skip navigation

CrimeSolutions.gov

Add your conference to our Justice Events calendar

PUBLICATIONS

NCJRS Abstract

The document referenced below is part of the NCJRS Library collection.
To conduct further searches of the collection, visit the NCJRS Abstracts Database.

How to Obtain Documents
 
NCJ Number: NCJ 240180     Find in a Library
Title: Internet Evidence Finder, Version 5.6.0, Evaluation Report
Corporate Author: NIJ Criminal Justice Electronic Crime Technology Ctr of Excellence
United States of America
Date Published: 11/2012
Page Count: 20
Sale Source: National Law Enforcement and Corrections Technology Center (NLECTC)
700 N. Frederick Ave.
Bldg. 181, Room 1L30
Gaithersburg, MD 20879
United States of America
Document: PDF 
Type: Report (Technical) ; Test/Measurement
Language: English
Country: United States of America
Annotation: This report describes the features and testing of the Internet Evidence Finder (IEF) Version 5.6.0, which is produced by Magnet Forensics. It is a forensics-grade software application designed for investigators to easily discover Internet artifacts.
Abstract: IEF can search a hard drive, live RAM captures, or files for Internet-related evidence. IEF can recover evidence within social networking artifacts, instant messaging chat histories, popular Web mail applications, Web-browsing history, and peer-to-peer file-sharing applications. IEF was tested on several different systems and drives. Regardless of the target, IEF was always successful in finding artifacts. IEF consistently found information that was not expected to be found. It provided clear evidence of how the computer under examination had been used over a long period of time. It also discovered evidence that an investigator may not have initially anticipated findings. IEF demonstrated its ability as a tool that can improve the efficiency of investigations that involve digital evidence on computers. Magnet Forensics is constantly updating IEF, so it is expected that this tool will only continue to improve over time. The tool was performed on a 160 GB drive image of an actual case under investigation. This drive was failing and experienced many read errors. Once imaged, IEF was configured to perform a sector-level search. The case involved online chat. Extensive figures and exhibits
Main Term(s): Computer evidence
Index Term(s): Evidence collection ; Computer software ; Computer related crime ; Investigative techniques
   
  To cite this abstract, use the following link:
https://www.ncjrs.gov/App/Publications/abstract.aspx?ID=262254

* A link to the full-text document is provided whenever possible. For documents not available online, a link to the publisher's web site is provided.