A Study: Volatility Forensic On Hidden Files
Journal: International Journal of Science and Research (IJSR) (Vol.2, No. 6)Publication Date: 2013-06-05
Authors : Cutifa Safitri;
Page : 71-75
Keywords : RAM; Forensic; Volatility; Hidden Files;
Abstract
More and more forensic researchers gain findings by live investigating memory volatility. Forensic research on volatile data is nowadays big area of interest. In the early days, investigators pulled the plug, but now it could be very interesting to capture the volatile data of the system. Memory forensics and data carving are among methods that are usually used during volatile investigation. Before pulled the plug, it is often desirable to capture volatile information that may not be recorded in a file system or image backup, such as processes and the contents of memory. This data may hold clues as to the attackers identity or the attack methods that were used. However, risks are associated with acquiring information from the live system. Any action performed on the host itself will alter the state of the machine to some extent. In paper, an analysis of hidden process on volatility is conducted.
Other Latest Articles
- Accuracy of Color Duplex Imaging (CDI) in Diagnosis Deep Vein Thrombosis(DVT) versus Clinical Prediction Index
- Influence of Students Attitude towards Performance in Mathematics in Primary Schools in Keiyo South District, Kenya
- Estimation of a Co-integration Model Using Ordinary Least Squares (A Case Study of the Kenyan Market)
- Assessment of dietary management of patients with Cirrhosis liver
- Estimation of a Co-integration Model Using Ordinary Least Squares (A Simulation Study)
Last modified: 2021-06-30 20:17:50