Finding and Analyzing Windows System Artifacts with IEF

New with the Business and OS artifacts module in Internet Evidence Finder (IEF) v6.4, Magnet Forensics has added a number of valuable Windows operating system artifacts that will help investigators gain insight into details about a system and its users. IEF will now search for File System Information, Jump Lists, LNK Files, Network Share Information, Operating System Information, Shellbags, Startup Items, Timezone Information, USB Devices, User Accounts, Windows Event Logs and Windows Prefetch Files. Windows contains a wealth of information and artifacts around the system that can be quite valuable to investigators.

Read More (Magnet Forensics)

Leave a Comment