Professional Digital Forensics Platform

Investigate Digital Evidence
Like a Pro

Upload disk images, logical files, or forensic containers. Automatic Sleuth Kit analysis, file recovery, artifact extraction, and AI-powered reports.

Disk Analysis
File Recovery
Browser Artifacts
Timeline
AI Summary

Drop Evidence File Here

or tap to browse β€” supports disk images & logical files

E01 DD/RAW IMG ISO PDF DOCX JPG/PNG ANY FILE

evidence.dd

β€” bytes

Initializing analysis…
Preparing forensic pipeline
0%
Comprehensive Forensic Analysis
Everything you need to investigate digital evidence
Disk Image Analysis
Full Sleuth Kit integration β€” mmls, fsstat, fls, ils. Automatic partition detection and filesystem parsing.
mmlsfsstatflsils
File Recovery
Recover deleted and unallocated files using tsk_recover. Identifies deleted file artifacts and inode info.
tsk_recoverdeletedcarving
Browser Artifacts
Parse Chrome History and Firefox places.sqlite. Extract visited URLs, page titles, and visit timestamps.
ChromeFirefoxSQLite
EXIF Metadata
Extract GPS coordinates, camera serial numbers, timestamps, and software info from images via exiftool.
exiftoolGPScamera
AI Summarization
GPT-powered evidence summary highlighting key findings, suspicious activity, and actionable recommendations.
OpenAIGPTsummary
Forensic Timeline
Build MAC-time activity timelines using fls and mactime. Sort by modification, access, and creation times.
mactimeMAC-timetimeline
Keyword Search
Deep search across file names, content, browser history, metadata, and SQLite databases for any keyword.
.exe@gmailbitcoin
Interactive Report
Beautiful HTML report with image viewer, video player, document preview, and live keyword search.
HTMLpreviewfilter
Evidence Hashing
Compute MD5, SHA-1, and SHA-256 hashes for evidence integrity verification and chain of custody.
MD5SHA-256integrity