Title of article :
A Practical Approach for Evidence Gathering in Windows Environment
Author/Authors :
Kaveesh Dashora، نويسنده , , Deepak Singh Tomar، نويسنده , , J.L. Rana، نويسنده ,
Issue Information :
روزنامه با شماره پیاپی سال 2010
Pages :
7
From page :
21
To page :
27
Abstract :
With theincrease in internet technology cyber-attacks have also increased, most of the sufferers from these cyber-attacks are novice windows end users. Windows is more popular due to the ease in use, and effective GUI; due to the unavailability of windows component source code the crime investigations in windows environment is a tedious and hectic job for law enforcement agencies. The unsystematic organization of the available sources of evidence in a windows environment makes the integration of these evidences a difficult task. In this paper a prototype model is developed and implemented to extract the various sources of evidence in windows environment. Investigation issues in Windows and Linux environment are also presented.
Keywords :
Log File , Windows Registry Analysis , Operating System Forensics , Windows Event Logs , Evidence Collection
Journal title :
International Journal of Computer Applications
Serial Year :
2010
Journal title :
International Journal of Computer Applications
Record number :
660000
Link To Document :
بازگشت