nerdexam
GAQM

CPEH-001 · Question #1040

Which rootkit is characterized by its function of adding code and/or replacing some of the operating- system kernel code to obscure a backdoor on a system?

The correct answer is C. Kernel-level rootkit. See the full explanation below for the reasoning.

Question

Which rootkit is characterized by its function of adding code and/or replacing some of the operating- system kernel code to obscure a backdoor on a system?

Options

  • AUser-mode rootkit
  • BLibrary-level rootkit
  • CKernel-level rootkit
  • DHypervisor-level rootkit

How the community answered

(29 responses)
  • A
    3% (1)
  • B
    3% (1)
  • C
    83% (24)
  • D
    10% (3)

Community Discussion

No community discussion yet for this question.

Full CPEH-001 Practice