
Oxygen Forensic® Detective is an all-in-one forensic software platform built to extract, decode, and analyze data from multiple digital sources: mobile and IoT devices, device backups, UICC and media cards, drones, and cloud services. Oxygen Forensic® Detective can also find and extract a vast range of artifacts, system files as well as credentials from Windows, macOS, and Linux machines.
The cutting-edge and innovative technologies deployed in Oxygen Forensic® Detective include, but are not limited to, bypassing screen locks, locating passwords to encrypted backups, extracting and parsing data from secure applications and uncovering deleted data.
Furthermore, multiple extractions can be investigated in a single interface to gain a complete picture of the data. By using the integrated industry-leading analytical tools to find social connections, build timelines, and categorize images, law enforcement, corporate investigators and other authorized personnel can help make this world a safer place.
OXYGEN FORENSICS DETECTIVE FEATURES
ADVANCED PHYSICAL METHODS
Oxygen Forensic® Detective provides advanced physical extraction for Android devices based on Exynos, MTK, Kirin, Spreadtrum and Qualcomm chipsets. These methods enable lock screen bypass and require no root rights. Moreover, the software offers the ability to gain root rights and conduct a full physical extraction of Android devices with installed Android OS 7, 8, 9 and 10.
CDR ANALYSIS
The built-in Oxygen Forensic® CDR Expert allows importing and analyzing of CDR files received from mobile service providers regardless of the difference in their column formats and file layouts. The program conveniently guides the investigator through the process of call data records file importing and any field mapping that is required to convert the file into a unified format. CDR Expert then visualizes direct and indirect links between callers on a graph.
CLOUD DATA
The built-in Oxygen Forensic® Cloud Extractor acquires data from the most popular cloud services to include: WhatsApp, iCloud, Google, Microsoft, Mi Cloud, Huawei, Samsung, E-Mail (IMAP) Servers and more. Also, various social media services are supported to include but not limited to: Facebook, Twitter, Instagram, and many more. Investigators can use usernames and password combinations or tokens extracted from the mobile device to gain access to a cloud storage even when two-factor authentication is enabled on selected services.
DATA REPORTS
Oxygen Forensic® Detective enables the export of data from any section to many popular file formats including: PDF, XLSX, XML, HTML, JSON Project VIC. A report can be created to include a single device, several devices, several sections or even selected records. Reports are highly customizable to display only the data required, for any type of case. Our XML reports can be integrated into many popular analytic software platforms with our built in XML export specification documentation. Export to Relativity software is also available.
DATA SEARCH
Oxygen Forensic® software has a powerful built-in interface for data search. Searching can be conducted on all devices, at the case level and at the device level. Investigators can search data according to the information entered in the input field, by keyword lists, hashes, using regular expressions or choosing any other available method. Search is launched as a separate process so investigators are free to work with the software during the search process.
The search process can search within files to uncover data that has not been parsed, often uncovering valuable data within SQlite databases, log files, and property lists.
