What do I get after running an Evidence Discovery Pack on BitFlare?
The BitFlare wizard will guide you through the process of extracting data or preserving a drive to a USB destination drive. All data will be saved in a newly created folder on the USB destination drive, named with the convention “BitFlareYYMMDD”. Inside this directory you will find • One or more Directories after by Drive Keys. Each of these directories contains data relevant to a particular hard drive analyzed. This directory contains subdirectories for Preserved Drive images, drive Table of Contents listings, visible files, deleted files, and file residue fragments extracted by EDPs. Files are stored in directories, reflecting their location on the original hard drive. In addition, this directory contains result logs in the form of spreadsheets indexing all files extracted by each EDP for quick and convenient review. • A “Logs” Directory. This directory contains encrypted logs used by SunBlock Systems for independent validation of BitFlare’s usage and data extracted. If there is any