In order to promote the development of P2P networks towards a positive direction, the study on the multi-dimension computer forensics model under P2P Environment is conducted for the common security problems in network at present. In the evidence acquisition phase of the model, by selecting appropriate trust information storage mechanism and file node data structure, combining cluster-based recommendation trust evaluation method, the acquisition of original data and evidence data as well as the establishment of forensics policy repository has achieved.