nerdexam
GIAC

GREM · Question #10

How can obfuscated call instructions within malware be identified and analyzed? (Choose Two)

The correct answer is A. By recognizing patterns that deviate from standard compilation outputs B. Through the identification of unusual jumps and data movements that precede call instructions. See the full explanation below for the reasoning.

Question

How can obfuscated call instructions within malware be identified and analyzed? (Choose Two)

Options

  • ABy recognizing patterns that deviate from standard compilation outputs
  • BThrough the identification of unusual jumps and data movements that precede call instructions
  • CBy counting the frequency of call instructions
  • DMonitoring stack changes prior to call operations

How the community answered

(31 responses)
  • A
    77% (24)
  • C
    16% (5)
  • D
    6% (2)

Community Discussion

No community discussion yet for this question.

Full GREM Practice