セキュリティアナリストは、インシデント対応中にマシンからメモリの内容をキャプチャした後、潜在的に悪意のあるプロセスを特定しました。次の手順のうち、さらに調査を進めるための次のステップはどれですか?
正解:D
Reverse engineering is a process of analyzing a system or a component to understand how it works and how it was made. Reverse engineering can be used to examine malicious processes captured from memory and determine their functionality, origin, and purpose. Reverse engineering can help identify the type of malware, its infection vector, its capabilities, its communication methods, and its indicators of compromise2