PMRP Practice Questions - Practical Malware Research Professional (PMRP) Exam

Access More Questions
A malware sample's PE Import Address Table (IAT) references VirtualAlloc, WriteProcessMemory, and CreateRemoteThread from kernel32.dll. What behavior does this combination most strongly suggest?
Correct Answer:
Process injection — allocating memory in a remote process and writing/executing shellcode

Access more questions from this quiz

Continue to PMRP Practice Questions - Practical Malware Research Professional (PMRP) Exam for more practice questions and the full quiz experience.

Access More Questions