After Conversation - An Forensic ICQ Logfile Extraction Tool

نویسندگان

  • Kim Morfitt
  • Craig Valli
چکیده

Instant messenger programs such as ICQ are often used by hackers and criminals for illicit purposes and consequently the logfiles from such programs are of forensic interest. This paper outlines research in progress that has resulted in the development of a tool for the extraction of ICQ logfile entries. Detailed reconstruction of data from logfiles was achieved with a number of different ICQ software, with other programs still to be tested. There are several limitations including timestamp information not adjusted for the time zone, data could be altered, and conversations must be manually reconstructed. Future research will aim to address these and other limitations as pointed in this paper.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Forensic Log File Extraction Tool for ICQ Instant Messaging Clients

Instant messenger programs such as ICQ are often used by hackers and criminals for illicit purposes and consequently the log files from such programs are of interest in a forensic investigation. This paper outlines research that has resulted in the development of a tool for the extraction of ICQ log file entries. Detailed reconstruction of data from log files was achieved with a number of diffe...

متن کامل

An Automatic Logfile Analyzer for Parallel Programs

The Logfile Analyzer is a tool for automatically analyzing the logfiles generated during a parallel program execution. The purpose of the tool is to check the communication consistency of parallel programs using MPI. It can help the programmer to detect the communication errors, improve the parallel program reliability, and give the programmer an overall picture of the communication sequence. A...

متن کامل

A self-rating scale for patient-perceived side effects of inhaled corticosteroids

BACKGROUND Patient-reported side effect questionnaires offer a simple method for the systematic measurement of drug-related side effects. In order to measure patients' inhaled corticosteroids (ICS) related side effect perceptions the 14-day retrospective Inhaled Corticosteroid Questionnaire (ICQ) was developed. In this research we aim to assess the construct validity and reliability of the ICQ ...

متن کامل

A computer forensic method for detecting timestamp forgery in NTFS

In this paper, we present a computer forensic method for detecting timestamp forgeries in the Windows NTFS file system. It is difficult to know precisely that the timestamps have been changed by only examining the timestamps of the file itself. If we can find the past timestamps before any changes to the file are made, this can act as evidence of file time forgery. The log records operate on fi...

متن کامل

Detecting timestamp forgery in NTFS file system using logfile

In the current era of digital world, user and investigator are more dependent on digital data. Digital data are very vast in size and also stored in various formats. So, the major problem is identification of upcoming data as true or false by the user or investigator. To overcome this problem different methods and techniques are adapted. Forensic method is used for validation of data. A compute...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2005