{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,5,7]],"date-time":"2024-05-07T07:58:55Z","timestamp":1715068735177},"reference-count":70,"publisher":"Elsevier","isbn-type":[{"value":"9780128053034","type":"print"}],"license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017]]},"DOI":"10.1016\/b978-0-12-805303-4.00003-4","type":"book-chapter","created":{"date-parts":[[2017,1,7]],"date-time":"2017-01-07T18:41:41Z","timestamp":1483814501000},"page":"21-39","source":"Crossref","is-referenced-by-count":1,"title":["Investigating America Online Instant Messaging Application"],"prefix":"10.1016","author":[{"given":"T.Y.","family":"Yang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"A.","family":"Dehghantanha","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"K.-K.R.","family":"Choo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Z.","family":"Muda","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0010","unstructured":"Radicati Team, The Radicati Group, Inc. \u201cRadicati Press Release\u201d The Radicati Group Releases \u201cInstant Messaging Statistics Report, 2015\u20132019\u201d, 2015."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0015","unstructured":"City of London Police. Online dating fraud up by 33% last [WWW Document]. URL https:\/\/www.cityoflondon.police.uk\/advice-and-support\/fraud-and-economic-crime\/nfib\/nfib-news\/Pages\/online-dating-fraud.aspx, 2015 (accessed 29.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0020","series-title":"Proceedings of the 21st Americas Conference on Information Systems","article-title":"Privacy risks in mobile dating apps","author":"Farnden","year":"2015"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0025","unstructured":"S.L. Meyers, Special Report, Part 1: \u201cDiploma mill\u201d scams continue to plague Milwaukee\u2019s adult students. Milwaukee Neighborhood News Service, 2014."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0030","unstructured":"N. Timoney, Consumer contact: job advertising fraud. WABI TV5. URL http:\/\/wabi.tv\/2014\/05\/12\/consumer- contact-job-advertising-fraud\/ (accessed 12.18.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0035","first-page":"10","article-title":"A survey on malware propagation, analysis, and detection","volume":"2","author":"Damshenas","year":"2013","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0040","first-page":"645","article-title":"Investigation of malware defence and detection techniques","volume":"1","author":"Daryabar","year":"2011","journal-title":"Int. J. Digit. Inf. Wireless Commun."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0045","first-page":"50","article-title":"Analysis of known and unknown malware bypassing techniques","volume":"4","author":"Daryabar","year":"2013","journal-title":"Int. J. Inf. Process. Manage."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0050","unstructured":"Help Net Security, Instant messaging Trojan spreads through the UK [WWW Document], http:\/\/www.net-security.org\/malware_news.php?id=2773, 2014 (accessed 19.12.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0055","series-title":"Digital Information Processing and Communications, Communications in Computer and Information Science","doi-asserted-by":"crossref","first-page":"448","DOI":"10.1007\/978-3-642-22410-2_39","article-title":"A mitigation approach to the privacy and malware threats of social network services","author":"Mohtasebi","year":"2011"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0060","unstructured":"T. Barnes, Margate paedophile jailed for five years [WWW Document], Thanet Gazette, http:\/\/www.thanetgazette.co.uk\/Margate-paedophile-jailed-years\/story-20922860-detail\/story.html, 2014 (accessed 24.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0065","unstructured":"M. Godfrey, Pedophiles coercing kids using phone app [WWW Document]. URL http:\/\/news.smh.com.au\/ breaking-news-national\/pedophiles-coercing-kids-using-phone-app-20130327-2gu3a.html, 2014 (accessed 24.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0070","unstructured":"N. McCallum, Pedophile posed as Bieber to lure victims [WWW Document], http:\/\/www.9news.com.au\/world\/2013\/09\/17\/10\/30\/pedophile-posed-as-bieber-to-lure-victims, 2013 (accessed 24.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0075","unstructured":"The Federation Bureau of Investigation (FBI), Jacksonville man sentenced in child pornography case [WWW Document], FBI, https:\/\/www.fbi.gov\/charlotte\/press-releases\/2015\/jacksonville-man-sentenced-in-child-pornography-case, 2015 (accessed 18.12.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0080","first-page":"57","article-title":"A survey on privacy impacts of digital investigation","volume":"4","author":"Daryabar","year":"2013","journal-title":"J. Next Gener. Inf. Technol."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0085","first-page":"48","article-title":"Digital forensic trends and future","volume":"2","author":"Dezfoli","year":"2013","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0090","first-page":"1","article-title":"Cyber warfare trends and future","volume":"5","author":"Ganji","year":"2013","journal-title":"Adv. Inf. Sci. Serv. Sci."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0095","first-page":"504","article-title":"Defusing the hazards of social network services","volume":"1","author":"Mohtasebi","year":"2011","journal-title":"Int. J. Digit. Inf. Wireless Commun."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0100","first-page":"137","article-title":"Mining the Social Web: Data Mining Facebook, Twitter, LinkedIn, Google+, Github, and More","volume":"11","author":"Ali","year":"2015","journal-title":"J. Inf. Priv. Secur."},{"issue":"4","key":"10.1016\/B978-0-12-805303-4.00003-4_bb0105","first-page":"469","article-title":"Investigating Social Networking applications on smartphones detecting Facebook, Twitter, LinkedIn, and Google+ artifacts on Android and iOS platforms","volume":"48","author":"Norouzi","year":"2015","journal-title":"Aust. J. Forensic Sci."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0110","unstructured":"National Criminal Justice Reference Service (NCJRS), Investigative uses of technology: devices, tools, and techniques [WWW Document], https:\/\/www.ncjrs.gov\/App\/Publications\/Abstract.aspx?id=262206, 2007 (accessed 06.12.14)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0115","first-page":"311","article-title":"A survey on privacy issues in digital forensics","volume":"1","author":"Aminnezhad","year":"2012","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"issue":"1","key":"10.1016\/B978-0-12-805303-4.00003-4_bb0120","doi-asserted-by":"crossref","first-page":"73","DOI":"10.1007\/s10660-015-9208-1","article-title":"Android mobile VoIP apps: a survey and examination of their security and privacy","volume":"16","author":"Azfar","year":"2016","journal-title":"Electron. Commer. Res."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0125","doi-asserted-by":"crossref","first-page":"708","DOI":"10.12720\/jcm.8.11.708-715","article-title":"Social networks IM forensics: encryption analysis","volume":"8","author":"Barghuthi","year":"2013","journal-title":"J. Commun."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0130","series-title":"The Cloud Security Ecosystem","first-page":"429","article-title":"Chapter 19\u2014Ubuntu one investigation: detecting evidences on client machines","author":"Shariati","year":"2015"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0135","first-page":"1","article-title":"SugarSync forensic analysis","author":"Shariati","year":"2015","journal-title":"Aust. J. Forensic Sci."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0140","first-page":"209","article-title":"A survey on digital forensics trends","volume":"3","author":"Damshenas","year":"2014","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0145","first-page":"129","article-title":"Privacy-respecting digital investigation","author":"Dehghantanha","year":"2014"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0150","unstructured":"European Union Agency for Network and Information Security (ENISA), Procure secure: a guide to monitoring of security service levels in cloud contracts\u2014ENISA [WWW Document], https:\/\/www.enisa.europa.eu\/activities\/Resilience-and-CIIP\/cloud-computing\/procure-secure-a-guide-to-monitoring-of-security-service-levels-in-cloud-contracts, 2012 (accessed 12.10.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0155","first-page":"190","article-title":"Forensics investigation challenges in cloud computing environments","author":"Damshenas","year":"2012"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0160","series-title":"Proceedings of the 21st Americas Conference on Information Systems","article-title":"Forensic taxonomy of popular Android mHealth apps","author":"Azfar","year":"2015"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0165","doi-asserted-by":"crossref","first-page":"256","DOI":"10.1016\/j.diin.2004.10.003","article-title":"Instant messaging investigations on a live Windows XP system","volume":"1","author":"Carvey","year":"2004","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0170","first-page":"141","article-title":"M0Droid: an android behavioral-based malware detection model","volume":"11","author":"Damshenas","year":"2015","journal-title":"J. Inf. Priv. Secur."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0175","doi-asserted-by":"crossref","first-page":"227","DOI":"10.1016\/j.diin.2006.10.004","article-title":"An examination into AOL Instant Messenger 5.5 contact identification","volume":"3","author":"Dickson","year":"2006","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0180","doi-asserted-by":"crossref","first-page":"79","DOI":"10.1016\/j.diin.2006.04.002","article-title":"An examination into MSN Messenger 7.5 contact identification","volume":"3","author":"Dickson","year":"2006","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0185","doi-asserted-by":"crossref","first-page":"159","DOI":"10.1016\/j.diin.2006.08.009","article-title":"An examination into Yahoo Messenger 7.0 contact identification","volume":"3","author":"Dickson","year":"2006","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0190","doi-asserted-by":"crossref","first-page":"36","DOI":"10.1016\/j.diin.2007.01.003","article-title":"An examination into Trillian basic 3.x contact identification","volume":"4","author":"Dickson","year":"2007","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0195","doi-asserted-by":"crossref","DOI":"10.1371\/journal.pone.0138449","article-title":"A forensically sound adversary model for mobile devices","volume":"10","author":"Do","year":"2015","journal-title":"PLoS ONE"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0200","first-page":"324","article-title":"Modelling based approach for reconstructing evidence of VoIP malicious attacks","volume":"1","author":"Ibrahim","year":"2012","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0205","first-page":"1094","article-title":"Android cache taxonomy and forensic process","author":"Immanuel","year":"2015"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0210","first-page":"1059","article-title":"Forensic collection and analysis of thumbnails in android","author":"Leom","year":"2015"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0215","first-page":"651","article-title":"Smartphone forensics: a case study with Nokia E5-00 mobile phone","volume":"1","author":"Mohtasebi","year":"2011","journal-title":"Int. J. Digit. Inf. Wireless Commun."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0220","first-page":"264","article-title":"Framework of digital forensics for the Samsung Star Series phone","author":"Parvez","year":"2011"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0225","doi-asserted-by":"crossref","first-page":"238","DOI":"10.1016\/j.diin.2006.10.009","article-title":"Case study: AOL instant messenger trace evidence","volume":"3","author":"Reust","year":"2006","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0230","series-title":"Computational Forensics","first-page":"145","article-title":"Introducing and analysis of the Windows 8 event log for forensic purposes","author":"Talebi","year":"2015"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0235","doi-asserted-by":"crossref","first-page":"138","DOI":"10.1016\/j.diin.2008.01.002","article-title":"Forensic artefacts left by Pidgin Messenger 2.0","volume":"4","author":"Van Dongen","year":"2007","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0240","doi-asserted-by":"crossref","first-page":"73","DOI":"10.1016\/j.diin.2007.06.019","article-title":"Forensic artefacts left by Windows Live Messenger 8.0","volume":"4","author":"Van Dongen","year":"2007","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0245","first-page":"183","article-title":"Advances of mobile forensic procedures in Firefox OS","volume":"3","author":"Yusoff","year":"2014","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0250","first-page":"130","article-title":"Performance measurement for mobile forensic data acquisition in Firefox OS","volume":"3","author":"Yusoff","year":"2014","journal-title":"Int. J. Cyber-Sec. Digit. Forensics"},{"issue":"2","key":"10.1016\/B978-0-12-805303-4.00003-4_bb0255","doi-asserted-by":"crossref","first-page":"351","DOI":"10.7763\/IJCTE.2013.V5.708","article-title":"Towards a unified forensic investigation framework of smartphones","volume":"5","author":"Mohtasebi","year":"2013","journal-title":"Int. J. Comput. Theory Eng."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0260","doi-asserted-by":"crossref","first-page":"1378","DOI":"10.1016\/j.future.2013.02.001","article-title":"Digital droplets: Microsoft SkyDrive forensic data remnants","volume":"29","author":"Quick","year":"2013","journal-title":"Futur. Gener. Comput. Syst."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0265","doi-asserted-by":"crossref","first-page":"3","DOI":"10.1016\/j.diin.2013.02.003","article-title":"Dropbox analysis: data remnants on user machines","volume":"10","author":"Quick","year":"2013","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0270","doi-asserted-by":"crossref","first-page":"179","DOI":"10.1016\/j.jnca.2013.09.016","article-title":"Google drive: forensic analysis of data remnants","volume":"40","author":"Quick","year":"2014","journal-title":"J. Netw. Comput. Appl."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0275","series-title":"Advances in Digital Forensics IV, IFIP\u2014The International Federation for Information Processing","doi-asserted-by":"crossref","first-page":"129","DOI":"10.1007\/978-0-387-84927-0_11","article-title":"Forensic analysis of volatile instant messaging","author":"Kiley","year":"2008"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0280","series-title":"Digital Forensics and Cyber Crime, Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","first-page":"55","article-title":"Reliable acquisition of RAM dumps from Intel-based Apple Mac computers over Firewire","author":"Gladyshev","year":"2010"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0285","series-title":"Information Technology Convergence, Secure and Trust Computing, and Data Management","first-page":"119","article-title":"Forensic analysis of Digsby log data to trace suspected user activities","author":"Yasin","year":"2012"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0290","doi-asserted-by":"crossref","first-page":"222","DOI":"10.1016\/j.diin.2012.11.003","article-title":"DigLA\u2014a Digsby log analysis tool to identify forensic artifacts","volume":"9","author":"Yasin","year":"2013","journal-title":"Digit. Investig."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0295","doi-asserted-by":"crossref","first-page":"369","DOI":"10.1007\/s10660-014-9145-4","article-title":"Correlating messages from multiple IM networks to identify digital forensic artifacts","volume":"14","author":"Yasin","year":"2014","journal-title":"Electron. Commer. Res."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0300","series-title":"Digital Forensics and Cyber Crime, Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","doi-asserted-by":"crossref","first-page":"27","DOI":"10.1007\/978-3-642-19513-6_3","article-title":"A simple cost-effective framework for iPhone forensic analysis","author":"Husain","year":"2011"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0305","series-title":"What is Forensic Computing?","author":"McKemmish","year":"1999"},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0310","unstructured":"Old Apps, Old and new version of AOL instant messenger download. [WWW Document], http:\/\/www.oldapps.com\/aim.php, n.d. (accessed 18.12.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0315","unstructured":"Carnegie Mellon University (CMU), On sending files via OSCAR Google Summer of Code 2005 Gaim project [WWW Document], http:\/\/www.cs.cmu.edu\/~jhclark\/aim\/On%20Sending%20Files%20via%20OSCAR.odt, 2006 (accessed 05.04.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0320","unstructured":"America Online Inc (AOL), How do I manage my Buddy List\/IM settings in the AOL software? [WWW Document], https:\/\/help.aol.com\/articles\/how-do-I-manage-my-buddy-listim-settings-in-the-aol-software, 2015 (accessed 21.12.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0325","unstructured":"Microsoft Inc., Verbs and file associations (Windows) [WWW Document], https:\/\/msdn.microsoft.com\/en-us\/library\/windows\/desktop\/cc144175(v=vs.85).aspx, 2015 (accessed 24.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0330","unstructured":"Nirsoft, UserAssistView\u2014decrypt and displays the list of all UserAssist items in the registry [WWW Document], http:\/\/www.nirsoft.net\/utils\/userassist_view.html, 2015 (accessed 24.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0335","unstructured":"N. Talekar, SecurityXploded Blog\u2014New Software\u2014AIM Password Decryptor, 2011."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0340","unstructured":"Microsoft Inc., About URL security zones (Windows) [WWW Document], https:\/\/msdn.microsoft.com\/en-us\/library\/ms537183.aspx#internet, 2015 (accessed 24.05.15)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0345","unstructured":"J. Metz, Windows Search forensics|ForensicFocus.com [WWW Document], Forensic Focus, http:\/\/www.forensicfocus.com\/windows-search-forensics, n.d. (accessed 06.01.16)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0350","unstructured":"America Online Inc (AOL), What is Lifestream? [WWW Document], https:\/\/help.aol.com\/https:\/\/help.aol.com\/articles\/what-is-lifestream, 2014 (accessed 09.01.16)."},{"key":"10.1016\/B978-0-12-805303-4.00003-4_bb0355","unstructured":"The Federation Bureau of Investigation (FBI), Going dark: are technology, privacy, and public safety on a collision course? [WWW Document], FBI, https:\/\/www.fbi.gov\/news\/speeches\/going-dark-are-technology-privacy-and-public-safety-on-a-collision-course, 2014 (accessed 18.12.15)."}],"container-title":["Contemporary Digital Forensic Investigations of Cloud and Mobile Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:B9780128053034000034?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:B9780128053034000034?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2018,9,5]],"date-time":"2018-09-05T02:52:49Z","timestamp":1536115969000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/B9780128053034000034"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"ISBN":["9780128053034"],"references-count":70,"URL":"https:\/\/doi.org\/10.1016\/b978-0-12-805303-4.00003-4","relation":{},"subject":[],"published":{"date-parts":[[2017]]}}}