Question 77 of 730 from exam SY0-601: CompTIA Security+

Question 77 of 730 from exam SY0-601: CompTIA Security+

Prev Question Next Question

Question

After a user reports stow computer performance, a systems administrator detects a suspicious file, which was installed as part of a freeware software package.

The systems administrator reviews the output below:

c:\Windows\system32>netstat -nab
Active Connections

Proto Local Address Foreign Address
TCP 0.0.0.0:135 0.0.0.0:0

TCP 0.0.0.0:445 0.0.0.0:0

TCP 192.168.1.10:5000 10.37.213.20

UDP

192.168.1.10:1900 *.*

State
LISTENING
LISTENING

ESTABLISHED

RpcSs| [svchost.exe]
[svchost .exe]

winserver.exe
SSDPSVR

Based on the above information, which of the following types of malware was installed on the user's computer?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D. E.

A.