Eng 繁體 简体
Search
Support Center
Contact Us
Home Products Data Recovery & Digital Forensics Evidence Center
New Arrivals
Data Recovery & Digital Forensics
Mobile Phone Recovery & Forensics
Media Duplicators
Data Erasure Solutions
Degaussers
Media Destruction Tools
Information & Public Security
Other Products
Data Recovery & Digital Forensics
Evidence Center
Model: Evidence Center 2018
Evidence Center makes it easy for an investigator to acquire, search, analyze, store and share digital evidence found inside computer and mobile devices.
Special Features:
-Fully automated extraction and analysis of 700+ types of evidence
-Destroyed and hidden evidence recovery via data carving
-Live RAM analysis
-Cloud data downloading and analysis
-Concise and adjustable reports


DESCRIPTION
TECHNICAL INFO

Brand new Belkasoft Evidence Center 2018 makes it easier for an investigator to acquire, search, analyze, store and share digital evidence found inside computer and mobile devices.

It will automatically analyze the data source and lay out the most forensically important artifacts for investigator to review, examine more closely or add to report.



                                             New Features Highlight                                            

Cloud data (30+ cloud services) downloading and analysis
Advanced low-level expertise
Concise and adjustable reports, accepted by courts

Others 

Comprehensive Examination
Discovers more than 700 types of artifacts, including over 100 mobile applications, all major document formats, browsers, email clients, dozens of picture and video formats, instant messengers, social networks, system and registry files, P2P and file transfer tools, etc. Extracts data from all major operating systems, both computer and mobile: Windows, Linux, MacOS X, iOS, Android, Windows Phone, Blackberry.

Less Missed Evidence

Looks for hidden and encrypted information, searches in unusual places, carves deleted and damaged data and examines files in little-known formats to discover more evidence than ever. The search includes unallocated and slack space, $MFT, $Log, Volume Shadow Copy and other special and little known areas of operating systems.

Mobile and Computer Device Examination
Supporting all major desktop and mobile operating systems, Belkasoft Evidence Center is suitable for mobile and computer forensics. It can parse real and logical drives and drive images, virtual machines, mobile device backups, UFED images, JTAG and chip-off dumps.

Smart and Comprehensive Analysis
The product looks everywhere on the device completely automatically and can successfully identify over 700 types of digital artifacts. Convenient Evidence Search feature helps to narrow down the findings using filters, pre-defined search, or other options.

Powerful Carving
Data carving allows to locate evidence that was deleted, destroyed, or never stored on the hard drive at all (page file, hibernation file, RAM contents). Besides, advanced carving mode called BelkaCarving™ is available, making it possible to reconstruct fragmented chunks into contiguous pieces of information that would otherwise not be accessible at all.

Native SQLite Parsing
Recovers corrupted and incomplete SQLite databases, restores deleted records and cleared history files. Processes freelists, write-ahead logs and journal files, and SQLite unallocated space.

Live RAM Analysis
Evidence Center can extract potentially crucial information from volatile memory, such as: in-private browsing and cleared browser histories, online chats and social networks, cloud service usage history, and much more. Belkasoft Live RAM Capturer is a powerful tool for creating memory dumps, and it is complimentary.

Handy Built-in Tools
PList, Registry, and SQLite viewers allow you to work more thoroughly with particular types of data and find even more evidence than automatic search was able to discover.

Low-level Investigations
Equipped with File System Explorer, Hex Viewer, and Type Converter, Belkasoft Evidence Center will allow you to perform deep examination of the contents of files and folders on the device.

Extendable with BelkaScript
Free scripting module allows user to write their own custom scripts in order to automate some of the routine and further extend the product's functionality.


Flexible Licensing
The product has different licensing options to answers any of your needs. For individual users, the most affordable fixed license is available. For use in a small or medium-size company, you can buy a floating license that comes with a USB dongle, which allows to run Evidence Center on multiple PC's; whereas portable version is perfectly suited for work in the field, as it runs from a USB drive and requires no installation.



Types of Analysis
o   Existing files search and analysis. Low-level investigation using Hex Viewer
o   Data carving and deleted information recovery
o   Live RAM analysis including process extraction and data visualization
o   Hibernation file and page file analysis
o   Native SQLive analysis with free list, journals and WAL support, SQLite unallocated analysis;
o   Discovers deleted SQLite records, e.g. Skype conversations or WhatsApp messages
o   Picture analysis including EXIF and GPS analysis, face/text/skin/forgery detection
o   Video key frame extraction
o   Encryption detection for 220+ types of files
o   Special files and folders analysis (e.g. Volume Shadow Copy, Orphan Files, MFT etc.)


Data Sources and File Systems
o   Storage devices - Hard drives and removable media
o   Disk images - E01/Ex01, L01/Lx01, FTK, DD, SMART, X-Ways, DMG, Atola
o   Mobile devices - Mobile backups, UFED dumps, JTAG and chip-off dumps
o   Virtual machines - VMWare, Virtual PC, XenServer, Virtual Box
o   Volatile memory - Live RAM dumps
                                       Fragmented memory set analysis with BelkaCarving
o   Memory Files - Hibernation files and Page files
o   Unallocated space - Data carving discovers destroyed evidence
                                          Free Space: possible to carve non-occupied space only to save time
o   File system - FAT, exFAT, NTFS, HFS, HFS+, ext2/3/4, YAFFS, YAFFS2

 
Customers viewing this product may be also interested in:
Copyright © 2018 DataExpert. All rights reserved.
TEL: (852) 3590 2115 FAX:(852) 3591 8817