ForenShield Client
Windows Forensic Software
The sovereign forensic software for CSIRT, CERT and SOC professionals. 100% local, zero install, zero trace.
Fast, Autonomous Investigation
ForenShield is a portable executable built for sensitive environments. It lets incident response teams (CSIRT/CERT) collect, analyze and report digital evidence in record time, with no prior installation.
- Extreme PerformanceFull analysis of a Windows system in under 15 minutes.
- Zero FootprintRuns entirely in RAM, without altering the evidence disk.
- Automatic ReportingInstant generation of an interactive HTML report and a CSV timeline.
Coming soon. Leave your email to be notified early.
Technical Features
Powerful Features, Instantly Accessible
ForenShield brings together all the essential digital investigation tools in a single executable.
Live Memory Analysis
Fast RAM capture and analysis.
Disk Dump
Secure bit-for-bit cloning.
IOC Detection
Search for known compromise indicators.
CSV Timeline
Chronological consolidation of events.
Hardening Score
System security assessment.
LNK Links
Decode Windows shortcuts.
Browser History
Visualize web activity.
Plaintext Passwords
Search for exposed credentials.
Unencrypted Files
Detect unsecured transit files.
Host Isolation
Network blocking for secure analysis.
Common Use Cases
Incident Triage
Quickly assess a security alert on a user's workstation without tying up the machine for days.
Threat Hunting
Proactively scan your fleet for dormant indicators of compromise (IOCs).
Compliance Audit
Check the application of security policies (passwords, encryption, updates) in one click.
Plans
Pricing & Plans
Choose the plan that fits your team and your digital investigation needs.
Trial
Free
Evaluation version to test core features in a secure environment.
- Local analysis
- HTML report
- Community support
Standard
Custom quote
A tailored offer for CSIRT, CERT and demanding investigation teams.
- User license
- Updates included
- Priority assistance
Enterprise
Bespoke
A turnkey solution with integration, audit and training for large organizations.
- Dedicated deployment
- 24/7 support
- Advanced training
Frequently Asked Questions
What is forensic software?
Forensic software is a digital investigation tool used to collect, analyze and preserve digital evidence. ForenShield Client is forensic software for Windows that analyzes live memory, running processes, network connections and system artifacts without altering the investigation environment.
What are the main digital forensics software tools?
The most widely used forensic tools include Autopsy (open-source disk analysis), FTK Imager (disk image acquisition), Volatility (memory analysis), Wireshark (network analysis) and ForenShield Client (an all-in-one portable solution for Windows). ForenShield stands out for running with no installation and automatically generating HTML reports.
What is the definition of computer forensics?
Computer forensics is the branch of cybersecurity dedicated to identifying, collecting, preserving and analyzing digital evidence. It is applied during security incidents, legal investigations or compliance audits. Forensic software like ForenShield automates these steps on Windows in under 15 minutes.
Is ForenShield free forensic software?
Yes, ForenShield Client offers a free trial version including the essential forensic features: system collection, interactive HTML report and CSV timeline. Professional Standard and Enterprise plans are available on request for CSIRT, CERT and SOC teams.
How do I run a forensic analysis on Windows with ForenShield?
Download ForenShield Client (no installation required), run it on the system to analyze from a USB drive or over the network, and the software automatically collects live memory, running processes, network connections and system artifacts. An interactive HTML report and a CSV timeline are generated in under 15 minutes.
Trusted by the community
"The tool my digital first-aid kit was missing. A must-have for any SOC/CERT analyst."
Thomas R.
CERT Lead
"Automatic timeline generation saves us precious time when writing reports."
Léa D.
Forensics Consultant
"Finally a reliable French solution that doesn't require sending data to the cloud."