Analisis Forensik Digital ISO/IEC 27037 pada Recovery File Terhapus Permanen dari Removable Flash Storage

Authors

DOI:

https://doi.org/10.71200/hnkx0k70

Keywords:

bukti digital, forensik digital, ISO/IEC 27037, pemulihan data

Abstract

Permanent file deletion on USB storage media is often assumed to completely remove data from the device. Technically, however, this process only deletes file system metadata references while the physical data remains on the storage media until overwritten. This study aims to analyze the file recovery process of permanently deleted files using a digital forensic approach based on the ISO/IEC 27037 standard. The research was conducted using a scenario involving the permanent deletion of ten files from a USB flash drive on a Windows operating system. Digital evidence acquisition was performed using FTK Imager, while examination and file recovery were carried out using Autopsy. The results indicate that all deleted files were successfully recovered because the storage sectors had not been overwritten. The compliance analysis with ISO/IEC 27037 shows that all digital forensic stages were conducted in accordance with the principles of authenticity, integrity, and traceability of digital evidence. This study is expected to serve as a practical and academic reference for the implementation of international standard–based digital forensic investigations on removable storage media.

Downloads

Download data is not yet available.

References

Alawi, H. S., Riadi, I., & Sunardi, S. (2025). Improving Credibility of Digital Evidence Investigation in E-Commerce Fraud Cases using ISO/IEC 27037. International Journal of Advances in Data and Information Systems. https://doi.org/10.59395/ijadis.v6i2.1408

Nortjé, J. G. J., & Myburgh, D. (2019). The Search and Seizure of Digital Evidence by Forensic Investigators in South Africa. Potchefstroom Electronic Law Journal. https://doi.org/10.17159/1727-3781/2019/v22i0a4886

Pratama, I. (2021). Computer Forensic Using Photorec for Secure Data Recovery Between Storage Media: A Proof of Concept. International Journal of Science, Technology & Management. https://doi.org/10.46729/ijstm.v2i4.256

R, N., A, V., & P, A. (2025). Recovery of Deleted Files: Challenges and Techniques. International Journal For Multidisciplinary Research. https://doi.org/10.36948/ijfmr.2025.v07i02.41088

Singh, V., Nikam, A., Singh, R., & Mehta, D. (2025). Advancements in Digital Forensics: Emerging Tools and Techniques. Journal of Information Systems Engineering and Management. https://doi.org/10.52783/jisem.v10i43s.8364

Sitima, J. (2024). Understanding Digital Forensic Tools: Their Features, Applicability and Key Short Comings. A Compendium. International Journal For Multidisciplinary Research. https://doi.org/10.36948/ijfmr.2024.v06i06.30026

Downloads

Published

2026-01-31

How to Cite

Analisis Forensik Digital ISO/IEC 27037 pada Recovery File Terhapus Permanen dari Removable Flash Storage. (2026). Jurnal Inovasi Komputer (INOKOM), 2(1), 56-65. https://doi.org/10.71200/hnkx0k70