{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,29]],"date-time":"2026-05-29T11:28:06Z","timestamp":1780054086412,"version":"3.54.0"},"publisher-location":"Berlin, Heidelberg","reference-count":11,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783642115332","type":"print"},{"value":"9783642115349","type":"electronic"}],"license":[{"start":{"date-parts":[[2010,1,1]],"date-time":"2010-01-01T00:00:00Z","timestamp":1262304000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2010]]},"DOI":"10.1007\/978-3-642-11534-9_9","type":"book-chapter","created":{"date-parts":[[2010,1,3]],"date-time":"2010-01-03T20:10:03Z","timestamp":1262549403000},"page":"85-98","source":"Crossref","is-referenced-by-count":19,"title":["Analysis of Evidence Using Formal Event Reconstruction"],"prefix":"10.1007","author":[{"given":"Joshua","family":"James","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Pavel","family":"Gladyshev","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mohd Taufik","family":"Abdullah","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yuandong","family":"Zhu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"9_CR1","doi-asserted-by":"publisher","first-page":"82","DOI":"10.1016\/j.diin.2007.06.013","volume":"4","author":"A.R. Arasteh","year":"2007","unstructured":"Arasteh, A.R., Debbabi, M., Sakha, A., Saleh, M.: Analyzing multiple logs for forensic evidence. Digital Investigation\u00a04, 82\u201391 (2007)","journal-title":"Digital Investigation"},{"key":"9_CR2","unstructured":"Carrier, B.D.: A Hypothesis-Based Approach to Digital Forensic Investigations. PhD Thesis, Purdue University, CERIAS, West Lafayette (2006)"},{"issue":"1","key":"9_CR3","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1016\/j.diin.2006.06.011","volume":"3","author":"B.D. Carrier","year":"2006","unstructured":"Carrier, B.D., Spafford, E.H.: Categories of digital investigation analysis techniques based on the computer history model. Digital Investigation\u00a03(1), 121\u2013130 (2006)","journal-title":"Digital Investigation"},{"issue":"1","key":"9_CR4","first-page":"1","volume":"4","author":"P. Gladyshev","year":"2005","unstructured":"Gladyshev, P.: Finite State Machine Analysis of a Blackmail Investigation. Internationl Journal of Digital Evidence\u00a04(1), 1\u201313 (2005)","journal-title":"Internationl Journal of Digital Evidence"},{"key":"9_CR5","unstructured":"Gladyshev, P.: Formalising Event Reconstruction in Digital Investigations. State Machine Theory of Digital Forensic Analysis (August 2004), \n                      \n                        http:\/\/formalforensics.org\/publications\/thesis\/index.html\n                      \n                      \n                     (retrieved January 12, 2009)"},{"key":"9_CR6","doi-asserted-by":"crossref","unstructured":"Gladyshev, P., Patel, A.: Finite State Machine Approach to Digital Event Reconstruction. Digital Investigation, 130\u2013149 (2004)","DOI":"10.1016\/j.diin.2004.03.001"},{"key":"9_CR7","doi-asserted-by":"crossref","unstructured":"Kozen, D.C.: Automata and Computability. In: Gries, D., Schneider, F. (eds.). Springer Science + Business Media, LLC, New York (1997)","DOI":"10.1007\/978-1-4612-1844-9"},{"key":"9_CR8","unstructured":"Rekhis, S.: Theoretical Aspects of Digital Investigation of Security Incidents. The Communication Network and Security (CN&S) research Laboratory. Carthage: CN&S Research Lab (2008)"},{"key":"9_CR9","unstructured":"Stallard, T., Levitt, K.: Automated analysis for digital forensic science: Semantic integrity checking. In: 19th Annual Computer Security Applications Conference, Las Vegas (2003)"},{"key":"9_CR10","unstructured":"Warren, D.S.: Regular Expressions. Finite State Machines (July 31, 1999), \n                      \n                        http:\/\/www.cs.sunysb.edu\/~warren\/xsbbook\/node39.html\n                      \n                      \n                     (retrieved February 17, 2009)"},{"key":"9_CR11","doi-asserted-by":"crossref","unstructured":"Willassen, S.: Hypothesis-Based Investigation of Digital Timestamps. In: Ray, I., Shenoi, S. (eds.) IFIP International Federation for Information Processing. Advances in Digital Forensics IV, vol.\u00a0285, pp. 75\u201386 (2008)","DOI":"10.1007\/978-0-387-84927-0_7"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Digital Forensics and Cyber Crime"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-11534-9_9","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,21]],"date-time":"2019-05-21T01:11:41Z","timestamp":1558401101000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-11534-9_9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2010]]},"ISBN":["9783642115332","9783642115349"],"references-count":11,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-11534-9_9","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"value":"1867-8211","type":"print"},{"value":"1867-822X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2010]]}}}