
EC-CouncilEthical Hacking Essentials
Domain 2Objective 1
Malware Concepts, Types, and Attack Mechanisms EHE Practice Questions (Page 9)
Part of the Malware and Password Attacks domain, which makes up ~14% of our current practice bank.
43questions here
9free pages
6concepts
Questions 41–43
- 41
A malware analyst is examining a suspicious executable that is heavily obfuscated. The analyst runs the executable in a sandbox and observes that it unpacks itself in memory, but the file on disk remains packed. The analyst also notices that the unpacked code is different each time the executable is run. Which combination of obfuscation techniques is being used?
Select an answer first - 42
A security team is analyzing a malware sample that is encrypted and only decrypts itself in memory when executed. The team also notices that the malware's decryption routine changes with each infection, but the overall behavior is the same. Which obfuscation technique is primarily being used, and what is the main limitation for static analysis?
Select an answer first - 43
Which malware type disguises itself as a legitimate file or program to trick users into executing it, often leading to a backdoor being installed?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to EHE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.