On a municipal jump server, local antivirus shows a clean bill of health, yet an offline integrity tool reveals hidden processes and altered system binaries. Which malware category best explains the concealment?
Select an answer to reveal the explanation.
Short Explanation
When the AV dashboard smiles but integrity tools catch ghosts, think rootkit. It burrows in to hide malware from the usual on-box eyes—offline or deeper checks are how you catch the cover-up.
Full Explanation
Rootkits modify or intercept system mechanisms so malicious processes and files are concealed from local security tools. Integrity analysis from a trusted offline or alternate baseline often exposes the discrepancy. Adware, macro viruses, and smishing tooling do not primarily explain hidden processes and altered binaries on a jump server while local AV reports clean.