Data Forensics Tools

Forensic Magicube
Model: MagiQ-2 Forensic MagiCube (MagiQ-2) is an all-in-one solution for scene digital investigations. It provides powerful support for performing hard drive duplication, forensic analysis, and live OS emulation. It also allows remote duplication through networks. Special Features: Integrated computer forensic suite - an all-in-one toolbox!




Description

Forensic MagiCube is an all-in-one solution for scene digital investigations. In addition to its compelling appearance and portable design, the Forensic MagiCube provides powerful support for investigators to perform hard drive duplication, forensic analysis, and live OS emulation. It also allows remote duplication through networks. It makes scene digital investigations simpler and easier.

Technical Info

Tower with below main configuration:

Item Specification
Product Name Forensic Magicube
Model MagiQ-2
Software Duplicator software; Forensics Analysis Software (optional)
Source SATA/SAS x 2; IDE x 1, USB x 1
Target SATA/SAS x 2
OS Windows 7 Ultimate 64-bit Embedded Version
CPU Intel i7 3720-QM
MEM 16GB
Hard Drive 500GB 7200rpm Seagate Hybrid Hard Drive
Dimension (L * W * H) 310 x 310 x 90 mm
Package Dimension 600 x 220 x 600 mm
Weight 4.5KG (total weight with package: 18.7KG)
Voltage Input DC 12V
Environmental Temperature 0~40℃
Power 150w, 40.5w for standby
Specifications are subject to change without notice


Features

Hard Drive Duplication
• 1-to-1, 1-to-2, 2-to-2 disk duplication & imaging
• IDE, SATA, SAS, USB supported
• Duplication speed up to 11GB/min
• Keyword searching during duplication
• Acquisition in HPA/DCO protected area
• Support MD5 and SHA-1 hashing during duplication
• Remote Duplication speed up to 2.5GB/min via Gigabit NIC

Forensic Analysis
• Quick and automated forensic analysis
• Shortcut preview on evidence
• Windows artifact: Analyze USB history, user accessory history, I browser history information. Also support Fetion, AliIM Trade Maager, SKYPE, MSN chat history analysis, and can quickly recover deleted mails on Foxmail and Outlook Express

Virtual Emulation
• Virtual Emulation software can be used to launch the target OS. Investigators can have a direct view on the suspect computer
• Dynamic emulation is also a good solution for mal-ware / website / database analysis
• Acquire saved passwords (dial-up, MSN messenger, browser, PSSP) on emulated computer
• Skip login password to emulate suspect OS
• Virtual Emulation mounted raw, 001, or E01 image files and physical disk with write-blocker

Back