{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T00:54:41Z","timestamp":1740099281488,"version":"3.37.3"},"publisher-location":"Cham","reference-count":26,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030054861"},{"type":"electronic","value":"9783030054878"}],"license":[{"start":{"date-parts":[[2018,12,30]],"date-time":"2018-12-30T00:00:00Z","timestamp":1546128000000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-05487-8_9","type":"book-chapter","created":{"date-parts":[[2018,12,29]],"date-time":"2018-12-29T13:11:18Z","timestamp":1546089078000},"page":"165-182","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Associating Drives Based on Their Artifact and Metadata Distributions"],"prefix":"10.1007","author":[{"given":"Neil C.","family":"Rowe","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,12,30]]},"reference":[{"key":"9_CR1","doi-asserted-by":"crossref","unstructured":"Abe, H., Tsumoto, S.: Text categorization with considering temporal patterns of term usages. In: Proceedings of IEEE International Conference on Data Mining Workshops, pp. 800\u2013807 (2010)","DOI":"10.1109\/ICDMW.2010.186"},{"key":"9_CR2","doi-asserted-by":"publisher","first-page":"S78","DOI":"10.1016\/j.diin.2011.05.010","volume":"8","author":"R Beverly","year":"2011","unstructured":"Beverly, R., Garfinkel, S., Cardwell, G.: Forensic caving of network packets and associated data structures. Digital Invest. 8, S78\u2013S89 (2011)","journal-title":"Digital Invest."},{"issue":"4","key":"9_CR3","doi-asserted-by":"publisher","first-page":"375","DOI":"10.1016\/S0378-8733(99)00019-2","volume":"21","author":"S Borgatti","year":"2000","unstructured":"Borgatti, S., Everett, M.: Models of core\/periphery structures. Soc. Netw. 21(4), 375\u2013395 (2000)","journal-title":"Soc. Netw."},{"key":"9_CR4","unstructured":"Bulk Extractor 1.5: Digital Corpora: Bulk Extractor [software] (2013). digitalcorpora.org\/downloads\/bulk_extractor . 6 Feb 2015"},{"key":"9_CR5","doi-asserted-by":"crossref","unstructured":"Catanese, S., Fiumara, G., A visual tool for forensic analysis of mobile phone traffic. In: Proceedings ACM Workshop on Multimedia in Forensics, Security, and Intelligence, Firenze, Italy, October 2010, pp. 71\u201376 (2010)","DOI":"10.1145\/1877972.1877992"},{"key":"9_CR6","series-title":"IFIP Advances in Information and Communication Technology","doi-asserted-by":"publisher","first-page":"169","DOI":"10.1007\/978-3-642-24212-0_13","volume-title":"Advances in Digital Forensics VII","author":"Anders Flaglien","year":"2011","unstructured":"Flaglien, Anders, Franke, Katrin, Arnes, Andre: Identifying Malware Using Cross-Evidence Correlation. In: Peterson, Gilbert, Shenoi, Sujeet (eds.) DigitalForensics 2011. IAICT, vol. 361, pp. 169\u2013182. Springer, Heidelberg (2011). https:\/\/doi.org\/10.1007\/978-3-642-24212-0_13"},{"key":"9_CR7","doi-asserted-by":"crossref","unstructured":"Forman, G., Eshghi, K., Chiocchetti, S.: Finding similar files in large document repositories. In: Proceedings of 11th ACM SIGKDD International Conference on Knowledge Discovery in Data Mining, Chicago, IL, US, August 2005, pp. 394\u2013400 (2005)","DOI":"10.1145\/1081870.1081916"},{"key":"9_CR8","doi-asserted-by":"publisher","first-page":"S71","DOI":"10.1016\/j.diin.2006.06.007","volume":"3S","author":"S Garfinkel","year":"2006","unstructured":"Garfinkel, S.: Forensic feature extraction and cross-drive analysis. Digital Invest. 3S, S71\u2013S81 (2006)","journal-title":"Digital Invest."},{"key":"9_CR9","doi-asserted-by":"publisher","first-page":"S2","DOI":"10.1016\/j.diin.2009.06.016","volume":"6","author":"S Garfinkel","year":"2009","unstructured":"Garfinkel, S., Farrell, P., Roussev, V., Dinolt, G.: Bringing science to digital forensics with standardized forensic corpora. Digital Invest. 6, S2\u2013S11 (2009)","journal-title":"Digital Invest."},{"key":"9_CR10","doi-asserted-by":"crossref","unstructured":"Jones, A., Valli, C., Dardick, C., Sutherland, I., Dabibi, G., Davies, G.: The 2009 analysis of information remaining on disks offered for sale on the second hand market. J. Digital Forensics Secur. Law 5(4) (2010). Article 3","DOI":"10.15394\/jdfsl.2010.1083"},{"key":"9_CR11","doi-asserted-by":"crossref","unstructured":"Mohammed, H., Clarke, N., Li, F.: An automated approach for digital forensic analysis of heterogeneous big data. J. Digital Forensics, Secur. Law 11(2) (2016). Article 9","DOI":"10.15394\/jdfsl.2016.1384"},{"issue":"1","key":"9_CR12","doi-asserted-by":"publisher","first-page":"46","DOI":"10.1109\/TIFS.2012.2223679","volume":"8","author":"L Nassif","year":"2013","unstructured":"Nassif, L., Hruschka, E.: Document clustering for forensic analysis: an approach for improving computer inspection. IEEE Trans. Inf. Forensics Secur. 8(1), 46\u201354 (2013)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"9_CR13","doi-asserted-by":"crossref","unstructured":"Pateriya, P., Lakshmi, Raj, G.: A pragmatic validation of stylometric techniques using BPA. In: Proceedings of International Conference on The Next Generation Information Technology: Confluence, pp. 124\u2013131 (2014)","DOI":"10.1109\/CONFLUENCE.2014.6949275"},{"key":"9_CR14","unstructured":"Patterson, J., Hargreaves, C.: The potential for cross-drive analysis using automated digital forensic timelines. In: Proceedings of 6th International Conference on Cybercrime Forensics and Training, Canterbury, NZ, October 2012 (2012)"},{"key":"9_CR15","first-page":"83","volume-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","author":"Sriram Raghavan","year":"2009","unstructured":"Raghavan, S., Clark, A., Mohay, G.: FIA: an open forensic integration architecture for composing digital evidence. In: Proceedings of International Conference of Forensics in Telecommunications, Information and Multimedia, pp. 83\u201394 (2009)"},{"issue":"7","key":"9_CR16","doi-asserted-by":"publisher","first-page":"151725","DOI":"10.4108\/eai.8-12-2016.151725","volume":"3","author":"N. C. Rowe","year":"2016","unstructured":"Rowe, N.: Identifying forensically uninteresting files in a large corpus. EAI Endorsed Trans. Secur. Safety 16(7) (2016). Article e2","journal-title":"ICST Transactions on Security and Safety"},{"key":"9_CR17","doi-asserted-by":"crossref","unstructured":"Rowe, N.: Finding and rating personal names on drives for forensic needs. In: Proceedings of 9th EAI International Conference on Digital Forensics and Computer Crime, Prague, Czech Republic, October 2017","DOI":"10.1007\/978-3-319-73697-6_4"},{"issue":"2","key":"9_CR18","first-page":"153","volume":"11","author":"N Rowe","year":"2016","unstructured":"Rowe, N., Schwamm, R., McCarrin, M., Gera, R.: Making sense of email addresses on drives. J. Digital Forensics Secur. Law 11(2), 153\u2013173 (2016)","journal-title":"J. Digital Forensics Secur. Law"},{"issue":"8","key":"9_CR19","doi-asserted-by":"publisher","first-page":"2197","DOI":"10.1073\/pnas.82.8.2197","volume":"82","author":"M. J. Sippl","year":"1985","unstructured":"Sippl, M., Scheraga, H.: Solution of the embedding problem and decomposition of symmetric matrices. In: Proceedings of National Academy of Sciences, USA, vol. 82, pp. 2197\u20132201, April 1985","journal-title":"Proceedings of the National Academy of Sciences"},{"key":"9_CR20","doi-asserted-by":"crossref","unstructured":"Sun, M., Xu, G., Zhang, J., Kim, D.: Tracking you through DNS traffic: Linking user sessions by clustering with Dirichlet mixture model. In: Proceedings of 20th ACM International Conference on Modeling, Analysis, and Simulation of Wireless and Mobile Systems, Miami, FL, US, November 2017, pp. 303\u2013310 (2017)","DOI":"10.1145\/3127540.3127567"},{"key":"9_CR21","doi-asserted-by":"crossref","unstructured":"Tabish, S., Shafiq, M., Farooq, M., Malware detection using statistical analysis of byte-level file content. In: Proceedings of ACM Workshop on Cybersecurity and Intelligence, Paris, France, June 2009, pp. 23\u201331 (2009)","DOI":"10.1145\/1599272.1599278"},{"key":"9_CR22","unstructured":"Van Bruaene, J.: Large scale cross-drive correlation of digital media. M.S. thesis, U.S. Naval Postgraduate School, March 2016"},{"key":"9_CR23","doi-asserted-by":"crossref","unstructured":"Whissell, J., Clarke, C.: Effective measures for inter-document similarity. In: Proceedings of 22nd ACM International Conference on Information and Knowledge Management, pp. 1361\u20131370 (2013)","DOI":"10.1145\/2505515.2505526"},{"key":"9_CR24","unstructured":"Woods, K., Lee, C., Garfinkel, S., Dittrich, D., Russell, A., Kearton, K.: Creating realistic corpora for security and forensic education. In: Proceedings of ADFSL Conference on Digital Forensics, Security, and Law, pp. 123\u2013134 (2011)"},{"issue":"99","key":"9_CR25","doi-asserted-by":"publisher","first-page":"27189","DOI":"10.1109\/ACCESS.2017.2774798","volume":"PP","author":"S Zhao","year":"2017","unstructured":"Zhao, S., Yu, L., Cheng, B.: Probabilistic community using link and content for social networks. IEEE. Access PP(99), 27189\u201327202 (2017)","journal-title":"Access"},{"key":"9_CR26","doi-asserted-by":"crossref","unstructured":"Zhou, D., Manavoglu, E., Li, J., Giles, C., Zha, H.: Probabilistic models for discovering e-communities. In: Proceedings of WWW Conference, 23\u201326 May 2006, Edinburgh, Scotland, pp. 173\u2013182 (2006)","DOI":"10.1145\/1135777.1135807"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Digital Forensics and Cyber Crime"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-05487-8_9","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,11,13]],"date-time":"2019-11-13T02:39:37Z","timestamp":1573612777000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-05487-8_9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,12,30]]},"ISBN":["9783030054861","9783030054878"],"references-count":26,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-05487-8_9","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"type":"print","value":"1867-8211"},{"type":"electronic","value":"1867-822X"}],"subject":[],"published":{"date-parts":[[2018,12,30]]},"assertion":[{"value":"ICDF2C","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Digital Forensics and Cyber Crime","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"New Orleans, LA","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 September 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"12 September 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icdf2c2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/d-forensics.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}