StudyToCert

All certifications / Security+ / Lessons

CompTIA Security+ SY0-701 · Domain 2: Threats, vulnerabilities & mitigations

Malware: ransomware, trojan, worm, spyware, rootkit, logic bomb, keylogger, fileless

▶ Watch the overview video

Last reviewed September 25, 2026 · Leer en español

Malware is malicious software: any code designed to harm systems, steal data or give an attacker control. Security+ tests malware by behavior, so the skill is reading a short description of what something does and naming it. Many real samples combine several behaviors (a trojan that installs a keylogger and then spreads like a worm), so exam questions usually describe the defining behavior you should key on. Knowing the categories also tells you what to look for during an investigation and which controls help most.

Free account

Keep reading for free

Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 8 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.

Sign up free Log in

Study Security+ for free
A week-by-week plan with every lesson, quizzes, checkpoint tests, a practice exam and hands-on labs.
Open the Security+ study plan