Please use this identifier to cite or link to this item: https://hdl.handle.net/11147/11973
Title: Forensic analysis of persistent data storages analyzing NTFS formatted drives
Authors: Özgür, Hüseyin Güven
Şahin, Serap
Izmir Institute of Technology
Izmir Institute of Technology
Keywords: Computational forensic
Hard-drive analysis
Metadata
Recovering files deleted
Issue Date: 2018
Publisher: Karabük Üniversitesi
Abstract: Computational forensic is a far-reaching field for criminal and civil laws in this age. Aim of this project is to develop an educational tool to analyze persistent storage devices to find possible evidences. Evidences are found as metadata information on these drives. These metadata information are collected in a comma separated value-CSV format document. This CSV file can be imported to a database and can be easily analyzed. By the classical forensic investigator tools mostly can analyze only one media at a time, but by this way more than one digital evidence can be comparatively analyzed. Also, deleted files may hold evidences, so recovering of deleted files is an additional topic for this study. The structured codes and related documents have shared on github as an open project; to give a chance to extension of this study by new projects and we hope that the product of this study can be useful tool for computational forensic courses.
Description: International Conference on Advanced Technologies, Computer Engineering and Science (ICATCES’18), May 11-13, 2018 Safranbolu, Turkey
URI: https://hdl.handle.net/11147/11973
Appears in Collections:Computer Engineering / Bilgisayar Mühendisliği

Files in This Item:
File Description SizeFormat 
Forencis_Guven.pdfConference Object821.75 kBAdobe PDFView/Open
Show full item record

CORE Recommender

Page view(s)

26,536
checked on Oct 3, 2022

Download(s)

5,448
checked on Oct 3, 2022

Google ScholarTM

Check


Items in GCRIS Repository are protected by copyright, with all rights reserved, unless otherwise indicated.