- Load Evidence from 80+ Platforms in Various File Formats
- Allows importing email data from a wide array of sources, including various desktop email clients, cloud platforms, offline mail clients, disk images, and even messenger databases (e.g., Skype DB files for chat/call data).
- 25+ Email File Format Support
- Processes and analyzes an extensive list of email formats like PST, OST, EML, MSG, MBOX, NSF, EDB, OLM, and supports webmail servers based on IMAP for comprehensive processing.
- 750+ MIME Type Support
- Ensures compatibility with a vast range of email content types and structures.
- Integration of Disk Image
- Can directly load disk image files (like E01 and DD) to process mail containers within them.
- Scan & Add Data Files with OCR
- Scans added email evidence and uses advanced Optical Character Recognition (OCR) to extract text and keywords from image content and attachments.
- Data Preview & Analysis
- Multiple Preview Options
- Provides various views for examining emails, including Message View, Properties View, Header View, MIME View, HTML View, RTF View, and HEX View for in-depth analysis.
- Covers Email Attachments
- Conveniently previews attachments directly within the software.
- Custom Columns
- Allows users to manage and customize columns based on parameters like subject, from, to, sent, received, size, and MD5 hash for tailored viewing.
- 360 Degree View of Email
- Offers a holistic view of email evidence in various formats.
- Header Analysis
- Provides a comprehensive option to thoroughly analyze email header details to uncover crucial metadata.
- Timeline Analysis
- Displays email frequency by year, month, and day, along with detailed timelines for specific time periods, providing a graphical representation of communication patterns.
- Link Analysis
- Generates a link map to visualize connections and relationships between multiple emails, users, and IP addresses involved in communications.
- Word Cloud Analysis
- Visually represents the most frequently discussed words in emails, with word size indicating frequency, for quick topic identification.
- Image Mapping (Geolocation)
- Tracks the location of images by extracting geolocation information (Latitude, Longitude, Altitude) if available.
- Entity Analysis
- Helps to find and analyze location-based entities (e.g., countries, states) within emails, along with their usage frequency.
- IP Analysis Technology
- Supports the analysis of IP addresses associated with various emails added as evidence.
- URL Analysis
- Features an advanced URL analysis to check the safety and reputation of URLs found in emails (available in Yearly Subscription).
- Calendar Analysis
- Ability to preview and analyze calendar data from Outlook PST/OST, Exchange EDB, and Lotus Notes NSF files, including meetings and appointments.
- Works on Corrupted/Damaged Files
- Capability to work with and recover data from corrupted or damaged email files.
- Live Exchange Mailbox Analysis
- Can analyze Live Exchange mailboxes without requiring dismounting of EDB files.
- Search & Filtering
- Search Terabytes of Email Data
- Designed to efficiently search massive volumes of email data for facts and insights.
- Extensive Search Types
- Offers various search methods including General, Fuzzy, Proximity, Wildcard, Regular Expression (Regex), and Stem searches.
- Advanced Search Filter Options
- Refines searches using Standard Filters, Tag Filters, Custodian Filters, and Keyword Filters.
- Multi-Lingual Search Option
- Allows searching evidence in multiple languages and creating distinct cases for each language.
- Powerful Search Mechanism
- Renders a robust search mechanism using various search options and logical operators.
- Custom Search Filters
- Users can create their own custom search filters based on specific scenarios.
- Quick Scan
- Provides fast initial scanning and analysis of data.
- New Search Instance
- Allows creating new search instances in separate tabs to keep activities segregated.
- Data Extraction & Reporting
- Selective Evidence Extraction
- Enables advanced filtering for selective extraction of multiple files and folders, ensuring only relevant data is exported.
- Customized Evidence Extraction
- Users can implement custom export processes with precision based on their needs.
- Multiple Extraction Formats
- Extracts email evidence in over 20 various formats, including EML, MSG, TIFF, PDF, HTML, PST, CSV, DAT, and Concordance.
- Flexible Evidence Report Formats
- Generates evidence reports in multiple universally accepted and approved formats (PDF, HTML, CSV).
- Multiple Joint Report Types
- Simplifies data management by offering various reporting formats.
- Customized Report Option
- Allows customizing reports based on bookmarks, keywords, tags, subjects, and other fields.
- Dual File Formats for Reports
- Investigation reports can be saved in both PDF and CSV file formats.
- Forensic Logs Management
- Maintains and allows review/export of forensic logs detailing activities like scanning, searching, reporting, tagging, and bookmarking.
- Save Forensics Evidence in Multiple Formats
- Preserves folder structure when saving evidence.
- Restrict Export of Privileged Emails
- Ability to mark certain emails as "Privilege" to restrict their sharing if they contain confidential information.
- Team Collaboration (MailXaminer Team Edition)
- One Case, Multiple Investigators
- Allows adding unlimited users to investigate a single case through a user-managed dashboard.
- Admin & Client Control
- Provides administrative control over cases and client-level access for team members.
- Works on Multiple Machines
- Facilitates collaborative work across different investigator workstations.
- Distributed Workload
- Enables efficient distribution of investigation tasks among team members.
- Assign Tasks Efficiently
- Includes tools for assigning and managing tasks within a team.
- Sync Case Progress in Real-Time
- Enables real-time syncing of research, uploaded files, and case progress among team members.
- Control User Permissions
- Offers granular role-based access control (RBAC), allowing full or restricted case access depending on user roles and complexity.
- Remote Team Collaboration
- Allows remote team members to work associatively on the same network to analyze and review evidence.
- Security & Compliance
- CSAM Compliant
- SysTools is committed to child safety, with MailXaminer designed to aid in the detection and investigation of Child Sexual Abuse Material (CSAM) across multiple digital platforms.
- Secure Data Handling
- Ensures data integrity is not compromised during the analysis process.
- Data Integrity (MD5/SHA1 Hash)
- Utilizes MD5 and SHA1 hash values to ensure the integrity and authenticity of digital evidence, critical for legal admissibility.
- Maintains Chain of Custody
- Automatically logs every action performed during the investigation to ensure evidence integrity for legal compliance.
- Usability & Performance
- Simple & User-Friendly Interface
- Provides operational convenience, making the software easy to use for technical and semi-technical users.
- Accuracy and Speed
- Delivers faster yet accurate output for email examination.
- Time-Saving Features
- Advanced search, quick scan, and accurate analysis features designed to save investigators time.
- Proven & Popular Choice
- Widely adopted by investigators globally, including law enforcement agencies.
- Web-Based Review Platform (for Team Edition)
- Allows external investigators to review selected evidence.
- Dashboard with Visual Representations
- Provides an intuitive dashboard with widgets for an overview of case data.
- Targeted Users & Business Value
- Law Enforcement Agencies
- Supports searching, discovering, and coordinating real-time monitoring of cases to obtain court-admissible explicit evidence.
- Legal Services
- Aids in managing, collaborating, and building strong admissible proof for eDiscovery and litigation processes.
- Evidence Examiners (Corporate)
- Helps identify and respond to company policy violations, combat infringement, and corporate espionage.
- Academic Institutions
- Suitable for educational and research purposes in digital forensics.
- Reduced Costs
- Aims to increase overall revenue by potentially cutting down on staff, specialized equipment, and training costs.