filmov
tv
LNK Files and Jump Lists
![preview_player](https://i.ytimg.com/vi/wu4-nREmzGM/maxresdefault.jpg)
Показать описание
As a continuation of the "Introduction to Windows Forensics" series, this video introduces the ubiquitous LNK, or "link", file, as well as a lesser known Windows feature called Jump Lists.
Both of these artifacts provide us with numerous items of forensic interest. We'll first take a look at the basic information you need to know in order to parse these artifacts. Then, we'll take a look inside an LNK file, and use ExifTool and Lnk Explorer to extract items of evidentiary value. Lastly, we'll look at Jump Lists, and use JumpList Explorer to explore the contents of those files.
Introduction to Windows Forensics:
LNK Files:
Forensic Analysis of LNK files:
Jump Lists:
4n6k Jump List AppID Master List:
ExifTool:
Lnk Explorer:
JumpList Explorer:
*** Additional Tools Referenced in This Video ***
Lnkanalyser:
Windows LNK Parsing Utility:
Internet Evidence Finder (IEF):
JumpLister:
JumpListsView:
Windows Jump List Parser:
#Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
Both of these artifacts provide us with numerous items of forensic interest. We'll first take a look at the basic information you need to know in order to parse these artifacts. Then, we'll take a look inside an LNK file, and use ExifTool and Lnk Explorer to extract items of evidentiary value. Lastly, we'll look at Jump Lists, and use JumpList Explorer to explore the contents of those files.
Introduction to Windows Forensics:
LNK Files:
Forensic Analysis of LNK files:
Jump Lists:
4n6k Jump List AppID Master List:
ExifTool:
Lnk Explorer:
JumpList Explorer:
*** Additional Tools Referenced in This Video ***
Lnkanalyser:
Windows LNK Parsing Utility:
Internet Evidence Finder (IEF):
JumpLister:
JumpListsView:
Windows Jump List Parser:
#Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
LNK Files and Jump Lists
Data Triage of Windows Activity Timeline, Link Files & Jump Lists in E3 Forensic Platform
Episode 16: “Quick Win” files #2 - Jumplists-Part 1
How to use Shortcut LNK Files on Windows - Malware Delivery Initial Access
How hackers use LNK files to maliciously download malware
LNK File Testing and New Findings (Discussion)
BlackBag Tip of the Day: Windows Jump Lists
How to get more items on the jump list on Windows 10
LNK Parser Tutorial
What is a 'Windows Recents Folder' Artifact. And How It Can Be Useful In DFIR Investigatio...
Utilizing Windows LNK Features for Phishing With Office Macro (Educational Video)
How to Manage and Clear Your Jump Lists in Windows
Analyzing Malicious Link Files - Identifying Initial Access Techniques
Tip of the Day: Windows Jump Lists in Cellebrite Inspector (Formerly BlackLight)
How to use Jump Lists in Windows 10
Windows Forensics | Prefetch | Win 10 Timeline | Jump Lists | USB Forensics //Part 5
Episode 19: “Quick Win” files #3 - .LNK files-Part 1
Windows 10 Jump Lists gives you quick access to doments or files used by an app in start menu
Episode 17: “Quick Win” files #2 - Jumplists-Part 2
Windows 10 - How to clear recently opened files lists and Jump lists
Inside Windows Shortcuts (LNK Files) [Part 1]
How to Clear & Stop Recent Items from a Jump List in Windows 10
Download and Run LNK File
Episode 20: “Quick Win” files #3 - .LNK files-Part 2
Комментарии