-
Wi-Fi Forensics: What Wi-Fi Reveals
Oxygen Adds Spyware Detection
Internet Evidence Finder 5.4 Released
ISP Subscriber Information & 4th Amdnement
COW's and Cellular Records
Is Law Enforcement Ready for Wi-Fi Technology?
Free Webinar - Shadow Copy Forensics
|
|
|
|
| |
|
DIGITAL FORENSICS UTILITIES
INTERNET EVIDENCE FINDER
IEF Standard, IEF Portable, by Jad Software
|
Internet Evidence Finder (IEF) and Internet Evidence Findar Portable (IEFP) are available for resale by PATCtech
-Request Official Quote
Number of Artifacts Supported |
45 |
45 |
Search: "Full Search – Sector Level" supported |
YES |
YES |
Search: "Files / Folders" supported |
YES |
YES |
Search: "Quick Search" supported |
YES |
YES |
Search: "Full Search" supported |
YES |
YES |
Search: "Unallocated Clusters Only" supported |
YES |
YES |
New, simplified Graphical User Interface |
YES |
YES |
File system searched / supported |
YES |
YES |
MFT (Master File Table) is searched for resident deleted files on NTFS drives |
YES |
YES |
Report Viewer Included |
YES |
YES |
Yahoo!® Messenger existing log files are parsed without requiring usernames |
YES |
YES |
Compressed data in Hiberfil.sys files is decompressed on-the-fly during searches |
YES |
YES |
Updated / recoded searches for improved speed and increased artifact recovery |
YES |
YES |
Facebook® unicode text is converted |
YES |
YES |
Can access and search locked files |
YES |
YES |
Can search Unallocated Clusters / Free Space only |
YES |
YES |
Native Image Mounting |
YES |
YES |
New Report Viewer with Bookmarking, Search, Filter, and Search Alert capabilities and Unicode support |
YES |
YES |
Select multiple drives/volumes to search |
YES |
YES |
SQLite database backend |
YES |
YES |
New customizable, simpler preset search functionality |
YES |
YES |
Auto-check for updates option |
YES |
YES |
Artifact locations map to physical sector (not logical) |
YES |
YES |
Up to 20% faster than previous versions |
YES |
YES |
Can be run from thumb drive without being installed |
No |
YES |
Can mount and search volume shadow copies (on live system, Quick or Sector Level search) |
No |
YES |
Drive imaging |
No |
YES |
Live RAM captures (32 and 64bit) |
No |
YES |
Automated encryption check |
No |
YES |
Stealth Mode |
No |
YES |
Size of thumb drive containing IEF/key |
1GB |
16GB |
When you need to know what happened and who’s responsible, turn to IEF!
|
|
|
| |
Internet Evidence Finder (IEF) is a digital forensics solution that can search a hard drive, live RAM, or files for Internet-related evidence.
IEF was designed with digital forensics examiners in mind, IEF is also used extensively by personnel in IT information security, electronic discovery, cyber security, and corporate investigations. |
|
|
|
|
Why Customers Choose IEF
|
|
|
| |
Recovery of more types of Internet-related evidence:
- social networking artifacts
- instant messaging chat histories
- popular webmail applications
- web browser history, and
- peer-to-peer file sharing applications
Searching in more places:
- Entire Logical or Physical Drives
- Unallocated space/deleted space
- Selected Files (pagefile.sys / hiberfil.sys files, and more)
- Entire user-selected folders and sub-folders
- Other important areas on a hard drive where evidence may be found
Finding more relevant & accurate evidence:
- Patent pending data recovery process
- Single search for more than 30 artifacts
- Customize your search by selecting artifacts and locations to search
Rich & Comprehensive Reporting:
- When IEF has finished searching, you can view the results in a case folder via the IEF Report Viewer. And once you’ve reviewed the data, you can choose which elements to export to either a CSV, tab-delimited, HTML or Excel format.
- You can easily control how your report looks and what it does, based on your specific requirements.
- While IEF is built to satisfy the most stringent requirements, it’s designed to be intuitive and easy to use from start to finish -- whether you’re a computer expert or not.
|
|
|
|
|
View all Digital Forensics Solutions
|
|
|
|
| |
|
|
|
|