A behavior monitor system for the users of Windows 10

碩士 === 國防大學 === 網路安全碩士班 === 106 === Abstract This thesis is to develop a behavior monitor system for the users of Windows 10. The monitor system, named JumpListM monitor, is the first one which applies the records of the Jump Lists to monitor the behavior of computer users. The system is replying on...

Full description

Bibliographic Details
Main Authors: HSIEH, MEI-NA, 謝美娜
Other Authors: WENG, SHIUH-KU
Format: Others
Language:zh-TW
Published: 2018
Online Access:http://ndltd.ncl.edu.tw/handle/g6562r
id ndltd-TW-106NDU00726001
record_format oai_dc
spelling ndltd-TW-106NDU007260012019-05-16T00:37:24Z http://ndltd.ncl.edu.tw/handle/g6562r A behavior monitor system for the users of Windows 10 以Windows 10 使用者為標地之使用行為監控系統 HSIEH, MEI-NA 謝美娜 碩士 國防大學 網路安全碩士班 106 Abstract This thesis is to develop a behavior monitor system for the users of Windows 10. The monitor system, named JumpListM monitor, is the first one which applies the records of the Jump Lists to monitor the behavior of computer users. The system is replying on the Jump Lists which keep the records of recently accessed files and directories as well as group them as per application basis. Owing to the Jump Lists including a lot of records, in this thesis, the records will be rendered to monitor the behavior and display the results of visualization. Jump Lists have drawn much attention in the field of digital forensics since they were firstly introduced in the release of Windows 7. Although there have been many tools developed for running in Windows 7 and 8 for the analysis of Jump Lists, those cannot be run in Windows 10. The reason is that Jump Lists of Windows 10 are different from those of the previous version of Windows. Therefore, it is a challenge to design an analysis tool of Windows 10 Jump Lists. The JumpListM monitor is implemented as a GUI tool by Python 3.5. It can monitor what kinds of software and what time a user respectively run every software in a computer. According to the information, Users’ behavior can be monitored. Key Words: Jump Lists、Digital Forensics、Windows 10、Monitor tool。 WENG, SHIUH-KU 翁旭谷 2018 學位論文 ; thesis 74 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國防大學 === 網路安全碩士班 === 106 === Abstract This thesis is to develop a behavior monitor system for the users of Windows 10. The monitor system, named JumpListM monitor, is the first one which applies the records of the Jump Lists to monitor the behavior of computer users. The system is replying on the Jump Lists which keep the records of recently accessed files and directories as well as group them as per application basis. Owing to the Jump Lists including a lot of records, in this thesis, the records will be rendered to monitor the behavior and display the results of visualization. Jump Lists have drawn much attention in the field of digital forensics since they were firstly introduced in the release of Windows 7. Although there have been many tools developed for running in Windows 7 and 8 for the analysis of Jump Lists, those cannot be run in Windows 10. The reason is that Jump Lists of Windows 10 are different from those of the previous version of Windows. Therefore, it is a challenge to design an analysis tool of Windows 10 Jump Lists. The JumpListM monitor is implemented as a GUI tool by Python 3.5. It can monitor what kinds of software and what time a user respectively run every software in a computer. According to the information, Users’ behavior can be monitored. Key Words: Jump Lists、Digital Forensics、Windows 10、Monitor tool。
author2 WENG, SHIUH-KU
author_facet WENG, SHIUH-KU
HSIEH, MEI-NA
謝美娜
author HSIEH, MEI-NA
謝美娜
spellingShingle HSIEH, MEI-NA
謝美娜
A behavior monitor system for the users of Windows 10
author_sort HSIEH, MEI-NA
title A behavior monitor system for the users of Windows 10
title_short A behavior monitor system for the users of Windows 10
title_full A behavior monitor system for the users of Windows 10
title_fullStr A behavior monitor system for the users of Windows 10
title_full_unstemmed A behavior monitor system for the users of Windows 10
title_sort behavior monitor system for the users of windows 10
publishDate 2018
url http://ndltd.ncl.edu.tw/handle/g6562r
work_keys_str_mv AT hsiehmeina abehaviormonitorsystemfortheusersofwindows10
AT xièměinà abehaviormonitorsystemfortheusersofwindows10
AT hsiehmeina yǐwindows10shǐyòngzhěwèibiāodezhīshǐyòngxíngwèijiānkòngxìtǒng
AT xièměinà yǐwindows10shǐyòngzhěwèibiāodezhīshǐyòngxíngwèijiānkòngxìtǒng
AT hsiehmeina behaviormonitorsystemfortheusersofwindows10
AT xièměinà behaviormonitorsystemfortheusersofwindows10
_version_ 1719168591843033088