期刊文献+

基于编码方式的文档恢复技术 被引量:3

Coding-based Document Recovery Technology
下载PDF
导出
摘要 文章介绍了在实际取证工作中,常用的文档恢复技术的现有情况,提出了一种基于编码方式的文档恢复技术,利用文档的编码方式进行搜索,对已丢失文件签名、文件结束字符等特征的文档文件进行恢复,可恢复出未被其他文件覆盖的各种文字信息,能够有效解决对文件中间的碎片恢复问题。 With the development of information technology, the capacity of media is rapidly increasing. During digital investigation, investigators need to recover all kinds of documents. Recovery of documents mainly depends on the file header and footer (file signature). Fragmented documents without header and footer are hard to be recovered. This article describes the technology to solve this issue.
出处 《信息网络安全》 2011年第9期156-158,共3页 Netinfo Security
关键词 编码 文档碎片 数据挖掘 文档恢复 coding fragmented document file carving document recovery
  • 相关文献

参考文献3

二级参考文献3

共引文献24

同被引文献24

  • 1邵旭东,薛质.数字签名中电子文档的可信显示[J].信息网络安全,2008(3):62-64. 被引量:1
  • 2孔凡芝,张兴周,谢耀菊.基于Adaboost的人脸检测技术[J].应用科技,2005,32(6):7-9. 被引量:19
  • 3Gary Bradski,Adrian Kaehler.学习OpenCV[M].北京:清华大学出版社,2008.
  • 4Andreas S. Searching for processes and threads in Microsoft Windows memory dumps [ J ]. Digital Investigation : The International Journal of Digital Forensics & Incident, 2006,3:10-16.
  • 5Dolan-Gavitt B. Forensic analysis of the Windows registry in memory[ J]. Digital Investigation: The International Journal of Digital Forensics & Incident, 2008 (5) : $26-$32.
  • 6Zhang Ruichao, Wang Lianhai, Zhang Shuhui. Windows memory analysis based on KPCR[ C]/! 2009 the Fifth In- ternational Conference on Information Assurance and Secur- ity. 2009:677-680.
  • 7Okolica J, Peterson G. Extracting the windows clipboard from physical memory[ J ]. Digital Investigation: The Inter- national Journal of Digital Forensics & Incident, 2011,8: Sl18-S124.
  • 8Funminiyi Olajide, Nick Savage. Forensic extraction of us- er information in continuous block of evidence [ C ]//2011 International Conference on Information Society (i-Socie- ty). 2011:476481.
  • 9Mcrosoft. Word97-2007 Binary File Format(DOC) Specifi- cation [ EB/OL ]. http://www, microsoft, com/intemp/ osp/default, mspx, 2013-03-20.
  • 10Carvey H. Instant messaging investigations on a live Win- dows XP system [ J]. Digital Investigation: The Interna- tional Journal of Digital Forensics & Incident, 2004,1 (4) : 256 -260.

引证文献3

二级引证文献15

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部