Types of malware, how they spread and the damage they cause. Sourced directly from Seaford's Craig 'n' Dave Topic 5 slides.
—
Best score
—
Last attempt
Best attempt progress
0
XP earned
Watch first — Craig 'n' Dave
Craig 'n' Dave · Edexcel 1CP2Malware — Types and How They Work
Craig 'n' Dave · Edexcel 1CP2How Hackers Exploit Vulnerabilities
Key facts
Types of malware — know all of these
Virus — a piece of code that can copy itself and typically corrupts data or disrupts a system. Needs human interaction to spread (e.g. opening an infected file).
Worm — similar to a virus but self-replicates without human interaction. Spreads automatically across networks (e.g. via email address books).
Trojan — appears to be harmless software but is malicious. Does not self-replicate. Often used to deliver other malware.
Ransomware — encrypts the victim's files. Attacker demands payment to decrypt them.
Keylogger — covertly records keystrokes to capture passwords and personal data. Often installed via a trojan.
Spyware — secretly monitors user activity and sends data to an attacker.
Removable media — infected USB drives can install malware when plugged in
Email attachments — opening infected attachments
Downloading from untrusted sources — fake software, pirated content
Social engineering — tricking users into installing malware (phishing, baiting)
Key differences — virus vs worm vs trojan
Virus — needs human action to spread, attaches to files
Worm — spreads automatically, no human action needed, exploits network connections
Trojan — disguised as legitimate software, does not self-replicate
Exams often ask you to distinguish between these three — know the key difference
Exam questions — 5 questions · 12 marks
⚡ This module includes extended questions (4–6 marks). Read the hint. Write in full linked sentences. The AI will tell you exactly which mark scheme points you missed.
1 markWorm vs virusEdexcel 1CP2 style
What is the key difference between a computer worm and a computer virus?
A A worm destroys files while a virus does not
B A worm can spread and self-replicate without any human interaction, whereas a virus requires human action to spread
C A virus is more dangerous than a worm
D A worm only affects mobile devices
1 markRansomwareEdexcel 1CP2 style
Which of the following best describes ransomware?
A Software that monitors keystrokes and sends them to an attacker
B Software that appears harmless but performs malicious actions
C Malware that encrypts a victim's files and demands payment for decryption
D A program that replicates itself across a network without user action
Explain why running unpatched software creates a security risk, and describe two measures an organisation can take to reduce this risk. (4 marks)
Hint: First explain WHY unpatched software is risky (vulnerabilities → exploitation). Then give two specific measures. One mark each for risk + each measure.
+40 XP
1 markKeyloggerEdexcel 1CP2 style
How does a keylogger typically get installed on a victim's computer?
A Through an email attachment that the user opens
B Via a trojan disguised as legitimate software
C By exploiting a vulnerability in the operating system automatically
D Through a phishing website
4 marksCompare malware typesEdexcel 1CP2 style
A company discovers that malware has spread to every computer on its network automatically overnight, without any employee opening suspicious files. Identify the most likely type of malware and explain how it spread. (4 marks)
Hint: The key clue is "automatically overnight without employee action" — that rules out viruses and trojans. Identify the type, then explain the mechanism.