Home > Line of Products ↓ >

SuperImager Plus Complete Forensic Kit for 8" T3 - i7 Edition with Dual Boot Enabled

SuperImager Plus 8"  T3 Field Forensic Complete Kit with 8"  Touchscreen color LCD display and SAS/SATA-3 and USB3.0 and i7 CPU
Rolling Carry Case with customized foam


 
Alternative Views:


SuperImager Plus 8" T3 Field Forensic Complete KIT includes the SuperImager Plus 8" T3 Forensic Field unit with Thunderbolt 3.0 port, PCIe 3.0 x4 Expansion Box, Dual Boot Linux/Win 8.1, with Virtual Drive Emulator enabled, Selective Capture of Files and folder feature, Remote Capture KIT, all in a rolling hard carry case, and includes accessories and adapters.
A complete platform for field forensic investigator. Imaging, Selective capture, Emulate, HASH, Encrypt, Erase, View, Remote Capture, Network Capture, Cellphone Extraction, Triage Data Collection, Full Forensic Analaysis

Product Code: SIK-0007-00A
Please call for pricing

Description Technical Specs Extended Information
 
    SuperImager Plus 8” T3 Forensic Field Complete Kit - i7 Edition (256GB) consists of:
    A) SuperImager Forensic 8" T3 Field Forensic Dual Boot unit - i7 Edition with Thunderbolt 3.0 port (i7 CPU, 256GB SSD, 16GB internal memory), an extremely fast Forensic Imaging device (Run HASH authentication @ 65GB/min on NVMe SSD), and a mobile forensic platform unit. Built-in with 8" Touchscreen color LCD display, 4 SAS/SATA-3 ports, 8 USB3.0 ports, 1Gigabit Ethernet port, e-SATA port, DP, Audio Ports, and Thunderbolt 3.0 port. In one read pass over the "Suspect" drive, the SuperImager application can achieve: Forensic Imaging with E01 compress, Encryption with AES256, 3 parallel HASH Authentication (MD5, SHA1, SHA2), and Saving Images to 2 external drives, external compact mobile USB3.0/eSATA TB RAID storage devices, and to a local Network. The unit supplied and pre-configured with Dual boot Linux/Windows and with Virtual Drive Emulator enabled. The application also supports Selective Capture mode where the user can select files and folder for a quick copy.
    B) Thunderbolt 3.0 to PCIE 3.0 Expansion Box with M.2 NVMe controller installed
    C) 1394 Kit - Support capture from Firewire storage devices include Mac (Include 1394 controller and 1394 cables)
    D) SCSI Kit - Supports capture data from SCSI Hard Disk Drives (include SCSI controller, cables,and adapters)
    E) Express Card Reader (Supports capture data from memory cards, Mini-PCIe adapters)
    F) NVMe complete kit (supports M.2 and 2.5" NVMe SSD)
    G) Virtual Drive Emulator option enabled
    H) Remote Capture KIT(Intel based CPU)
    I)
    Rugged and rolling IM2500i case, customized foam, with a lid organizer
    J) Essential Accessories
SuperImager Plus unit with i7 CPU, 16GB Memory, and S/W Version 1.4.52
Hash Verification/ Authentication Only (Reading Speed) Avg Speed GB/Min
Hash single drive, in a single session (Samsung 850 EVO SSD)
SHA-1 30.6
MD5 30.6
SHA-1+ MD5 30.6
Hash 2 drives in 2 separate sessions (2 Samsung 850 EVO SSD)
SHA-1 + MD5 drive 1 26.2
SHA-1 + MD5 drive 2 26.6
Hash single drive, in a single session (Interl NVMe 750)
SHA-1 65.0
SHA-1 + MD5 65.0
Wipe Drives (Write Speed) (Samsung 850EVO SSD)
Security Erase Mode 30.0
Single Pass - User Erase Mode 28.8
Forensic Imaging
100% bit by bit Imaging Samsung 850 EVO SSD to Samsung 850 EVO SSD
with SHA-1+ MD5 Hash on 28.5
DD Imaging Samsung 850 EVO SSD to Samsung 850 EVO SSD (2GB Files Chunks and NTFS)
with SHA-1 + MD5 Hash on 29.1
DD Imaging SanDisk Extreme II SSD to Samsung 850 EVO SSD 2 GB file Chunks and NTFS)
with SHA-1 + MD5 hash on 28.5
E01 Imaging Samsung 850 EVO SSD to Samsung 850 EVO SSD (2GB Files Chunks and NTFS)
with SHA-1 + MD5 Hash on 24.2
Features
    • Main Hardware Features:
    • Case: Mobile, easy to carry
    • CPU: i7
    • Display: 8" (800x600) LED back-light Touchscreen color LCD display
    • Hardware: High quality with high performing components. Some of the components are with a military grade.
    • Hardware upgrade: The unit can be upgraded at time of purchasing for additional cost, to a large internal SSD, or the memory can be upgraded to 32GB
    • OS: Linux Ubuntu 64 Bit and Win 64 bit 8.1 Professional in a dual boot
    • Writes-Block: Using “device driver” blocking mechanism based on Maxim Suhanov Mechanism (https://github.com/msuhanov/Linux-write-blocker)
    • Application Updates: The application can be easily updated via USB thumb drives and special update screen
    • Application Settings:
    • HPA/DCO Automatic Supports: The application has the ability to automatically open HPA and DCO areas, and resize the "Suspect" drive to its full native capacity, in order to capture any “hidden data” (HPA/DCO are special areas on the drive that support this feature)
    • Bad Sectors Handling: The user can select to skip bad sectors or skip a block of bad sectors, or to abort the operation when it encounters bad sectors on the "Suspect" drive
    • Ports:
    • Forensic Images Destination: The user can save Forensic Images to a local network shared folder for easy access and analysis, or save images to external USB3.0 RAID (encryption is optional) storage in a very good speed
    • Captured Storage Protocols and Interfaces: SAS, SATA, e-SATA enclosures, IDE, USB2.0, USB3.0, MMC, M.2 NGFF(PCIE or SATA base), 1394, USB3.1, Thunderbolt, and SCSI
    • Form Factors: Capture data from various form factor devices: 3.5", 2.5", ZIF, 1.8", Micro-SATA, Mini-SATA, PCIE, Mini PCIE, M.2 NGFF
    • Cross Copy from Ports and Interfaces: The user can choose to capture from one type of port with storage protocol and interface, and save the forensic Image into a different port, with different storage protocol and interface. The cross copy of data can be done between SAS/SATA/IDE/USB/SCSI/1394 interfaces
    • Application Features:
    • GUI: The application is built with large icons and is very simple and easy-to-navigate. In a few clicks, the user can set the operation, and it will be quickly up and running
    • Speed: Extremely fast
    • • Tested with HASH verification operation with SHA-1 enabled the recorded top speed was 30GB/min with Solid State Drive, and 10GB/min with 1TB WD Blue SATA-3 Hard Disk Drive
    • • Tested with Forensic Imaging operation of 1 to 2 with SHA-1 enabled the recorded sustained top speed was 29GB/min with 3 SSD of SanDisk 120GB Extreme II
    • Extreme Speeds when performing Forensic capture with E01/Ex01 formats and with full Compression:
    • • The new Linux-based SuperImager Plus application utilizes and optimizes multiple CPU cores to achieve one of the most efficient operations while performing at incredibly high speeds with E01/Ex01 compression. The application allows the user to manually select and adjust the number of threads and the level of compression used during each session
    • • Forensic data capture with Encase E01/Ex01 formats with full compression is widely used operation in the forensic industry, and generally requires a trade-off between speed, space, and the time of decompressing by the EnCase application
    • • Comparative tests show a 20% increase in speed when using the SuperImager® Plus Linux-based application over the SuperImager® Windows-based application. Tests were performed with the same hardware and the same drives (filled with 43% of random data), and the same level 9 of compression. The Linux-based application was set to use 16 compression threads
    • HASH Authentication: Simultaneously calculates on-the-fly up to 3 HASH Authentication values MD5/SHA-1/SHA-2
    • Encryption: On-the-fly AES256 encryption of the "Suspect" drive, saving the encrypted data on "Evidence" drive in 100%, DD, E01/Ex01 formats
    • Decryption: The user can perform decryption on a drive, previously encrypted by any of the SuperImager units. Alternatively, the user can use a standalone MediaClone Linux decryption utility application to perform decryption on that drive using any PC. The supplied standalone decryption utility application can be burned onto a USB flash drive that later can be used to boot the PC to the Linux utility, where the encrypted drive and a blank destination drive were attached to the PC. (The user needs to supply to the utility application the saved encryption key)
    • Forensic Images can be saved in those Formats: 100% Bit by Bit, Linux DD Format, Encase E01/Ex01 formats include options for optimized compression
    • Evidence Drive Formats: exFAT/FAT/NTFS/HFS+/EXT4
    • Log Files: The user has the ability to customize the reports and adding his company Logo (PDF/XML)
    • Drive Spanning: Supports spanning the captured data onto many “Evidence” drives, when the Evidence drives are not large enough (Also supports restore from spanned multiple drives)
    • Main application Features:
    • • Forensic Imaging Mode
    • • Forensic Restore back data to original
    • • Erase data from drives and Quick Format
    • • HASH calculation authentication and verification
    • • Virtual Drive Emulator
    • • Remote Capture (Intel based CPU)
    • Main Forensic Imaging Mode Features:
    • • Forensic Imaging Modes: Mirror Imaging bit by bit (100% or any % of the drive), DD, E01/Ex01 – with optional compression, Selective Capture(Files and Folders)
    • • HASH while capture: MD5, SHA-1, SHA-2 (all 3 can be selected simultaneously)
    • • Erase Reminder of the drive
    • Parallel operations:
    • Parallel Forensic Imaging - Multiple Session Operations: The user can run multiple efficient parallel operations since many ports are available. The user can mix different type of operations, and each operation can be set as a new independent session. An example of operations: erase data from a drive on one port, HASH verify on the second port, while forensic imaging 1 to 1 on the remaining ports. The number of sessions also depends on the CPU: i5 -4 sessions, i7- 8 sessions
    • Basic Parallel Forensic Imaging: The supported modes are:
    • Native SAS/SATA: 1 to 1, 1 to 2, 1 to 3, 2 to 2, 2 to 3. The 2 to 3 imaging mode uses
    • the e-SATA port with the need to supply external power to the e-SATA plugged device and the 1:3 imaging mode need to be configured at time of purchasing of the main unit
    • USB3.0: 1 to 1, 1 to 2, 2 to 2 and up to 4:4
    • More Ports for Forensic Imaging:
    • With the use of USB3.0 to SATA fast adapters and with the combination of e-SATA port, the unit can support up to 2 to 7 and up to 4 to 7 Forensic Imaging of SATA drives.
    • Parallel operation – Linux Elaborated:
    • Drive Detection Application Screen: All drives and storage devices that are connected to the unit will be scanned and displayed in one application screen called “The detection screen”. The user can tap on each drive to get its detailed info, as well as selecting it for the desired operation they are planning to use
    • Parallel Forensic Imaging: It depends on the number and the kind of ports that each model has. The application is very flexible in running multiple sources to multiple destinations, all in simultaneous operations. The user has the flexibility to change a role of a port from been Evidence port to be Suspect port and is not limited by the pre-assigned "Suspect" ports. The session control application screen provides the user with a very comprehensive information and control over the running sessions, including all the setting of the session, and the ability to abort the session
    • Network:
    • Network Capture: Data from network folder can be captured and saved into “Evidence” drives via iSCSI storage protocols. (SMB, NFS, CIFS)
    • Saves Forensic Images to network: Upload multiple Forensic images to a local network (DD, E01), simultaneously by using up to 8 parallel 1Gigabit/s network streams
    • Remote Capture - Capture Data from the Internal Drives of a Computer: Using USB or 1Gigabit Ethernet ports of the laptop/computer, enables capture without the needs to remove the drive from the Laptop/computer (Speed is restricted to performance of the Laptop/PC CPU and the 1Gigabit/s connection)
    • Erase and Quick Format Operation:
    • Drive Erase Protocols: DoD 5220-22M(ECE, E), Security Erase, Enhanced Security Erase, or user can define the final data filling pattern and the number of iterations (Security Erase, Enhanced Security Erase, and DoD erase protocols are NIST 800-88 compliance)
    • Quick Format: NTFS, FAT, HFS+, EXT4, and exFAT
    • Logs and Erase Certification: The application generates extensive erase log files and erase certification (option to save to NIST 800-88 format) that are easy to export to USB thumb drive
    • Unit as a Platform:
    • File Preview: Browse and preview captured data on the Internal Display
    • High Performances: As a platform, a forensic investigator can, in addition to imaging and capturing data, load and run third-party applications to analyze the captured data:
    • • Cellphone/Tablet data extraction and analysis: Cellebrite, Oxygen, BlackBag, MPE+, Paraben applications
    • • Triage Data Collection: Nuix/Encase portable applications
    • • Full computer forensic analysis: Encase, Nuix, and FTK applications
    • The units have very firm hardware that enables those said applications to run with excellent performance
    • Built in the USA: The units are built and tested in the US
    • Warranty: One-year warranty for the main unit. (does not include cables and accessories)



Accessories
USB3.0 to e-SATA Adapter at Speed of 3GBs 1.8" IDE to SATA Adapter M.2 (NGFF) SSD to SATA for MacBook Air 2012 Metal Swivel 360 Stand for 8" Field Unit
Our Price: $25.00
USB3.0 to e-SATA adapter at speed of 3Gbs. 1.8 Inch IDE to SATA adapter Metal Swivel 360 Stand for 8" Field Unit
Mac SSD 7+17 pins to SATA adapter for MacBook Pro 2012 Mini SATA(mSATA) to SATA Adapter USB3.0 MMC Card reader Macbook 2013-14 PRO/Air SSD to USB3.0 adapter supporting PCIE base SSD (12+16 type)
Our Price: $25.00
Our Price: $100.00
Mini SATA(mSATA) to SATA Adapter USB3.0 MMC reader Macbook 2013/2014 to USB3.0 adapter supports PCIE SSD
SCSI Kit support up to 2 SCSI Hard Disk Drive SATA Split Data Cable 2.5 Inch IDE to SATA Adapter Expansion Box Option
Data Acquisition or Cloning of SCSI hard drives SATA Split Data Cable 2.5 Inch IDE to SATA Adapter PCIE Expansion Box
M.2 NGFF to USB3.0 adapter supporting PCIE base SSD (B+M) not NVME Express Card Port Option for the main units Laptop Remote Access & Data Capture Kit for SuperImager units Metal Stand for 8" Field Unit
Our Price: $150.00
M.2 NGFF to USB3.0 adapter supports PCIE SSD Express card port Laptop remote capture kit with the use of SuperImager units Metal Stand for 8" Field unit
SATA Split Power Cable M.2 (NGFF) SSD to SATA III B (SATA base only) ZIF Adapter to SATA Adapter, with a Flex Cable Micro SATA to SATA Adapter
Our Price: $25.00
SATA Split Power Cable ZIF Adapter to SATA Adapter Micro SATA to SATA Adapter
IDE to SATA Adapters USB3.0 to SATA Adapters - 4 Channel Kit include power - Linux Bluetooth Keyboard & Touch Pad Combo ErgoTouch USB TouchPad
IDE to SATA Adapters USB3.0 to SATA 4-Channel kit- Linux Bluetooth Keyboard & Touch Pad Combo ErgoTouch USB TouchPad
1394 To Thunderbolt 2 Adapter Hard Case and custom foam for the 8" Field Unit External Encypted Mobile TB RAID Storage 1394A/B Dual Port Express card adapter Option
Our Price: $100.00
1394 to thunderbolt SuperImager 8" Field unit hard case and foam option 1394A/B Express card adapter

Share your knowledge of this product. Be the first to write a review »