Skip to main content

Analysis of Free Download Manager for Forensic Artefacts

  • Conference paper
Book cover Digital Forensics and Cyber Crime (ICDF2C 2009)

Abstract

Free Download Manager (FDM) is one of the most popular download managers due to its free availability, high download speed and versatility. It contains a lot of information that is of potential evidentiary value even if a user deletes web browser history, cookies and temporary internet files. This software records download activities across multiple files saved with .SAV extensions in the User Profile. This paper analyzes: 1) the windows registry entries particularly concerned to configuration and user settings, 2) the log files (with .SAV extension) created by FDM to trace download activities, and 3) RAM and swap files from a forensic perspective. This research work describes a number of traces left behind after the use of FDM such as install location, default download path, downloaded files, and menu extensions to name a few, thus enabling digital investigators to search for and interpret download activities. The widespread use of FDM makes this research work an attractive option for forensic investigators, ranging from law enforcement agencies to employers monitoring personnel.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. Download Manager (2004), http://en.wikipedia.org/wiki/Download_manager

  2. Comparison of download managers (2004), http://en.wikipedia.org/wiki/Comparison_of_download_managers

  3. Honeycutt, J.: Microsoft Windows Registry Guide, 2nd edn., pp. 570–578. Microsoft Press (2005)

    Google Scholar 

  4. Wong, L.W.: Forensic Analysis of the Windows Registry, Forensic Focus (2007), http://www.forensicfocus.com/index.php?name=Content&pid=73&page=1

  5. Description of the Microsoft Windows Registry, Help and Support, Microsoft Corp (2007), http://support.microsoft.com/kb/256986/

  6. Registry Quick Find Chart, AccessData Corp (2006), http://www.accessdata.com/support/white%5Fpap

  7. Vivienne, M., Theodore, T., Iain, S.: The Windows Registry as a forensic artefact: Illustrating evidence collection for Internet usage. Digital Investigation 3(3), 166–173 (2006)

    Article  Google Scholar 

  8. Derrick, J.F.: A Forensic Analysis of the Windows Registry (2007), http://www.eptuners.com/forensics/contents/A_Forensic_Examination_of_the_Windows_Registry_DETAILED.pdf

  9. Registrar Registry Manager 6.02 (Lite Edition), http://resplendence.com/download/rrtri.exe

  10. Registry Viewer 2.0, http://www.mitec.cz/Downloads/RegView.zip

  11. Carvey, H.: The Windows Registry as a forensic resource. Digital Investigation 2(3), 201–205 (2005), http://www.sciencedirect.com/science/article/B7CW4-4GX1J3B-1/2/6f94db2adc419ceacce8e3-66614ad34f

    Article  Google Scholar 

  12. WinHex 15.3, http://www.x-ways.net/winhex.zip

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2010 ICST Institute for Computer Science, Social Informatics and Telecommunications Engineering

About this paper

Cite this paper

Yasin, M., Wahla, M.A., Kausar, F. (2010). Analysis of Free Download Manager for Forensic Artefacts. In: Goel, S. (eds) Digital Forensics and Cyber Crime. ICDF2C 2009. Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering, vol 31. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-11534-9_6

Download citation

  • DOI: https://doi.org/10.1007/978-3-642-11534-9_6

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-642-11533-2

  • Online ISBN: 978-3-642-11534-9

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics