Unfortunately, the Cisco SDM Application Policy defaults don’t actually contain all of the right AIM server hosts.
In your policy map, you need to deny server requests to aimhttp.oscar.aol.com and kdc.uas.aol.com. This is in addition to the default SDM hosts, it appears the older server hosts are still alive.
The aimhttp.oscar.aol.com is the http proxy AOL has setup to bypass blocked hosts.
The kdc.uas.aol.com is a new host that has appeared with the latest version of AIM.
You can fully test your Policy by downloading AIM and running the auto-config wizard. If AIM is able to find a connection to AOL servers, you don’t have something setup right.