OSForensics Screenshot
OSForensics provides one of the fastest and most powerful ways to locate files on a Windows computer. You can search by filename, size, creation and modified dates, and other criteria.Results are returned and made available in several different useful views. This includes the Timeline View which allows you to sift through the matches on a timeline, making evident the pattern of user activity on the machine. 
OSForensics allows you to identify suspicious files and activity with hash matching, drive signature comparisons, e-mails, memory and binary data. OSForensics lets you extract forensic evidence from computers quickly with advanced file searching and indexing and enables this data to be managed effectively.

Features

Discover Forensic Evidence Faster
  • Find files faster, search by filename, size and time
  • Search within file contents using the Zoom search engine
  • Search through email archives from Outlook, ThunderBird, Mozilla and more
  • Recover and search deleted files
  • Uncover recent activity of website vists, downloads and logins
  • Collect detailed system information
  • Password recovery from web browsers, decryption of office documents
  • Discover and reveal hidden areas in your hard disk
  • Browse Volume Shadow copies to see past versions of files
Identify Suspicious Files and Activity
  • Verify and match files with MD5, SHA-1 and SHA-256 hashes
  • Find misnamed files where the contents don't match their extension
  • Create and compare drive signatures to identify differences
  • Timeline viewer provides a visual representation of system activity over time
  • File viewer that can display streams, hex, text, images and meta data
  • Email viewer that can display messages directly from the archive
  • Registry viewer to allow easy access to Windows registry hive files
Manage Your Digital Investigation
  • Case management enables you to aggregate and organize results and case items
  • HTML case reports provide a summary of all results and items you have associated with a case
  • Rebuild RAID arrays from individual disk images
  • OSForensics can be installed on a USB flash drive for more portability

System requirements

Windows XP SP2, Vista & Win 7
Windows Server 2000, 2003, 2008
32bit and 64bit support, (64bit recommended)
Minimum 1GB of RAM. (4GB+ recommended)
30MB of free disk space, or can be run from USB drive

Tutorials ::

Download :: 

For More Videos :: Click Here  
Official Website :: http://www.osforensics.com/

0 comments :

Post a Comment

 
Top