nerdexam
EC-CouncilEC-Council

312-49 · Question #697

312-49 Question #697: Real Exam Question with Answer & Explanation

Sign in or unlock 312-49 to reveal the answer and full explanation for question #697. The question stem and answer options stay visible for context.

Submitted by the_admin· Apr 18, 2026Disk Forensics

Question

Analyze the hex representation of mysql-bin.000013 file in the screenshot below. Which of the following will be an inference from this analysis?

Options

  • AA user with username bad_guy has logged into the WordPress web application
  • BA WordPress user has been created with the username anonymous_hacker
  • CAn attacker with name anonymous_hacker has replaced a user bad_guy in the WordPress
  • DA WordPress user has been created with the username bad_guy

Unlock 312-49 to see the answer

You've previewed enough free 312-49 questions. Unlock 312-49 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#MySQL forensics#Binary log analysis#Hexadecimal analysis#User creation
Full 312-49 PracticeBrowse All 312-49 Questions