Belkasoft Evidence Center Fixed license (Single Computer – no dongle)


Belkasoft Evidence Center makes it easy for an investigator to search, analyze, store and share digital evidence found on the hard drive or the computer’s volatile memory. The toolkit will extract digital evidence from multiple sources by analyzing hard drives, volatile memory dumps, iOS, Blackberry and Android backups, UFED and chip-off dumps. Evidence Center will help investigators quickly locate and analyze information found in social network remnants, instant messenger logs, internet browser histories, mailboxes of popular email clients, peer-to-peer data, multi-player game chats, office documents, pictures, videos, encrypted files, mobile backups, system and registry files.

Fixed license and 1 year of support and updates

Categories: ,


Belkasoft Evidence Center makes it easy for an investigator to acquire, search, analyze, store and share digital evidence found inside computer and mobile devices. The toolkit will quickly extract digital evidence from multiple sources by analyzing hard drives, drive images, memory dumps, iOS, Blackberry and Android backups, UFED, JTAG and chip-off dumps. Evidence Center will automatically analyze the data source and lay out the most forensically important artifacts for investigator to review, examine more closely or add to report.

Comprehensive examination

Discovers more than 700 types of artifacts, including over 100 mobile applications, all major document formats, browsers, email clients, dozens of picture and video formats, instant messengers, social networks, system and registry files, P2P and file transfer tools, etc. Extracts data from all major operating systems, both computer and mobile: Windows, Linux, MacOS X, iOS, Android, Windows Phone, Blackberry.

Less missed evidence

Looks for hidden and encrypted information, searches in unusual places, carves deleted and damaged data and examines files in little-known formats to discover more evidence than ever. The search includes unallocated and slack space, $MFT, $Log, Volume Shadow Copy and other special and little known areas of operating systems.

Blazing fast operation

The product allows you to perform evidence search faster than most tools as it does not index every single file found on the data source, instead searching for the most forensically significant types of artifacts. Efficient usage of СPU adds to speediness of processing, as does the code written by our team of highly qualified specialists in data analysis.

Fair price

Belkasoft Evidence Center offers the broadest set of tools and features for its price compared to other forensic software. All major analytical capabilities are present even in the most affordable versions of the product. Upgrades to your license can be purchased separately with no extra charges.
 Modules available for your license:
  • Office Documents Analysis and SQLite Viewer – $299.00 ($89.00 Renewal Price)
  • Mobile Device Analysis – $399 ($119.00 Renewal Price)
  • File System Explorer – $499 ($149.00 Renewal Price)
  • Photo Forgery Detection Module (powered by SMDTP) – $999 ($299.00 Renewal Price)
  • Decryption Module (powered by Passware) – $1,099 ($549.00 Renewal Price)
Flexible licensing. Usable in the field

The most affordable license is designed to run just on one computer. Floating license is the definition of “value for money” – one license that comes with a USB dongle (additional $299.00 + $99.00 delivery) and allows to run the product on multiple machines. Portable edition can be plugged into any PC, laptop or desktop, with no installation or configuration required.

  • Mobile and Computer device examination.Supporting all major desktop and mobile operating systems, Belkasoft Evidence Center is suitable for mobile and computer forensics. It can parse real and logical drives and drive images, virtual machines, mobile device backups, UFED images, JTAG and chip-off dumps.
  • Smart and Comprehensive Analysis.The product looks everywhere on the device completely automatically and can successfully identify over 700 types of digital artifacts. Convenient Evidence Search feature helps to narrow down the findings using filters, pre-defined search, or other options.
  • Powerful Carving.Data carving allows to locate evidence that was deleted, destroyed, or never stored on the hard drive at all (page file, hibernation file, RAM contents). Besides, advanced carving mode called BelkaCarving™ is available, making it possible to reconstruct fragmented chunks into contiguous pieces of information that would otherwise not be accessible at all.
  • Native SQLite Parsing.Recovers corrupted and incomplete SQLite databases, restores deleted records and cleared history files. Prosesses freelists, write-ahead logs and journal files, and SQLite unallocated space.
  • Live RAM Analysis.Evidence Center can extract potentially crucial information from volatile memory, such as: in-private browsing and cleared browser histories, online chats and social networks, cloud service usage history, and much more. Belkasoft Live RAM Capturer is a powerful tool for creating memory dumps, and it is complimentary.
  • Handy Built-in Tools.PList, Registry, and SQLite viewers allow you to work more thoroughly with particular types of data and find even more evidence than automatic search was able to discover.
  • Low-level Investigations.Equipped with File System Explorer, Hex Viewer, and Type Converter, Belkasoft Evidence Center will allow you to perform deep examination of the contents of files and folders on the device.
  • Extendable with BelkaScript.Free scripting module allows user to write their own custom scripts in order to automate some of the routine and further extend the product’s functionality.