Question: What is the advantage of malware using APC ( asynchronous procedure call ) as a covert launching method? a ) APC has a queue of
What is the advantage of malware using APC asynchronous procedure call as a covert launching method?
a APC has a queue of events for implementation so any malicious process in the queue is mixed with the benign one.
b APC schedules the launch from the targeted thread rather than using CreateRemoteThread
c APC consumes less resources than process injection or replacement
d APCwill automaticallyprioritize the execution of the malicious process if they are in the queue and flagged into analertable state
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
