P2 SHUTTLE FREE


?

Network Drive Mounting, Live Memory Acquisitions, and More for FREE!
Current Version: v1.3
Paraben's network forensic tools have been used for years by government and private organizations around the world. Now you can add a network forensic tool to your forensic toolbox for free. Paraben's P2 Shuttle Free is a light version of Paraben's P2 Shuttle Pro. Click here to see a screenshot.

To get your free copy of P2 Shuttle Free, go to the download page


P2 Shuttle Free Features  

Remote Disk Mounting
The ability to forensically mount any disk on a network is essential for network forensics. P2 Shuttle Free allows you to mount any disk on a network as a local drive. Once mounted, you can use any forensic tool to perform an acquisition or you can simply browse or search the drive using Windows Explorer. Please note that acquiring files or drives over a network may result in corrupted data of active files (especially e-mail archives) unless you use software designed to handle live file acquisitions such as P2 Enterprise or P2 Shuttle Pro.  
 

Real-time Live Investigation
With P2 Shuttle, it’s easy to investigate any computer on your network in a real-time. You can view processes currently running on the computer, take a full screenshot, view drivers being used, and running services. This allows you to get valuable information about the usage of the computer. Please note that P2 Enterprise gives you a much wider range of tools for live investigations such as processes monitoring, file tracking, automatic screenshot generation, and much more. 
 

 Active Memory Capture
So much can be revealed about a user's computer activities from their active memory. With P2 Shuttle Free, you can perform a forensic acquisition of active memory on any computer on a network.  
 

Multi-Machine Searching
Searching machines before starting a forensic examination can save you hours of unnecessary analysis. Imagine searching a machine to determine if it has a smoking gun before you start your exam.  
 

 Active File Browsing of E-mail, Chat, & IE History
Beyond searching, viewing live e-mail files, chat logs, or Internet history files can show you exactly what a user is doing on your network. Imagine looking at and searching through an e-mail archive even when it is open and being used. That's power beyond any other free tool that we know of.  
 

Forensic Disk Investigations
Open any disk without mounting it. You can get complete information on all files stored on a disk. This includes alternate data streams investigations, file slack investigations, and more. Please note this investigation will be completely unnoticeable on the computer being investigated. Moreover, you can view a file's contents without acquiring it.  
 

What's Not in P2 Shuttle Free?
Although P2 Shuttle Free is a powerful tool, there are features that are only available in P2 Shuttle Pro or P2 Enterprise. P2 Shuttle Free does not acquire drives or files, it does not have any reporting features, and the clip board is disabled. To take advantage of all the features of Paraben's network forensic technology, request a demo.