Analyzing Windows Lnk Files For Artifacts

Parse Windows LNK shortcut files to extract target paths, timestamps, volume information, and machine identifiers for forensic timeline reconstruction.

xalgord 41c040b 13.6 KB Updated

File contents

xalgord/xalgorix/tree/main/internal/tools/skills/data/digital-forensics/analyzing-windows-lnk-files-for-artifacts commit 41c040b6a7

Frequently asked questions

npx skillmds@latest add xalgord/analyzing-windows-lnk-files-for-artifacts