辽宁石油化工大学学报

辽宁石油化工大学学报 ›› 2008, Vol. 28 ›› Issue (1): 62-65.

• 计算机与自动化 • 上一篇    下一篇

基于数据挖掘的Multi-Agent动态取证系统研究

吕爱丽1, 魏海平2, 叶小涛1   

  1. 1.河南理工大学,河南焦作 454000; 2.辽宁石油化工大学计算机与通信工程学院,辽宁抚顺 113001
  • 收稿日期:2007-07-09 出版日期:2008-03-20 发布日期:2017-07-22

Dynamic Computer Forensics System Based on Data Mining and Multi-Agent

L Ai-li1, WEI Hai-ping2, YE Xiao-tao1   

  1. 1.Henan Polytechnic University, Jiaozuo Henan 454000, P.R.China; 2.School of Information and Communication  Engineering, Liaoning University of Petroleum & Chemical Technology, Fushun Liaoning 113001, P.R.China
  • Received:2007-07-09 Published:2008-03-20 Online:2017-07-22

摘要: 研究了计算机动态取证的相关技术,提出了一个计算机动态取证系统模型并对相关模块进行设计。根据动态取证的特点,将数据挖掘技术和多智能代理技术结合起来应用于动态取证系统中,系统在体系结构上使用基于智能代理的分布式结构,采用数据挖掘技术进行动态取证的海量数据分析,针对基本挖掘算法在取证分析实际应用中可能存在的不足,提出了相应的改进方法,通过实验分析,证明了改进算法在动态取证应用中的有效性。

关键词: 计算机取证, 数据挖掘, 动态取证, 关联分析

Abstract: Some association technologies were studied. A design model to the computer dynamic forensics system was put forward, and the detail design to the modules was given. According to the features of dynamic forensics, the method of applying data mining and multi-agent into the dynamic forensics, using multi-agent to build the architecture, using data mining technology to analyze the magnanimous data was raised. However, basic mining algorithms cannot be used to analyze digital evidence directly. So, relative improvements of basic algorithms and methods of pattern analysis were put forward, and experiment is performed to prove the feasibility.

Key words: Computer forensics, Data mining, Dynamic forensics, Association analysis

引用本文

吕爱丽, 魏海平, 叶小涛. 基于数据挖掘的Multi-Agent动态取证系统研究[J]. 辽宁石油化工大学学报, 2008, 28(1): 62-65.

L Ai-li, WEI Hai-ping, YE Xiao-tao. Dynamic Computer Forensics System Based on Data Mining and Multi-Agent[J]. Journal of Liaoning Petrochemical University, 2008, 28(1): 62-65.

使用本文

0
    /   /   推荐

导出引用管理器 EndNote|Ris|BibTeX

链接本文: http://journal.lnpu.edu.cn/CN/

               http://journal.lnpu.edu.cn/CN/Y2008/V28/I1/62