Please use this identifier to cite or link to this item: https://hdl.handle.net/11147/11973
Title: Forensic analysis of persistent data storages analyzing NTFS formatted drives
Authors: Özgür, Hüseyin Güven
Şahin, Serap
01. Izmir Institute of Technology
01. Izmir Institute of Technology
Keywords: Computational forensic
Hard-drive analysis
Metadata
Recovering files deleted
Issue Date: 2018
Publisher: Karabük Üniversitesi
Abstract: Computational forensic is a far-reaching field for criminal and civil laws in this age. Aim of this project is to develop an educational tool to analyze persistent storage devices to find possible evidences. Evidences are found as metadata information on these drives. These metadata information are collected in a comma separated value-CSV format document. This CSV file can be imported to a database and can be easily analyzed. By the classical forensic investigator tools mostly can analyze only one media at a time, but by this way more than one digital evidence can be comparatively analyzed. Also, deleted files may hold evidences, so recovering of deleted files is an additional topic for this study. The structured codes and related documents have shared on github as an open project; to give a chance to extension of this study by new projects and we hope that the product of this study can be useful tool for computational forensic courses.
Description: International Conference on Advanced Technologies, Computer Engineering and Science (ICATCES’18), May 11-13, 2018 Safranbolu, Turkey
URI: https://hdl.handle.net/11147/11973
Appears in Collections:Computer Engineering / Bilgisayar Mühendisliği

Files in This Item:
File Description SizeFormat 
Forencis_Guven.pdfConference Object821.75 kBAdobe PDFView/Open
Show full item record



CORE Recommender

Page view(s)

26,598
checked on Mar 4, 2024

Download(s)

5,724
checked on Mar 4, 2024

Google ScholarTM

Check





Items in GCRIS Repository are protected by copyright, with all rights reserved, unless otherwise indicated.