Calling us after your technical support team have looked at the computer may be too late. Call us first for free, confidential and impartial advice on how to effectively handle the situation .
One may simply think of computer crimes as someone trying to "hack" into a computer system or as crimes committed on the internet. However, once it is realized that computer storage media are really large filing cabinets with detailed, retrievable records of the activities of the user, it can be seen that computer evidence can be very important in any type investigation or inquiry.
These are just some of the reasons for Forensic Services. Data Recovery and Disklabs Forensic Services have many years of experience in the field of storage, recovering data, repairing hard disk drives and examining storage media and hardware. Data Recovery and Forensic Services can deal with clients with investigative requirements in all of the following hardware areas:
In the workplace, incidents have always happened, but now the evidence can be captured and examined on the computer.
The 3 Most Important Steps of Computer Forensic Investigations:
Whatever the case and wherever the problem, the same basic rules of computer forensic investigation must be followed:
Adhere to ACPO guidelines for digital evidence recovery , with a comprehensive auditable process
Preserve the evidence . Data stored on a computer can be destroyed or made inadmissible as evidence very easily. The single most important task is using the correct procedures to get at the data. Vital evidence may lie in deleted files or fragments of past files and, even turning the computer on can result in their permanent loss.
Never work on the original media . Once the computer or device has been identified as containing potential evidence, it must be forensically imaged in order to be examined. Specialist tools and software are used to create legally recognised exact copies of the media for analysis purposes. These copies are not the same as a normal backup. They contain an exact copy of every BIT on the disk or device.
Examinations must be repeatable . Forensic analysis is an exact science. We deal in proof, not speculation
Human Rights, international law, and protocols from the ACPO, NHTCU, ensure that our evidence gathering is of internationally approved methodologies, and presented in a ‘court ready' statement or alternatively, our “Expert Witness” services may be used.
Whether disciplining staff for misconduct or responding to a threat from outside, your organisation increasingly has to handle issues that involve evidence from computers, networks, and other electronic devices. Your existing policies and procedures may be sufficient to deal with the more traditional issues of gross misconduct but do they adequately cover the new risks and opportunities presented by the ever-changing face of technology. The incident response procedures you have in place to handle threats to Information Systems may be adequate but are they forensically sound? Can they secure the evidence you'll need quickly and without introducing risk?
Forensics - What We Do
When the objectives of the investigation have been achieved, Disklabs Forensic Services will prepare a full Investigation Report.
Covert/On-Site Evidence Gathering
Should a covert service be required, one of our technical managers will arrive On-Site and image the hard disk drive, Server, or other storage device, (out of hours – if required).
For both prosecution and defence, our expert witness service will give you a wealth of experience in interpreting evidence for the prosecution, defence, jury and judge.
Disklabs Data Recovery and Forensic services offer a password cracking service, for police forces, military organisations, corporates and private individuals.
Learn how and what to do with your personnel in matters that could end up being resolved in court. Understand the full implications of incorrect policy and procedures in evidence gathering.
Mobile Phone Data Recovery and Mobile Phone Forensics
Disklabs Data Recovery and Forensic Services is Europe's premier specialist in recovering data from mobile devices, (mobile phones and PDA's). Disklabs are able to recovery from all mobile phone types, and PDA's.
Disklabs Data Recovery and Forensic Services offer a full recovery for SMS, phonebook, pictures etc and presents all recovered data in a user friendly format.
(Click here for a list of just some of the Mobile Phone Manufacturers and Carriers we can recover data from)
Recovery from Mobile devices can include deleted texts or files, or deletion of viruses.A recent 'proof of concept' virus, the CABIR virus affects Symbian phones, (predominantly Nokia), and can spread via the Bluetooth wireless system. It is called proof of concept because although it doesn't do any harm to the mobile phone, it has indeed proved that the phone is capable of spreading a virus itself. This virus will no doubt be modified by the hackers, (black hats) that are intent on causing havoc to delete files or set bugs within the system. Phreaking may also be utilised whereby the black hats steal the identity of the genuine phone owner and the phone owner could end up paying the bills.