Preprint / Version 1

Application of the National Institute of Justice Method in Data Recovery on Flash Disk

Penerapan Metode National Institute of Justice Dalam Pemulihan Data Pada Flashdisk




Cybercrime, digital evidence, NIJ, digital forensics, flash drives, forensic tools, Cybercrime, Digital Evidence, NIJ, Digital Forensics, Flash Drives, Forensic Tools.


A flash drive is a portable storage device using flash memory for storing, transferring, and backing up data. Despite its practicality, it is prone to digital crimes such as data theft, unauthorized deletion, and misuse. Effective data recovery methods are crucial to address these threats. One commonly used approach in digital forensics is the National Institute of Justice (NIJ) method, which consists of preparation, collection, identification, examination, analysis, and reporting stages. This study assesses the NIJ method's effectiveness in recovering lost data from flash drives. Using FTK Imager, Autopsy, and WinMd5, files deleted via Shift + Delete and quick format were successfully restored. Although file names changed, extensions, sizes, and MD5 hash values matched the originals, confirming data integrity. The findings demonstrate that the NIJ method is effective for digital evidence recovery and analysis from flash drives.


Download data is not yet available.


H. Sutanto, “Disruptive Strategy and Innovation: Cloud Storage dan Flashdisk.” [Online]. Available:

N. Iman, A. Susanto, and R. Inggi, “Analisa Perkembangan Digital Forensik dalam Penyelidikan Cybercrime di Indonesia (Systematic Review),” Jurnal Telekomunikasi dan Komputer, vol. 9, no. 3, p. 186, Jan. 2020, doi: 10.22441/incomtech.v9i3.7210.

D. Anjani, D. Novianti, and R. Ningsih, “Training to Rescue and Repair Data on Flashdisk Storage for Elementary School Teachers of Pal Merah 19, West Jakarta,” Mattawang: Jurnal Pengabdian Masyarakat, vol. 1, no. 2, pp. 99–103, Dec. 2020, doi: 10.35877/454ri.mattawang234.

S. Soni, Y. Fatma, and R. Anwar, “Akuisisi Bukti Digital Aplikasi Pesan Instan ‘Bip’Menggunakan Metode National Institute Of Justice (NIJ),” Jurnal CoSciTech (Computer Science and Information Technology), vol. 3, no. 1, pp. 34–42, Jun. 2022, doi: 10.37859/coscitech.v3i1.3694.

M. Syaiful Huda Mubarok, Ms. Huda Mubarok, R. Novrianda Dasmen, V. Pranata, and Ma. Januarta, “Digital Analysis of Forensic Data Recovery on Flash Drive Using National Institute Of Justice (NIJ) Method.”

I. Riadi and A. Dahlan, “Analisis Forensik Recovery pada Smartphone Android Menggunakan Metode National Institute Of Justice (NIJ),” JURTI, vol. 3, no. 1, 2019, [Online]. Available:,

S. K. Saad, R. Umar, A. Fadlil, U. Ahmad, D. Jl, and S. H. Soepomo, “Analisis Forensik Aplikasi Dropbox pada Android menggunakan Metode NIJ pada Kasus Penyembunyian Berkas,” 2020.

G. Maulana Zamroni, R. Umar, and I. Riadi, “Analisis Forensik Aplikasi Instant Messaging Berbasis Android,” 2016. [Online]. Available:

A. Wijaya Kusuma, E. I. Alwi, and R. Ramdaniah, “Analisis Bukti Digital Pada Media Penyimpanan Flash Disk Menggunakan Metode National Institute Of Standards And Technology (NIST),” 2024.

B. Bulan, T. Tahun, A. Yudhana, R. Umar, and A. Ahmadi, “X X X X738X 738X 738X 738X (Print) (Print) (Print) (Print) Akuisisi Data Forensik Google Drive Pada Android Dengan Metode National Institute of Justice (NIJ).”


“1490-Article Text-2859-1-10-20190413”.

