adplus-dvertising
frame-decoration

Question

What is polymorphism?

a.

A technique that thwarts signature-based identification programs by encrypting the program code.

b.

A technique that thwarts signature-based identification programs by decoding the program code.

c.

A technique that thwarts signature-based identification programs by deleting the program code.

d.

A technique that thwarts signature-based identification programs by modifying the program code.

Posted under Reverse Engineering

Answer: (a).A technique that thwarts signature-based identification programs by encrypting the program code. Explanation:Polymorphism is a technique used by malware to evade signature-based detection by encrypting the program code in a way that maintains its original functionality. This makes each copy of the malware appear different, making it difficult for antivirus programs to recognize and identify it using traditional signature-based methods.

Engage with the Community - Add Your Comment

Confused About the Answer? Ask for Details Here.

Know the Explanation? Add it Here.

Q. What is polymorphism?

Similar Questions

Discover Related MCQs

Q. What is the weakness of polymorphism-based solutions?

Q. How does polymorphism prolong the analysis process of a malicious program?

Q. What is the potential weakness of the decryption code in a polymorphic program?

Q. What is required before entering a function that can be polymorphed?

Q. What is metamorphism in the context of malware?

Q. What is the benefit of using metamorphism in malware?

Q. What is required for a metamorphic engine to work?

Q. What kind of alterations can be automatically applied to a program by a metamorphic engine?

Q. What is a metamorphic engine?

Q. What are some parameters that can be randomized by a metamorphic engine?

Q. How does reversing a condition affect the program's code?

Q. What is garbage insertion?

Q. How can metamorphic engines make malware more difficult to identify?

Q. What should you do before attempting to analyze malware?

Q. What is the recommended method for transferring executables to the test system?

Q. Why is it important to rename the malicious program with a nonexecutable extension?

Q. What is the Trojan/Backdoor.Hacarmy.D?

Q. What is the file extension used for screen savers?

Q. What is the purpose of using a file name like "Webcam Shots.scr" for the Trojan?

Q. How is the Trojan/Backdoor.Hacarmy.D typically distributed?