Overview

FEX-LAB™

FEX-LAB™ automates forensic processing to maximize efficiency in labs of any size, from desktops to enterprise virtualization. It enables 24/7 operations and immediate evidence identification through scalable, customizable workflows.

  • Scalable: desktop → enterprise
  • Automates forensic tasks 24/7
  • Customizable templates & reports
  • Pre-process FEX cases for quick evidence
  • Artifact extraction, email analysis
  • Exports: folders, files, L01
  • Hash match & image verification
  • Indexing, keyword search, random sampling
  • Report generation

Key Features

Software features include:

  • Artifact Extraction: Extracts digital artifacts from forensic images.
  • Email Search and Analysis: Facilitates searching and analyzing email data.
  • Export Options: Allows exporting folders, files, and creating L01 images.
  • Hash Matching and Image Verification: Verifies data integrity through hash matching.
  • Indexing and Keyword Search: Enables efficient data retrieval through indexing and keyword searches.
  • Report Generation: Generates comprehensive reports on forensic findings.
  • Running Scripts and Filters: Supports custom scripts and filters for tailored processing.
  • Triage: Assists in prioritizing and managing forensic cases.

Technical

INSTALLATION – OVERVIEW

RECOMMENDED HARDWARE CONFIGURATION

FEX-LAB runs on a wide variety of configurations, including desktops, servers, and cloud platforms
(e.g., AWS). Processing agents can be run as:

  • Local agents (one agent per core of on the FEX-LAB Server).
  • Remote agents (one agent per core on a remote computer).
  • VMWare agents (local or remote).
  • Docker agents (local or remote).
  • Any combination of the above.

A process agent runs on a computer core. As a general rule, the maximum number of processing agents is the machine core count minus four (reserved for use by the Operating System).

Network Access 10GBE or above network
RAM 64 GB or above
Data Drive Fast read access (e.g., SSD, RAID)
Output Drive Fast write access (e.g., SSD, RAID). For large output jobs (e.g., creating L01s, exporting files), a separate output drive is recommended.
Operating System Windows 10/11, or Server 2019/2022 for high volume processing

Screen Shots

See other Get Data Products

GetData Forensics provide cutting edge software and solutions to reduce forensic backlogs, streamline digital investigations and maximize results.

GetDataForensics_ProductTiles2

FEX CLI™

The Forensic Explorer Command Line (FEX CLI) is a high-performance forensic data processing engine designed for digital forensics...

Learn More
About FEX Cloud Capture™ (free)

FEX Cloud Capture

About FEX Cloud Capture™ (free) FEX Cloud Capture™ is a software tool for the acquisition of data stored on...

Learn More
Free

FEX Imager™ (free)

This forensic imaging tool captures bit-level images with full hash verification (MD5, SHA1, SHA256) from physical drives, logical...

Learn More