The document provides guidance on identifying different types of evidence for a computer forensic investigation. It discusses identifying physical hardware, removable storage devices, documents, and following network connections as potential sources of evidence. It emphasizes the importance of thoroughly documenting the investigation process and crime scene. A case study example demonstrates how a computer forensic investigation helped locate a missing person by analyzing evidence found on their work computer.