Please use this identifier to cite or link to this item:
Title: Forensic analysis of persistent data storages analyzing NTFS formatted drives
Authors: Özgür, Hüseyin Güven
Şahin, Serap
Keywords: Computational forensic
Hard-drive analysis
Recovering files deleted
Publisher: Karabük Üniversitesi
Abstract: Computational forensic is a far-reaching field for criminal and civil laws in this age. Aim of this project is to develop an educational tool to analyze persistent storage devices to find possible evidences. Evidences are found as metadata information on these drives. These metadata information are collected in a comma separated value-CSV format document. This CSV file can be imported to a database and can be easily analyzed. By the classical forensic investigator tools mostly can analyze only one media at a time, but by this way more than one digital evidence can be comparatively analyzed. Also, deleted files may hold evidences, so recovering of deleted files is an additional topic for this study. The structured codes and related documents have shared on github as an open project; to give a chance to extension of this study by new projects and we hope that the product of this study can be useful tool for computational forensic courses.
Description: International Conference on Advanced Technologies, Computer Engineering and Science (ICATCES’18), May 11-13, 2018 Safranbolu, Turkey
Appears in Collections:Computer Engineering / Bilgisayar Mühendisliği

Files in This Item:
File Description SizeFormat 
Forencis_Guven.pdfConference Object821.75 kBAdobe PDFView/Open
Show full item record

CORE Recommender

Page view(s)

checked on May 20, 2024


checked on May 20, 2024

Google ScholarTM


Items in GCRIS Repository are protected by copyright, with all rights reserved, unless otherwise indicated.