Sciweavers

SADFE
2007
IEEE

The Rules of Time on NTFS File System

13 years 10 months ago
The Rules of Time on NTFS File System
—With the rapid development and popularity of IT technology, criminals and mischievous computer users are given avenues to commit crimes and malicious activities. As forensic science has long been used to resolve legal disputes regarding different branches of science, computer forensics is developed naturally in the aspects of computer crimes or misbehaviors. In computer forensics, temporal analysis plays a significant role in the reconstruction of events or crimes. Indeed, temporal analysis is one of the attractive areas in computer forensics that caused a large number of researches and studies. It is the purpose of this paper to focus on temporal analysis on NTFS file system and to project intuitional rules on the behavioral characteristics of related digital files.
Kam-Pui Chow, Frank Y. W. Law, Michael Y. K. Kwan,
Added 04 Jun 2010
Updated 04 Jun 2010
Type Conference
Year 2007
Where SADFE
Authors Kam-Pui Chow, Frank Y. W. Law, Michael Y. K. Kwan, Pierre K. Y. Lai
Comments (0)