Review the following search: childproc_name:”rundll32.exe” AND -digsig_result:”Signed” AND path:c:windows* What is this search looking for?
A. Processes being launched by rundll32.exe running out of the windows directory that are not signed
B. Instances of rundll32.exe running out of the windows directory that are not signed
C. Instances of rundll32.exe running out of the windows directory that are signed
D. Processes launching rundll32.exe running out of the windows directory that are not signed