![]() ![]() Easy detection of and access to NTFS alternate data streams (ADS).File and directory catalog creation for all computer media.Gathering slack space, free space, inter-partition space, and generic text from drives and images.Hard disk cleansing to produce forensically sterile media.Viewing and editing binary data structures using templates.Data interpreter, knowing 20 variable types.Well maintained file header signature database based on GREP notation.Various data recovery techniques, lightning fast and powerful file carving.Access to logical memory of running processes.with corrected partition tables or file system data structures to parse file systems completely despite data corruption, without altering the original disk or image Native support for FAT12, FAT16, FAT32, exFAT, TFAT, NTFS, Ext2, Ext3, Ext4, CDFS/ISO9660/Joliet, UDF.Automatic identification of lost/deleted partitions.Built-in interpretation of JBOD, RAID 0, RAID 5, RAID 5EE, and RAID 6 systems, Linux software RAIDs, Windows dynamic disks, and LVM2.Complete access to disks, RAIDs, and images more than 2 TB in size (more than 2 32 sectors) with sector sizes up to 8 KB.Ability to read partitioning and file system structures inside raw (.dd) image files, ISO, VHD, VHDX, VDI, and VMDK images.X-Ways Forensics is based on the WinHex hex and disk editor and part of an efficient workflow model where computer forensic examiners share data and collaborate with investigators that use X-Ways Investigator. ![]() ![]() Downloads and installs within seconds (just a few MB in size, not GB). Compared to its competitors, X-Ways Forensics is more efficient to use after a while, by far not as resource-hungry, often runs much faster, finds deleted files and search hits that the competitors will miss, offers many features that the others lack, as a German product is potentially more trustworthy, comes at a fraction of the cost, does not have any ridiculous hardware requirements, does not depend on setting up a complex database, etc.! X-Ways Forensics is fully portable and runs off a USB stick on any given Windows system without installation if you want. X-Ways Forensics Portable is an advanced work environment for computer forensic examiners and our flagship product. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |