{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,5]],"date-time":"2024-09-05T13:26:36Z","timestamp":1725542796461},"publisher-location":"Berlin, Heidelberg","reference-count":14,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642355141"},{"type":"electronic","value":"9783642355158"}],"license":[{"start":{"date-parts":[[2012,1,1]],"date-time":"2012-01-01T00:00:00Z","timestamp":1325376000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012]]},"DOI":"10.1007\/978-3-642-35515-8_18","type":"book-chapter","created":{"date-parts":[[2012,11,22]],"date-time":"2012-11-22T16:36:13Z","timestamp":1353602173000},"page":"211-225","source":"Crossref","is-referenced-by-count":3,"title":["Finding Forensic Information on Creating a Folder in $LogFile of NTFS"],"prefix":"10.1007","author":[{"given":"Gyu-Sang","family":"Cho","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Marcus K.","family":"Rogers","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"18_CR1","unstructured":"Russinovich, M.E., Solomon, D.A.: Microsoft Windows Internals, 4th edn., pp. 733\u2013774. Microsoft Press (2005)"},{"key":"18_CR2","unstructured":"Carrier, B.: File System Forensic Analysis, pp. 273\u2013396. Addison-Wesley (2005)"},{"key":"18_CR3","unstructured":"Dreher, K.: NTFS. Master Thesis of Department of Information Technology Institute of technology, Lund, Sweden (November 1998)"},{"key":"18_CR4","unstructured":"Singireddy, P.: Recoverability Support in NT File System (NTFS), \n                    \n                      http:\/\/www.eas.asu.edu\/~cse532\/\n                    \n                    \n                   or \n                    \n                      http:\/\/www.docstoc.com\/docs\/28691891\/ntfs_mod\/"},{"issue":"1","key":"18_CR5","first-page":"51","volume":"3","author":"G.S. Cho","year":"2009","unstructured":"Cho, G.S.: An Analysis of NTFS Journal File for a Computer Forensic. Digital Forensic Research\u00a03(1), 51\u201360 (2009)","journal-title":"Digital Forensic Research"},{"issue":"2","key":"18_CR6","first-page":"107","volume":"6","author":"T.H. Kim","year":"2010","unstructured":"Kim, T.H., Cho, G.S.: A Digital Forensic Method for File Creation using Journal File of NTFS. Journal of KSDIM\u00a06(2), 107\u2013118 (2010)","journal-title":"Journal of KSDIM"},{"key":"18_CR7","unstructured":"Data Integrity and Recoverability with NTFS, \n                    \n                      http:\/\/www.ntfs.com"},{"key":"18_CR8","unstructured":"Transaction log supports NTFS recoverability, \n                    \n                      http:\/\/support.microsoft.com\/kb\/101670"},{"key":"18_CR9","unstructured":"NTFS Documentation, \n                    \n                      http:\/\/www.linux-ntfs.org"},{"key":"18_CR10","unstructured":"Russon, R.: NTFS Documentation (2009), \n                    \n                      http:\/\/www.linux-ntfs.org"},{"key":"18_CR11","unstructured":"Naik, D.C.: Inside Windows Storage, ch. 6.5. Addison Wesley (July 2003)"},{"key":"18_CR12","unstructured":"Casey, E.: Uncertainty and Loss in Digital Evidence. International Journal\u00a0of Digital Evidence\u00a01(2) (Summer 2002)"},{"issue":"1","key":"18_CR13","doi-asserted-by":"publisher","first-page":"18","DOI":"10.1016\/j.diin.2004.01.002","volume":"1","author":"C. Boyd","year":"2004","unstructured":"Boyd, C., Forster, P.: Time and Date Issues in Forensic Computing \u2013 A Case Study. Digital Investigation\u00a01(1), 18\u201323 (2004)","journal-title":"Digital Investigation"},{"key":"18_CR14","doi-asserted-by":"crossref","unstructured":"Chow, K.P., et al.: The Rules of Time on NTFS File System. In: SADFE, pp. 71\u201385 (March 2007)","DOI":"10.1109\/SADFE.2007.22"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Digital Forensics and Cyber Crime"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-35515-8_18","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,9]],"date-time":"2019-05-09T00:41:03Z","timestamp":1557362463000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-35515-8_18"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012]]},"ISBN":["9783642355141","9783642355158"],"references-count":14,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-35515-8_18","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"type":"print","value":"1867-8211"},{"type":"electronic","value":"1867-822X"}],"subject":[],"published":{"date-parts":[[2012]]}}}