Journal Basic Science and Technology
Vol 14 No 2 (2025): June: Basic Science and Technology

Enhancing Ransomware Detection and Investigation through Digital Forensic Machine Learning Analysis

Fadhil, Dzulfiqar (Unknown)
Taufiqurrahman, Taufiqurrahman (Unknown)



Article Info

Publish Date
30 Jun 2025

Abstract

Ransomware has become one of the most pervasive and damaging forms of cyber threats, targeting individuals, organizations, and critical infrastructures. Traditional digital forensic methods, while effective, are often limited by the speed and scale required to analyze modern ransomware attacks. This research explores the integration of machine learning techniques into digital forensic analysis to enhance the detection, classification, and investigation of ransomware. Using a controlled virtual environment, ransomware samples were executed and monitored to extract forensic artifacts from system logs, memory, and network activity. Features such as file entropy, API call behavior, and command-and-control (C2) communication patterns were analyzed. Machine learning models, particularly Random Forest and Convolutional Neural Networks (CNNs), were trained to identify ransomware behaviors with high accuracy. The Random Forest model achieved a detection accuracy of 96.4%, with strong precision and recall scores. The study also developed an automated forensic framework capable of real-time incident response and evidence extraction. Compared to previous research, this study offers improved generalization to unknown ransomware variants and faster forensic processing. The findings highlight the potential of digital forensic machine analysis as a robust solution for modern ransomware defense and investigation.

Copyrights © 2025






Journal Info

Abbrev

JBST

Publisher

Subject

Biochemistry, Genetics & Molecular Biology Computer Science & IT Electrical & Electronics Engineering Materials Science & Nanotechnology Mechanical Engineering

Description

This journal is devoted to identifying, mapping, understanding, and interpreting new trends and patterns in the development of science & technology especially in developing countries in this world. The journal endeavors to highlight science & technology development from different perspectives. The ...