Aller au contenu
100% local • Zero install • Sensitive environments

ForenShield Client
Windows Forensic Software

The sovereign forensic software for CSIRT, CERT and SOC professionals. 100% local, zero install, zero trace.

Fast, Autonomous Investigation

ForenShield is a portable executable built for sensitive environments. It lets incident response teams (CSIRT/CERT) collect, analyze and report digital evidence in record time, with no prior installation.

  • Extreme PerformanceFull analysis of a Windows system in under 15 minutes.
  • Zero FootprintRuns entirely in RAM, without altering the evidence disk.
  • Automatic ReportingInstant generation of an interactive HTML report and a CSV timeline.

Coming soon. Leave your email to be notified early.

ForenShield Client interface

Technical Features

Powerful Features, Instantly Accessible

ForenShield brings together all the essential digital investigation tools in a single executable.

Live Memory Analysis

Fast RAM capture and analysis.

Disk Dump

Secure bit-for-bit cloning.

IOC Detection

Search for known compromise indicators.

CSV Timeline

Chronological consolidation of events.

Hardening Score

System security assessment.

LNK Links

Decode Windows shortcuts.

Browser History

Visualize web activity.

Plaintext Passwords

Search for exposed credentials.

Unencrypted Files

Detect unsecured transit files.

Host Isolation

Network blocking for secure analysis.

Common Use Cases

Incident Triage

Quickly assess a security alert on a user's workstation without tying up the machine for days.

Threat Hunting

Proactively scan your fleet for dormant indicators of compromise (IOCs).

Compliance Audit

Check the application of security policies (passwords, encryption, updates) in one click.

Plans

Pricing & Plans

Choose the plan that fits your team and your digital investigation needs.

Trial

Free

Evaluation version to test core features in a secure environment.

  • Local analysis
  • HTML report
  • Community support

Standard

Custom quote

A tailored offer for CSIRT, CERT and demanding investigation teams.

  • User license
  • Updates included
  • Priority assistance

Enterprise

Bespoke

A turnkey solution with integration, audit and training for large organizations.

  • Dedicated deployment
  • 24/7 support
  • Advanced training

Frequently Asked Questions

What is forensic software?

Forensic software is a digital investigation tool used to collect, analyze and preserve digital evidence. ForenShield Client is forensic software for Windows that analyzes live memory, running processes, network connections and system artifacts without altering the investigation environment.

What are the main digital forensics software tools?

The most widely used forensic tools include Autopsy (open-source disk analysis), FTK Imager (disk image acquisition), Volatility (memory analysis), Wireshark (network analysis) and ForenShield Client (an all-in-one portable solution for Windows). ForenShield stands out for running with no installation and automatically generating HTML reports.

What is the definition of computer forensics?

Computer forensics is the branch of cybersecurity dedicated to identifying, collecting, preserving and analyzing digital evidence. It is applied during security incidents, legal investigations or compliance audits. Forensic software like ForenShield automates these steps on Windows in under 15 minutes.

Is ForenShield free forensic software?

Yes, ForenShield Client offers a free trial version including the essential forensic features: system collection, interactive HTML report and CSV timeline. Professional Standard and Enterprise plans are available on request for CSIRT, CERT and SOC teams.

How do I run a forensic analysis on Windows with ForenShield?

Download ForenShield Client (no installation required), run it on the system to analyze from a USB drive or over the network, and the software automatically collects live memory, running processes, network connections and system artifacts. An interactive HTML report and a CSV timeline are generated in under 15 minutes.

Trusted by the community

"The tool my digital first-aid kit was missing. A must-have for any SOC/CERT analyst."

T

Thomas R.

CERT Lead

"Automatic timeline generation saves us precious time when writing reports."

L

Léa D.

Forensics Consultant

"Finally a reliable French solution that doesn't require sending data to the cloud."