Hello, we are looking for a product that supports Windows 10 systems. The product would need to be able to capture a forensic image over the network and have the capabilities to do forensic analysis on the image file. Please let me know if more information is needed. Thanks in advanced for the recommendations.
Bump D D
I have no association directly nor indirectly with Passmark, but Passmark's OSForensics tool should meet your requirements
https://
I will check them out. Thank you!
Hello, we are looking for a product that supports Windows 10 systems. The product would need to be able to capture a forensic image over the network and have the capabilities to do forensic analysis on the image file. Please let me know if more information is needed. Thanks in advanced for the recommendations.
Belkasoft can do it.
Hello, we are looking for a product that supports Windows 10 systems. The product would need to be able to capture a forensic image over the network and have the capabilities to do forensic analysis on the image file. Please let me know if more information is needed. Thanks in advanced for the recommendations.
Belkasoft can do it.
Indeed, with v.9.5 Belkasoft Evidence Center supports remote acquisition. Win 10 and image analysis are supported for a long time already.
Feel free to request a trial at https://
Indeed, with v.9.5 Belkasoft Evidence Center supports remote acquisition. Win 10 and image analysis are supported for a long time already.
With or without the prior installation of an agent that might require a reboot?
Indeed, with v.9.5 Belkasoft Evidence Center supports remote acquisition. Win 10 and image analysis are supported for a long time already.
With or without the prior installation of an agent that might require a reboot?
The agent does not have to be installed (it is portable). It should be only run - no reboot will be required.
EnCase 8 can also be used to preview and acquire across a network connection.
If you use the direct agent (tools > Create Direct Agent), and place it onto a USB thumb drive, it can be launched directly from an administrator command prompt (no reboot should be required) on the target system.
You may need to place an exception in any firewall (or disable the firewall).
Regards
Thanks all very much!! I will reach out to each vendor to learn more and get a quote.