Description
Windows jump list artifacts can be parsed for forensic timeline and user-activity analysis.
It is useful for incident responders and investigators who need to inspect Automatic Destinations and Custom Destinations data, including Windows 10 formats. Forensic artifacts can contain private file paths and user behavior, so handle evidence under proper authorization.