{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,29]],"date-time":"2025-10-29T03:26:02Z","timestamp":1761708362855},"publisher-location":"Berlin, Heidelberg","reference-count":20,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642023118"},{"type":"electronic","value":"9783642023125"}],"license":[{"start":{"date-parts":[[2009,1,1]],"date-time":"2009-01-01T00:00:00Z","timestamp":1230768000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2009]]},"DOI":"10.1007\/978-3-642-02312-5_10","type":"book-chapter","created":{"date-parts":[[2009,5,25]],"date-time":"2009-05-25T08:15:04Z","timestamp":1243239304000},"page":"83-94","source":"Crossref","is-referenced-by-count":7,"title":["FIA: An Open Forensic Integration Architecture for Composing Digital Evidence"],"prefix":"10.1007","author":[{"given":"Sriram","family":"Raghavan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrew","family":"Clark","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"George","family":"Mohay","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"10_CR1","doi-asserted-by":"crossref","unstructured":"Alink, W., Bhoedjang, R.A.F., Boncz, P.A., de Vries, A.P.: XIRAF - XML-based indexing and querying for digital forensics. Digital Investigation. In: The Proceedings of the 6th Annual Digital Forensic Research Workshop (DFRWS 2006), vol.\u00a03(suppl. 1), pp. 50\u201358 (2006)","DOI":"10.1016\/j.diin.2006.06.016"},{"issue":"2","key":"10_CR2","doi-asserted-by":"publisher","first-page":"147","DOI":"10.1016\/j.diin.2005.04.002","volume":"2","author":"N.L. Beebe","year":"2005","unstructured":"Beebe, N.L., Clark, J.G.: A hierarchical, objectives-based framework for the digital investigations process. Digital Investigation\u00a02(2), 147\u2013167 (2005)","journal-title":"Digital Investigation"},{"issue":"suppl. 1","key":"10_CR3","doi-asserted-by":"publisher","first-page":"49","DOI":"10.1016\/j.diin.2007.06.005","volume":"4","author":"N.L. Beebe","year":"2007","unstructured":"Beebe, N.L., Clark, J.G.: Digital forensic text string searching: Improving information retrieval effectiveness by thematically clustering search results. Digital Investigation\u00a04(suppl. 1), 49\u201354 (2007)","journal-title":"Digital Investigation"},{"issue":"4","key":"10_CR4","doi-asserted-by":"publisher","first-page":"297","DOI":"10.1016\/j.diin.2004.10.002","volume":"1","author":"F. Buchholz","year":"2004","unstructured":"Buchholz, F., Spafford, E.: On the role of file system metadata in digital forensics. Digital Investigation\u00a01(4), 297\u2013308 (2004)","journal-title":"Digital Investigation"},{"issue":"1","key":"10_CR5","doi-asserted-by":"publisher","first-page":"50","DOI":"10.1016\/j.diin.2003.12.001","volume":"1","author":"B.D. Carrier","year":"2004","unstructured":"Carrier, B.D., Grand, J.: A hardware-based memory acquisition procedure for digital investigations. Digital Investigation\u00a01(1), 50\u201360 (2004)","journal-title":"Digital Investigation"},{"key":"10_CR6","doi-asserted-by":"crossref","unstructured":"Case, A., Cristina, A., Marziale, L., Richard, G.G., Roussev, V.: FACE: Automated digital evidence discovery and correlation, Digital Investigation. In: The Proceedings of the Eighth Annual DFRWS Conference, 5th edn., pp. S65\u2013S75 (September 2008)","DOI":"10.1016\/j.diin.2008.05.008"},{"key":"10_CR7","doi-asserted-by":"crossref","unstructured":"Cohen, M.I.: PyFlag - An advanced network forensic framework, Digital Investigation. In: The Proceedings of the Eighth Annual DFRWS Conference, vol.\u00a05(suppl. 1), pp. S112\u2013S120 (September 2008)","DOI":"10.1016\/j.diin.2008.05.016"},{"key":"10_CR8","doi-asserted-by":"crossref","unstructured":"Common Digital Evidence Storage Format Working Group. Standardizing digital evidence storage. Communications of the ACM 49(2), 67\u201368 (Feburary 2006)","DOI":"10.1145\/1113034.1113071"},{"issue":"2","key":"10_CR9","doi-asserted-by":"publisher","first-page":"85","DOI":"10.1145\/1113034.1113076","volume":"49","author":"S. Garfinkel","year":"2006","unstructured":"Garfinkel, S.: AFF: a new format for storing hard drive images. Communications of the ACM\u00a049(2), 85\u201387 (2006)","journal-title":"Communications of the ACM"},{"issue":"2","key":"10_CR10","doi-asserted-by":"publisher","first-page":"130","DOI":"10.1016\/j.diin.2004.03.001","volume":"1","author":"P. Gladyshev","year":"2004","unstructured":"Gladyshev, P., Patel, A.: Finite state machine approach to digital event reconstruction. Digital Investigation\u00a01(2), 130\u2013149 (2004)","journal-title":"Digital Investigation"},{"issue":"2","key":"10_CR11","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1145\/1113034.1113072","volume":"49","author":"C. Hosmer","year":"2006","unstructured":"Hosmer, C.: Digital evidence bag. Communications of the ACM\u00a049(2), 69\u201370 (2006)","journal-title":"Communications of the ACM"},{"issue":"1","key":"10_CR12","doi-asserted-by":"publisher","first-page":"61","DOI":"10.1016\/j.diin.2003.12.004","volume":"1","author":"S. Mocas","year":"2004","unstructured":"Mocas, S.: Building theoretical underpinnings for digital forensics research. Digital Investigation\u00a01(1), 61\u201368 (2004)","journal-title":"Digital Investigation"},{"issue":"3","key":"10_CR13","doi-asserted-by":"publisher","first-page":"166","DOI":"10.1016\/j.diin.2006.07.001","volume":"3","author":"V. Mee","year":"2006","unstructured":"Mee, V., Tryfonas, T., Sutherland, I.: The Windows Registry as a forensic artefact: Illustrating evidence collection for Internet usage. Digital Investigation\u00a03(3), 166\u2013173 (2006)","journal-title":"Digital Investigation"},{"issue":"2","key":"10_CR14","doi-asserted-by":"publisher","first-page":"89","DOI":"10.1016\/j.diin.2006.05.002","volume":"3","author":"B.J. Nikkel","year":"2006","unstructured":"Nikkel, B.J.: Improving evidence acquisition from live network sources. Digital Investigation\u00a03(2), 89\u201396 (2006)","journal-title":"Digital Investigation"},{"issue":"4","key":"10_CR15","doi-asserted-by":"publisher","first-page":"197","DOI":"10.1016\/j.diin.2006.10.001","volume":"3","author":"J. Petroni","year":"2006","unstructured":"Petroni, J., Nick, L., Walters, A., Fraser, T., Arbaugh, W.A.: FATKit: A framework for the extraction and analysis of digital forensic data from volatile system memory. Digital Investigation\u00a03(4), 197\u2013210 (2006)","journal-title":"Digital Investigation"},{"key":"10_CR16","unstructured":"Schatz, B., Clark, A.: An Open architecture for digital evidence integration. In: Proceedings of the 2006 AUSCERT R&D Stream, pp. 15\u201329 (2006)"},{"issue":"suppl. 1","key":"10_CR17","doi-asserted-by":"publisher","first-page":"126","DOI":"10.1016\/j.diin.2007.06.009","volume":"4","author":"B. Schatz","year":"2007","unstructured":"Schatz, B.: BodySnatcher: Towards reliable volatile memory acquisition by software. Digital Investigation\u00a04(suppl. 1), 126\u2013134 (2007)","journal-title":"Digital Investigation"},{"key":"10_CR18","doi-asserted-by":"crossref","unstructured":"Schuster, A.: Searching for processes and threads in Microsoft Windows memory dumps. Digital Investigation. In: The Proceedings of the 6th Annual Digital Forensic Research Workshop (DFRWS 2006), vol.\u00a03(suppl. 1), pp. 10\u201316 (2006)","DOI":"10.1016\/j.diin.2006.06.010"},{"issue":"3","key":"10_CR19","doi-asserted-by":"publisher","first-page":"223","DOI":"10.1016\/j.diin.2005.07.001","volume":"2","author":"P. Turner","year":"2005","unstructured":"Turner, P.: Unification of digital evidence from disparate sources (Digital Evidence Bags). Digital Investigation\u00a02(3), 223\u2013228 (2005)","journal-title":"Digital Investigation"},{"key":"10_CR20","doi-asserted-by":"crossref","unstructured":"Turner, P.: Selective and intelligent imaging using digital evidence bags. Digital Investigation. In: The Proceedings of the 6th Annual Digital Forensic Research Workshop (DFRWS 2006), vol.\u00a03(suppl. 1), pp. 59\u201364 (2006)","DOI":"10.1016\/j.diin.2006.06.003"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Forensics in Telecommunications, Information and Multimedia"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-02312-5_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,20]],"date-time":"2019-05-20T05:52:19Z","timestamp":1558331539000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-02312-5_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2009]]},"ISBN":["9783642023118","9783642023125"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-02312-5_10","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"type":"print","value":"1867-8211"},{"type":"electronic","value":"1867-822X"}],"subject":[],"published":{"date-parts":[[2009]]}}}