The driver is digitally signed with a Microsoft signature, making it fully compatible with all 32-bit and 64-bit versions of Windows from The supplied RAM imaging tool operates through a custom kernel-level driver. The tool uses zero-level access to computer's volatile memory in order to create the most complete memory image. The tool extracts cryptographic keys from RAM captures, hibernation and page files or uses plain-text password or escrow keys to decrypt files and folders stored in crypto containers or mount encrypted volumes as new drive letters for instant, real-time access.Ī forensic-grade memory imaging tool is included with Elcomsoft Forensic Disk Decryptor. Instantly access data stored in encrypted BitLocker, FileVault 2, PGP, TrueCrypt and VeraCrypt containers. Elcomsoft Forensic Disk Decryptor | 41.75 MB |
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |