Download & Installs the PST Forensics Tool. When You run the software, it came up with two option
Click on the Scan File Option Present in the navigation bar to scan and load Outlook Data file. Select the Mode to Browse the PST file from local Storage
After the completion of scanning process, PST forensics tool load the file in recursive manner. Click on the email to analyze it in different preview modes like Hex View, Properties View, Mime View, HTML View and much more view are there
If you want to search for specific emails then click on Search Option then a wide search menu with multiple search option opens. There are many logical operators are available to refine or narrowing your search result such as AND, OR, NOT. You can also add criteria to your search like Subject, To, From, Priority etc. Click on search button to proceed.
When the search process completes then the email with given keywords get listed. There option available to save the search result for further reference.
When you are done with analysing and searching of PST file then PST Forensic Tool provides the functionality to export Outlook pst file in pdf file format which is the most desirable and preferred file format for legal purposes
Microsoft Outlook is an email client used to send and receive emails. Apart from email system it also includes a calendar, task manager, contact manager, note taking, journal and web browsing.MS Outlook Stores all of its data in files or folder and these files are stored in files storage system termed as Personal Storage table or PST. These files are stored on local storage when you are using the desktop-based outlook application configured using POP3 settings.The PST file includes the entire user profile data such as collection of email message exchanged using the outlook account with their respective contacts, calendars entries, task etc.
With the advancement in technology, there is the sudden change in the lifestyle of people who have more access to such kind extraordinary technology. Such people always tries to find the different ways “How can they utilize the technology to do crime” But they do not know that using the technology for crime left footprints if actually, the crime has done. Similarly, if someone uses the outlook to for same then it stores the emails and attachments in PST file. By analyzing you can easily be carved out the information from the pst file.
PST forensic Tool is the perfect tool to renders the management of an assortment of PST file forensics cases. Examiners can create separate collections of multiple suspect PST files for examination. The analysis is made organized and faster with the provision to open a collection to traverse the emails stored within a PST. It is necessary to minutely study artifacts for retrieving evidence. 7+ views offered with this platform come in great use. Details of PST email like; hexadecimal structure, HTML layout, header info, email server path, etc., is expertly acquirable with the offered views that greatly assist in the further investigation. The procedure of looking for evidence in an assortment of indefinite emails is streamlined by the application via the search feature. The search feature offers general & regular expression based search type to look for information looked for in both emails & attachments using operators & criteria to detail the search.
No matter how much techniques we are equipped with, an investigation requires applications to simplify & fasten the process. And this PST File Forensics Tool did make it a lot convenient as well as organized for team to spot evidence worthy emails during Outlook email forensics done on a bulk of files.
Rea Mays, Sr. Investigator
Microsoft Outlook email forensics was my first real-time investigation project I had been assigned with. Usage of this application during Outlook email forensics proved majorly helpful as searches, management, spotting, listing, and analysis within multiple PST files was just a matter of few clicks.
Chang Hidalgo, Investigation Trainee