Analysis of Free Download Manager for forensic artefacts

Muhammad Yasin*, Muhammad Arif Wahla, Firdous Kausar

*المؤلف المقابل لهذا العمل

نتاج البحث: Conference contribution

5 اقتباسات (Scopus)

ملخص

Free Download Manager (FDM) is one of the most popular download managers due to its free availability, high download speed and versatility. It contains a lot of information that is of potential evidentiary value even if a user deletes web browser history, cookies and temporary internet files. This software records download activities across multiple files saved with. SAV extensions in the User Profile. This paper analyzes: 1) the windows registry entries particularly concerned to configuration and user settings, 2) the log files (with. SAV extension) created by FDM to trace download activities, and 3) RAM and swap files from a forensic perspective. This research work describes a number of traces left behind after the use of FDM such as install location, default download path, downloaded files, and menu extensions to name a few, thus enabling digital investigators to search for and interpret download activities. The widespread use of FDM makes this research work an attractive option for forensic investigators, ranging from law enforcement agencies to employers monitoring personnel.

اللغة الأصليةEnglish
عنوان منشور المضيفDigital Forensics and Cyber Crime - First International ICST Conference, ICDF2C 2009, Revised Selected Papers
الصفحات59-68
عدد الصفحات10
المعرِّفات الرقمية للأشياء
حالة النشرPublished - 2010
منشور خارجيًانعم
الحدث1st International Conference on Digital Forensics and Cyber Crime, ICDF2C 2009 - Albany, NY, United States
المدة: سبتمبر ٣٠ ٢٠٠٩أكتوبر ٢ ٢٠٠٩

سلسلة المنشورات

الاسمLecture Notes of the Institute for Computer Sciences, Social-Informatics and Telecommunications Engineering
مستوى الصوت31 LNICST
رقم المعيار الدولي للدوريات (المطبوع)1867-8211

Conference

Conference1st International Conference on Digital Forensics and Cyber Crime, ICDF2C 2009
الدولة/الإقليمUnited States
المدينةAlbany, NY
المدة٩/٣٠/٠٩١٠/٢/٠٩

ASJC Scopus subject areas

  • ???subjectarea.asjc.1700.1705???

قم بذكر هذا