Forensic Browser for SQLite

Forensic Browser for SQLite lets you do everything without typing a single SQL query.

Category: Utilitários
Learn more about Forensic Browser for SQLite

Request a Quote

What is Forensic Browser for SQLite?

Forensic Browser for SQLite is the best browser for SQLite

Have you ever needed to create a report from a SQLite database that is not supported by your current forensic tools, or does your current forensic tool only provide a subset of the data?

Have you analyzed a SQLite database and become frustrated that a date column is displayed as just a string of non-user-friendly digits?

Want to see a blob field as an image, instead of just seeing "blob" displayed in the field? Want to create a PDF report with only a few columns in a specific order of certain users sorted by a date field?

Would you like to do this using drag-and-drop and the mouse?

Forensic Browser for SQLite lets you do (all without typing a single SQL query):

Partial and deleted records automatically retrieved from databases and associated journals/WALs

Remove duplicate records if necessary

Identify several previous database states of databases with WAL files

Split the complex blobs of Binary Plist and facebook orca2 and run queries on the resulting data

Perform a simple visual selection on some or all of the fields in a table

Perform more complex visual joins across multiple tables

Add groups, aliases, and where clauses, if necessary

See the SQL select commands resulting from the above

View the resulting table in grid form and sort and filter the results

Convert numbers to dates (Unix10/13, Windows 64-bit, NSDate/Chrome, absolute Mac and more)

Find and view images in blobs (JPG, PNG, GIF, TIF, and more.)

Import images held in the file system to associate and display in a query/report

Display a number as meaningful text (sent/received/draft, among others.)

Display latitude and longitude fields on a map

Export a selected blob or all blobs in the DB to a file

Create and integrate custom extensions

See the hexadecimal that relates to a specific record and identifies exactly where in a database/journal/WAL the record comes from

View hexadecimal view of blobs

Decode a binary list stored as a blob

Decode base64-encoded text/data

Choose which columns you want to see in the grid/report

Iteratively, go back and modify your SQL if the results are not as expected

Highlight SQL errors if you choose to create queries manually (no errors if you use drag-and-drop visual query designer)

Preview a report with custom headers/footers/formatting

Print the report in HTML/XLSX/CSV/PDF and save your SQL query with the report

Unicode support

Add different formats for dates and times in individual fields

Dynamic time zone adjustments

Find and review all SQLite databases in a folder structure

Translate IOS backup folder names

Keep a history of queries that you can revisit

Provide a case manager for frequently used queries that you can share between users

Attach and query across multiple databases

Maintain a log of actions

The browser extension is designed to:

Extract and display Kik messenger images (attachments) stored in external binary lists

Convert Facebook's geolocation fields so the browser can display a map of where a message was sent

Decode encoded message structures Tango messenger base64

Import downloaded images saved with Blackberry messenger on IOS

View the contents of Chrome cache files

Decode the usernames and IP addresses of Skype ChatSync files

Custom reporting features

Creating a report with Forensic Browser for SQLite is as simple as choosing which tables and fields you want, converting date formats, and pressing the Create Report button. Reports can be customized for layout with user-defined headers and footers, background color, landscape or portrait page orientation... Reports can be saved in HTML/XLSX/CSV.

More than just reports

Forensic Browser for SQLite can do much more than create a simple report on a table from a database. You can create more complex queries to join data from two or more tables (for example, you can show a Skype user's avatar next to each message they've created). Or, as in the example below of the Kik app, join two tables together so that the user name can be shown next to a message instead of the user ID. Alternatively, you can create a report showing only the messages among a selection of users from a Skype database or, as in the screenshot below the Skype conversations using the messages, table joined to the contacts table to show the avatar image of the author of each message.

System Requirements

Hard disk space: A minimum of 100 MB is required.

RAM: 1 GB minimum required.

Processor: Intel Pentium 1GHz or equal.

Operating system: Windows 10 / 8.1 / 8/7 / XP / Vista (32-bit and 64-bit), Windows 2012/2008/2003/2000.

You don't know what software you need or you haven't found what you were looking for?

You don't know what software you need or you haven't found what you were looking for? We have a team ready to help you choose the right software for your company.