Which of the following is a suspicious process behavior?
- A.PowerShell running an execution policy of RemoteSigned
- B.An Internet browser (eg., Internet Explorer) performing multiple DNS requests
- C.PowerShell launching a PowerShell script
- D.Non-network processes (e.g., notepad.exe) making an outbound network connection