ADF Digital Evidence Investigator Kit Components
One portable travel case
One licensed authentication key
One 32GB high-speed USB key
One bootable CD
One USB extension cable
One teasing needle
One portable flashlight
Call for special pricing (1-800-438-7884)!
We offer bundled pricing when combined with our other products! For your convenience, a link to purchase from Tri-Tech Forensics is provided below.
When out in the field, it is critical that examiners have a simple, single tool that can extract intelligence from multiple devices and systems. Digital Evidence Investigator was designed with this in mind and supports multiple operating platforms including Windows, Macintosh, and Linux.
Digital Evidence Investigator is designed to scan computers with a single USB-based ADF license dongle and a separate generic (non-ADF) USB collection device. As a result, users can set up unlimited generic USB collection devices and leverage a single ADF license dongle to start simultaneous scans on multiple computers.
When examiners cannot risk losing valuable information by turning off a suspect computer, they need to be able to capture digital evidence from a running or live device. Digital Evidence Investigator allows live analysis of computers running Windows that cannot be shut down, which minimizes the risk of losing valuable intelligence by capturing all volatile data, including memory from all 32-bit and 64-bit windows operating systems.
Digital Evidence Investigator includes configurable file header definitions for file collection and unallocated space file carving. These key features give forensic examiners the highest confidence in the triage results.
SearchPaks® are encrypted and the permissions restricted to make it easy to disseminate to other examiners inside or outside the organization. The forensic triage community is actively sharing powerful SearchPaks, including those for indecent image detection, indecent keyword detection, registry collection, anti-forensic application detection, and encryption application detection.
Digital Evidence Investigator includes advanced image-matching technology that bypasses the traditional hash value limitations for identifying altered and similar images, including those that have been deleted or found in Thumbs.db files. This technology has helped identify conclusive evidence without deploying time-consuming forensic resources.
When investigating sensitive cases, such as those of child exploitation, it is vital that all necessary evidence is viable in order to prosecute the offender. Digital triage provides a forensically sound strategy to get quick results while maintaining the integrity of the case and preserving all the collected files, including log records.