AD Triage: Forensically acquire data from live and powered down computers in the field.
AD Triage is an easy-to-use forensically sound data acquisition and extraction tool for on-scene collection from computers that are live or have been powered down . Preview the file system and target data by criteria, including keyword(s), hash, regular expression, file size, date and time, extensions, file path and illicit images. In addition, users can collect network and system information, as well as live memory. It allows you to acquire the full disk, a volume, or peripheral devices, saving data to a USB device, an external hard drive or exporting the data to a designated location on the same network.
EnCase Portable is a pocket-sized USB data collection and triage solution that leverages the powerful capabilities of EnCase. Unlike other solutions, EnCase Portable can be used by non-experts enabling scarce specialist resources to focus on case management, processing, detailed analysis, and reporting.