic indicator of malware designed for remote access.

ARATCorrect

A Remote Access Trojan (RAT) is a type of malware designed to provide an attacker with unauthorized remote control over a compromised system. To achieve this, RATs frequently establish a new listening port on the victim's machine, allowing the attacker to initiate an inbound connection and manage the system remotely.

BWorm

Worms are primarily characterized by their ability to self-replicate and spread autonomously across networks, not by opening listening ports for direct remote control by an attacker.

CRansomware

Ransomware's primary function is to encrypt a victim's files and demand a ransom for their decryption, rather than to establish a listening port for remote administrative access.

DBot

While a bot allows remote control as part of a botnet, it typically initiates outbound connections to its command and control server rather than opening a listening port for arbitrary inbound connections from an attacker.

Concept tested: Malware types and characteristics

Source: https://learn.microsoft.com/en-us/microsoft-365/security/intelligence/trojans

Topics

#RAT#malware#port listening#trojan

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice