Passware Kit Forensic

The world leader in encrypted electronic evidence discovery and decryption

The complete encrypted electronic evidence discovery solution

Passware Kit Forensic is the complete encrypted electronic evidence discovery solution that reports and decrypts all password-protected items on a computer. The software recognizes 280+ file types and works in batch mode recovering passwords.

Password recovery for 280+ file types

MS Office, PDF, Zip and RAR, QuickBooks, FileMaker, Lotus Notes, Bitcoin wallets, Apple iTunes Backup, Mac OS X Keychain, password managers, and many other popular applications.

Live memory analysis

Analyzes live memory images, hibernation files and extracts encryption keys for FileVault2, TrueCrypt, VeraCrypt, BitLocker, logins for Windows & Mac accounts from memory images and hibernation files.

Cloud data acquisition

Acquires backups and data from cloud services (Apple iCloud, MS OneDrive, and Dropbox). Extracts passwords from iCloud keychains.

Mobile forensics

Recovers passwords for Apple iPhone/iPad and Android backups as well as Android images and extracts data from images on Windows phones. Integrated with Oxygen Forensic Suite.

Mac version Beta

In addition to all the key features of a Windows version, Passware Kit Forensic for Mac provides access to APFS disks from Mac computers with Apple T2 chip.

Intelligent detection

Detects all encrypted files and hard disk images and reports the type of encryption and the complexity of the decryption.

Hardware acceleration

Accelerated password recovery with multiple computers, NVIDIA and AMD GPUs, Decryptum, and Rainbow Tables.

Automatic updates

Optional automatic software and agents updates with one year of Software Maintenance and Support (SMS) subscription.

Passware Kit agents

Support for distributed password recovery for Windows, Linux, and Amazon EC2. The Linux version runs a portable Passware Kit Agent from a bootable Linux USB drive.

Decryption of FDE

Decrypts or recovers passwords for BitLocker, FileVault2, APFS, TrueCrypt, VeraCrypt, LUKS, McAfee, Apple DMG, Symantec and PGP disk images.

Detect encrypted files and containers

Find all encrypted or password-protected documents, archives, and other files. Sort by decryption complexity. Passware Kit Forensic detects 280+ file types.

Extract encryption keys and passwords from memory images

Quickly scan memory images and hibernation files. Extract encryption keys for FileVault2, TrueCrypt, VeraCrypt, and BitLocker for instant decryption of disks and containers. Build password dictionaries or extract account passwords for Windows and Mac.

Use hardware acceleration and distributed password recovery

Increase password recovery speed up to 400 times by using a single GPU (Graphics Processing Unit) card, and up to 12,000 times by using a single Decryptum PR 2080TI-S/12 4U unit. Distribute password recovery tasks over a network of Windows or Linux computers, as well as Amazon EC2, for linear scalability. For even higher performance use Decryptum, our ultra-compact liquid-cooled GPU accelerated devices - world's fastest scalable turn-key decryption solution for password recovery.

Hardware Acceleration of Password Recovery Attacks

File Type Encryption CPU Speed
i5-4570
NVIDIA Speed
RTX 2080 Ti
Decryptum Speed
PR 2080TI-S/12 4U
MS Office 2013+ AES-256 78 23,458 285,000
RAR 5.x AES-256 98 91,542 1,205,000
macOS / FileVault2 / APFS AES-256 53 17,207 210,000
Apple iTunes Backup / iOS 10.x+ AES-256 <1 307 4,000
MS Windows / BitLocker BitLocker 7 3,000 40,000
(passwords/second)

Network Distributed Password Recovery: Passware Kit Agent

Passware Kit Agent is a network distributed password recovery worker for Passware Kit Forensic. It runs on Windows (64-bit only), Linux (64-bit only), and Amazon EC2, and has linear performance scalability. Each computer running Passware Kit Agent simultaneously supports multiple CPUs, GPUs, and TPR accelerators. Passware Kit Forensic comes with 5 agents included with ability to purchase more separately as needed.

Passware Kit Editions

Kit Basic Kit Standard Kit Standard Plus Kit Business Kit Forensic
File types 50+ 80+ 130+ 250+ 280+
Microsoft Word
Microsoft Excel
Microsoft PowerPoint
OpenOffice Documents
Local Administrator on workstation
Other local accounts
Server accounts
Microsoft Live ID accounts
Domain Administrator
Archives (.zip, .7z, .rar, .exe)
PDF
MS Outlook (PST, email accounts)
MS Access
VBA projects (MS Access, Word, PowerPoint, Excel)
QuickBooks databases
FileMaker
APFS
Apple DMG
BitLocker
DriveCrypt
FileVault2
LUKS disk images
McAfee Drive Encryption
PGP
Symantec Endpoint Encryption
TrueCrypt
VeraCrypt
Android backups
Android physical images
Dropbox data
iCloud keychain extraction
iOS iCloud backups
iOS iCloud photo streams
iTunes mobile backup
MS OneDrive data
Bitcoin Wallets
Password Exchange
KeePass
1Password
LastPass
Dictionary Manager
Mac version
SMS Subscription
Mac keychain files
Windows/Unix/Mac hashes
160 other file types supported
Password recovery for OS user accounts and websites
Authentication data extraction for iCloud, MS OneDrive, etc.
Firewire memory imaging tool
Decryption of hard disk images
Support for distributed and Amazon cloud password recovery
Passware Kit Agents included 0 5
Automatic updates for the Server and the Agents
Batch files processing
Portable version
Automatic software updates ? 1 year included, optional subscription 1 year included, optional subscription
Price $49 $79 $195 $875 $1,095

Request Passware Kit Forensic Demo

Thank you for your interest in Passware Kit Forensic Demo. Please complete the form below and we will email you the download link.