期刊名称:International Journal of Information and Network Security (IJINS)
印刷版ISSN:2089-3299
出版年度:2013
卷号:2
期号:5
页码:360-370
DOI:10.11591/ijins.v2i5.3825
语种:English
出版社:Institute of Advanced Engineering and Science
摘要:Payload attribution is a process to identify the sources and destinations of all packets that appeared on a network and a certain excerpt of a payload. This method can be used for traffic efficiencies in investigating internet crime (cybercrime), such as tracing who is responsible for activities for unauthorized access, illegal contents, deliberate spread of the virus, data forgery and any cybercrime. The payload is the actual data that is sent by the packet to the destination. The aim using Winnowing Multi Hashing Method (WMH) is to extract the payload by calculating the value of false positive. A low false positive values in theWMH will be recommended to the reference value of the block boundary or window hash. This method can be used as a solution for addressing the problems of storage media size required on the network forensic activity