Digital Forensics

Knowledge of an individuals digital footprint has become one of the greatest commodities in the modern market, and is often the most valuable body of evidence within the scope of an investigation. Analyzed properly, it can produce a breathtakingly detailed picture of an individuals activities.

Due to legal regulations concerning the chain of custody, collection and processing of digital evidence is a process that must be done by trained digital forensics experts. Even a preliminary analysis or attempt to clone the drive without specialized hardware and software can result in the damage to the integrity of crucial evidence, potentially leading to inadmissibility. The best course of action when dealing with a forensic investigation scenario is to leave the device in the state it was found. It should be kept powered on if it was so to preserve evidence contained in the RAM, except in the event of suspected malware infection, in which case the machine should be powered off or at very least quarantined from sensitive networks.

Forensic analysis is available for devices running both Desktop and Mobile operating systems. Stonecutter Investigations can collect and perform targeted or complete analysis of digital evidence and produce a forensic report which is easily digestible by lawyers performing eDiscovery. Some examples of the data that can be included in a forensic report:

  • System Timeline Analysis

  • Location Timeline Mapping

  • Filesystem\Registry Analysis

  • Internet History Analysis

  • Malware Detection and Identification

  • Removable Storage History

  • Deleted File Detection/Recovery

Visit our Contact Page to schedule a free initial consultation.