Key Features: - Live network investigation
- Live forensic discovery and triage of simultaneous target systems
- Acquire system information
- Physical memory imaging
- Remote screen shot
- Active port mapping
- Windows
service discovery
- File
system blueprinting
- Installed
software cataloging
- Network
state and open connections
- Intelligent
file acquisition and safeguarding
- Dynamic
indexing and analysis (Memory, Registry, File System, Image, etc.)
- Dissection of recent user activities (web, messaging, applications)
- Automatic collection of most relevant and timely file
system, registry and network connectivity actions
- Structured reporting capabilities to increase investigator productivity
- Automated timestamped audit trail
| System Recommendations: - Microsoft Windows 2000, XP, Vista
- 230 MB free disk space
- 1
GB RAM
- Pentium 2 GHz
processor or better
Currently Supported
Targets:
- Microsoft Windows
XP Professional
- Microsoft
Windows 2000 Professional
- Microsoft
Windows NT4
- Microsoft Windows
Server 2003
- Microsoft Windows
Vista
License: |
|
AWARDS
|
What is LiveWire Investigator:
LiveWire Investigator arms investigators with the most up-to-date arsenal
of technologies for collecting volatile evidence from "Live" running computers and networks.
Our
suite of software tools provides investigators and examiners with the ability to map networks, assess vulnerabilities, collect
evidence directly from suspect computers and perform enterprise wide malware scans.
VIEW SCREENSHOTS >>
How it works:
Step 1: LiveDiscover™ Forensic Edition Maps networks and reports vulnerabilities
Step 2: LiveWire Investigator™ remotely logs into selected targets
Step 3:
LiveWire Investigator™ Remote Forensic Discover Module (RFMD) is pushed and is executed as a kernel level process
Step 4: The RFMD performs evidence collection operations based on user specifications
Step
5: RFMD automatically tears down and logs off target
Step 6: LiveWire Investigator™ stores
and audits all collected evidence into an investigator defined Case File
Step 7: Investigator performs
analysis and generates evidence reports