A wider range of email repositories are now examined as part of enhancing artifacts support. Local as well as web based email storage analysis scope is extended with the addition of eM Client, Zoho, Kerio Connect, hMailServer, MDaemon Server, Zimbra, KMail, Maildir, Dovecot and many more.
Geographical location of artifacts is demonstrated in map representation. The platform offers provision for illustration of locational information related to email server hop along with that of an image based media via map.
All case related progress or evidence can be shared by the custodians over web / on cloud with fellow investigators for review purpose. This can be accomplished via Shared Location, Mail Settings, or over Cloud.
The supported document formats available within the respective image files such as E01, DD and DMG can now be examined and analyzed. This extended support to disk image files does not impose any sort of limitation on the file size.
On the basis of filters, rules and patterns, at the time of scanning of the evidence file, the available items can be automatically tagged as per the available categories such as Spoofed Docs, Shared Links and PII number.
An advanced Grid control algorithm has been embedded in the software. This Grid control ensures enhanced and more accurate filtering of the data.
KML (Keyhole Markup Language) file format is used to save and display the geographic data Google Maps and Google Earth. The available attachments having GPS locations can be exported using "Export as KML"; and can be viewed using Google Earth.
SHA1 being developed by NSA, represents a cryptographic hash function. The latest v4.8 of MailXaminer now provides an extended support to the hash function SHA1 during analysis.
Reporting feature of the tool has now been made smarter to preview and export the reports of case, keywords, tags, bookmark etc. It is now possible to export the senders report, recipients report, domain wise report, domain wise senders report, domain wise recipients report in HTML, PDF & CSV file formats. Learn More →
Now the tool has the provision to preview and analyze the calendars of Outlook PST files, OST files, Exchange EDB mailboxes, and Lotus Notes NSF files. You can examine the meetings and appointments of the suspected user for further investigation.
We have now introduced dongle based licensing to make it easier for the investigators to run the full version of the software on multiple machines. Users only need to plugin the software attuned dongle provided to them while purchasing the tool on a machine having demo version & it will get activated as full version. Learn More →
The software is equipped with Dashboard View feature that provides feature that provides visual representation visual representation of the mailbox data being scanned. The Pie Chart and Bar Graph enable users to analyze the data from various angles. Learn More →