Network Packet Inspection to Identify Contraband File Sharing Using Forensic Tools

This Paper discusses the digital forensic tool that uses a Field Programmable Gate Array [FPGA] based software for deep packet inspection in network Router for a Bit Torrent Handshake message. Extracts the "Information Hashing" of the file being shared, compares the hash against a list of known contraband files for forensic analysis and it matches the message to a log file. Forensic analysis gives several optimization techniques for reducing the CPU time required for reducing the CPU time required to process packets are investigated along with their ability to improve packet capture performance.

Provided by: mecs-press Topic: Networking Date Added: Apr 2012 Format: PDF

Find By Topic