About this document
Windows Forensics: Key Artifacts Guide by s. Pradeep is a document available to read on EtoBox.
This document provides a summary of 11 key Windows artifacts that can be used for digital forensics investigations: 1. LNK files contain metadata about files opened by a user including paths, timestamps and file sizes. 2. Thumbnail databases store small pictures of files and can be used to identify deleted pictures and map them to file paths. 3. Jump lists contain lists of recently used files and applications pinned by the user to the taskbar. 4. Additional artifacts include Windows search history, r
- Author
- s. Pradeep
- Language
- EN