Go Back   PowerShare » Free Downloads » Free Apps
LinkBack Thread Tools Display Modes
Old 08-09-2017, 01:05 PM
Senior Member
Join Date: Jan 2015
Posts: 83,076
Default PassMark OSForensics Professional.5.1 Build 1002 Portable

PassMark OSForensics Professional 5.1 Build 1002 Portable | 202 Mb
OSForensics lets you extract forensic evidence from computers quickly with high performance file searches and indexing. Identify suspicious files and activity with hash matching, drive signature comparisons, e-mails, memory and binary data. Manage your digital investigation and create reports from collected forensic data.

OSForensics allows you to identify suspicious files and activity with hash matching, drive signature comparisons, e-mails, memory and binary data.

It lets you extract forensic evidence from computers quickly with advanced file searching and indexing and enables this data to be managed effectively.


Discover Forensic Evidence Faster
- Find files faster, search by filename, size and time
- Search within file contents using the Zoom search engine
- Search through email archives from Outlook, ThunderBird, Mozilla and more
- Recover and search deleted files
- Uncover recent activity of website visits, downloads and logins
- Collect detailed system information
- Password recovery from web browsers, decryption of office documents
- Discover and reveal hidden areas in your hard disk
- Browse Volume Shadow copies to see past versions of files

Identify Suspicious Files and Activity
- Verify and match files with MD5, SHA-1 and SHA-256 hashes
- Find misnamed files where the contents don't match their extension
- Create and compare drive signatures to identify differences
- Timeline viewer provides a visual representation of system activity over time
- File viewer that can display streams, hex, text, images and meta data
- Email viewer that can display messages directly from the archive
- Registry viewer to allow easy access to Windows registry hive files
- File system browser for explorer-like navigation of supported file systems on physical drives, volumes and images
- Raw disk viewer to navigate and search through the raw disk bytes on physical drives, volumes and images
- Web browser to browse and capture online content for offline evidence management
- ThumbCache viewer to browse the Windows thumbnail cache database for evidence of images/files that may have once been in the system
- SQLite database browser to view the and analyze the contents of SQLite database files
- ESEDB viewer to view and analyze the contents of ESE DB (.edb) database files, a common storage format used by various Microsoft applications
- Prefetch viewer to identify the time and frequency of applications that been running on the system, and thus recorded by the O/S's Prefetcher
- Plist viewer to view the contents of Plist files commonly used by MacOS, OSX, and iOS to store settings
- $UsnJrnl viewer to view the entries stored in the USN Journal which is used by NTFS to track changes to the volume

Home Page -
Download link:
rapidgator_net: http://rapidgator.net/file/a2be8a75dc5108a5514189b2f6d703d2/unr0g.PassMark.OSForensics.Professional.5.1.Build.1002.Portable.rar.html nitroflare_com: http://nitroflare.com/view/2D41FFD1C9651DE/unr0g.PassMark.OSForensics.Professional.5.1.Build.1002.Portable.rar uploadgig_com: https://uploadgig.com/file/download/663e748Bbaef27ba/unr0g.PassMark.OSForensics.Professional.5.1.Build.1002.Portable.rar uploaded_net: http://uploaded.net/file/vlv5loqn/unr0g.PassMark.OSForensics.Professional.5.1.Build.1002.Portable.rar
Links are Interchangeable - No Password - Single Extraction
Reply With Quote

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

All times are GMT. The time now is 02:07 PM.
Copyright 2014, PowerShare.