PassMark OSForensics Professional 3.3 Build 1003
OSForensics allows you to identify suspicious files and activity with hash matching, drive signature comparisons, e-mails, memory and binary data.
It lets you extract forensic evidence from computers quickly with advanced file searching and indexing and enables this data to be managed effectively.
Features:
- Discover Forensic Evidence Faster
- Identify Suspicious Files and Activity
- Manage Your Digital Investigation
- Import and export of hash sets
- Customizable system information gathering
- No limts on the amount of cases being managed through OSForensics
- Restoration of multiple deleted files in one operation
- List and search for alternate file streams
- Sort image files by colour
- Disk indexing and searching not restricted to a fixed number of files
- No watermark on web captures
- Multi-core acceleration for file decryption
- Customizable System Information Gathering
- View NTFS directory $I30 entries to identify potential hidden/deleted files
Changelog:
v3.3.1003 (2016-04-06):
-
Email Viewer
- Fixed stack overflow crash bug when saving MSG attachment with multiple levels of nesting
-
File Indexer
- New Zoom indexer build, fixed a crash bug for nested MSG files within PST files
v3.3.1002 (2016-03-23):
-
Deleted Files - FileCarving
- Fixed Crash. TIF file format has internal pointers to location within the file, when these pointer contains a corrupted/invalid value, it would possibly cause OSForensics to crash.
- Added slider to configuration to allow selection of start and end percent/location of drive to carve.
- Fixed possible crash when searching for HFS+ deleted files.
-
File Indexer
- New Zoom build, fixed issues with not starting indexing on HFS image with "Invalid folder" errors.
-
Misc
- Fixed retrieving file attributes on non-ntfs file systems
- Fixed possible crash when access HFS+ filesystem
- Added detection of file system for MBR partitions due to possible differences in reported partition type and actual file system
v3.3.1001 (2016-02-08):
-
Deleted Files Search
- File Carving, naming of recovered carved files has been changed to "Carved (type) file (Sector Location in HEX).extention" e.g. Carved 'jpg' file 0x00001F2B.jpg
-
File name search
- Fixed a bug that was preventing sort by foreground/background colour working correctly on results when OSForensics was using direct access (eg direct access of an image file)
-
Hash Sets
- Fixed a crash when first trying to open the hash sets tab
-
Misc
- Some help file updates
Homepage: http://www.osforensics.com
Changelog: http://www.osforensics.com/whatsnew.html
Release Date: 2016-04-06
OS: Windows
Language: English
Download Page: http://www.osforensics.com/download.html
DOWNLOAD:
==============================
Installer (52.08 MB): http://www.osforensics.com/downloads/osf.exe
Note: no medicine available for now.