A malware sample is found to create a service with a binary path pointing to a UNC path (\\server\share\evil.exe). What persistence mechanism does this represent?
-
A
Remote service execution for lateral movement
-
B
DLL hijacking via UNC path
-
C
Pass-the-hash persistence
-
D
Token impersonation persistence