A forensic analyst discovers a Windows process with no parent process ID and an unusual network connection to a foreign IP. Which technique best describes what the malware is likely using?
-
A
Process hollowing
-
B
DLL side-loading
-
C
Orphan process injection
-
D
DKOM rootkit hiding