Belkasoft Evidence Center 2012

Belkasoft Evidence Center makes it easy for an investigator to search, analyze and store digital evidence found in instant messenger logs, internet browser histories, mailboxes of popular email clients, social network remnants, peer-to-peer data, multi-player game chats, office documents, pictures and videos.


Benefits

Belkasoft Evidence Center offers a number of important benefits making the product a perfect match for law enforcement, military, intelligence and business customers.

  • Forensically sound solution
    Does not alter or modify data on hard drives or disk images being investigated.
  • Comprehensive examination
    Discovers more than 120 types of artifacts, supporting all major IM’s, browsers, email clients, social networks, P2P and file transfer tools etc.
  • Less missing evidence
    Looks for hidden data, searches unusual places and examines files in little-known formats to discover more evidence than ever.
  • Blazing fast operation
    Analyzes information at the rate of disk data transfer.
  • Quick to learn and easy to use
    Designed to be usable in the field, Belkasoft Evidence Center is extremely easy to operate, and feasible even for single-incident investigations.
  • Usable in the field
    Portable edition can be plugged into any PC with no installation or configuration required.
  • Reports can be presented in court
    Generates clean and concise reports that can be presented to the court.
  • Recovers destroyed evidence
    Data carving allows locating evidence that was deleted, destroyed, or never stored on the hard drive at all (page file, hibernation file and live RAM analysis). Read more
  • Collaboration support
    Enterprise edition allows working on cases together with set permissions and centralized data storage.
  • Trusted solution
    Forensic investigators all over the world, Fortune 500 companies and multiple private security specialists use Belkasoft software. Customers include the FBI, the US Army, German police, and more than 500 government organizations from over 30 countries. More information

Less Missed Evidence

Belkasoft Evidence Center can locate a huge number of artifacts, retrieving user’s chats, communications, Web browsing and file sharing activities occurring in a wide range of software. These artifacts include:

Major Features

  • Case Management
    Evidence can be stored broken by cases.
  • Data Carving and Live RAM Analysis
    Recovers deleted and destroyed evidence as well as evidence stored in memory dumps, page and hibernation files. More on Live RAM analysis and page/hibernation file analysis
  • Industry standard
    Mounts Encase, SMART and DD images including Windows and MacOS drives. Integrated with Encase v.7
  • Large case support
    Cases containing hundreds of gigabytes of evidence are supported
  • Easy collaboration
    Enterprise edition allows for multi-user simultaneous work
  • Persistent data analysis 
    Analyzed data will be persistently stored in the database

See also

Case studies