Research on System Design and Implementation of Computer Forensics Based on Log

Linbin Wen · 2017 International Conference on Computer Technology, Electronics and Communication (ICCTEC) · 2017

Log is an important document produced and retained by the computer system, recording a large number of criminals who use computers to commit crimes. It is a very important source of clues and evidence against computer crime. To fully use log to implement computer forensics, two problems need to be solved: one is to extract the log in a timely manner in accordance with the procedure of computer forensics; the other is to find out the crime of "traces" based on log analysis as a valid evidence for the court. This paper, combining the domestic and foreign experience in the fight against computer crime, discusses the process and steps of computer forensics technology. And existing problem in this thesis, the status of the computer forensics technology and research of log, analyzes the computer systems of all kinds of log files and format, proposed a relatively perfect supporting computer forensics security audit log method. And according to current technology, this paper designs a more suitable for law enforcement agencies in the application of the computer log forensics system.

Read the paper · More papers on PaperTik