April 11, 2023, 8 p.m. | /u/forvestic

Computer Forensics www.reddit.com

Hi all,

I understand reviewing LNK files from a SSD can provide insight into which files might have been copied to an external drive/usb. Which script/processing option in Encase would help to identify these files?

What caveats should I keep in mind? Are there some guides/reading material you would recommend I reference to understand this topic better.

Thank you!

computerforensics detect drive external files guides identify insight lnk reference review script ssd understand usb

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Cyber Security Culture – Communication and Content Specialist

@ H&M Group | Stockholm, Sweden

Container Hardening, Sr. (Remote | Top Secret)

@ Rackner | San Antonio, TX

GRC and Information Security Analyst

@ Intertek | United States

Information Security Officer

@ Sopra Steria | Bristol, United Kingdom

Casual Area Security Officer South Down Area

@ TSS | County Down, United Kingdom