본문 바로가기
  • Home

Simplified Forensic Analysis Using List of Deleted Files in IoT Envrionment

  • Journal of Internet of Things and Convergence
  • Abbr : JKIOTS
  • 2019, 5(1), pp.35-39
  • Publisher : The Korea Internet of Things Society
  • Research Area : Engineering > Computer Science > Internet Information Processing
  • Received : April 18, 2019
  • Accepted : June 27, 2019
  • Published : June 30, 2019

Jeong-Hyeon Lim 1 Keun-Ho Lee 1

1백석대학교

Candidate

ABSTRACT

With the rapid development of the information society, the use of digital devices has increased dramatically and the importance of technology for analyzing them has increased. Digital evidence is stored in many places such as Prefetch, Recent, Registry, and Event Log even if the user has deleted it. Therefore, there is a disadvantage that the forensic analyst can not grasp the files used by the user at the beginning. Therefore, in this paper, we propose a method that the RemoveList folder exists so that the user can grasp the information of the deleted file first, and the information about the deleted file is automatically saved by using AES in RemoveList. Through this, it can be expected that the analyst can alleviate the difficulty of initially grasping the user's PC.

Citation status

* References for papers published after 2023 are currently being built.