EC-CouncilEC-Council
312-49 · Question #697
312-49 Question #697: Real Exam Question with Answer & Explanation
Sign in or unlock 312-49 to reveal the answer and full explanation for question #697. The question stem and answer options stay visible for context.
Submitted by the_admin· Apr 18, 2026Disk Forensics
Question
Analyze the hex representation of mysql-bin.000013 file in the screenshot below. Which of the following will be an inference from this analysis?
Options
- AA user with username bad_guy has logged into the WordPress web application
- BA WordPress user has been created with the username anonymous_hacker
- CAn attacker with name anonymous_hacker has replaced a user bad_guy in the WordPress
- DA WordPress user has been created with the username bad_guy
Unlock 312-49 to see the answer
You've previewed enough free 312-49 questions. Unlock 312-49 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#MySQL forensics#Binary log analysis#Hexadecimal analysis#User creation