Paraben's P2 Power Pack has evolved into Paraben's P2 Command Kit with the release of P2 Commander.
Paraben's P2 Examination Process is an alternative way of thinking in computer forensics. P2 works hand-in-hand with the Paraben forensic tool line. P2 Examination Technology centers around P2 Commander and includes other specialized tools, each taking a different role in the examination. In the flow chart, you can see how each tool lessens the work-load by distributing the examination amongst different specialized tools. This allows for more data to be processed in less time.
The process is simple. Complete a bit-stream image using Forensic Replicator or other supported imaging software and then begin the "divide and conquer" concept. P2 Commander is the powerhouse behind the P2 Paradigm. Starting with indexing evidence, P2 Commander's backend database allows for faster searching and vast amounts of data to be processed in a single case. The indexing uses the forensic sorting engine to categorize the data into different preassigned categories as seen on the chart. One of those categories is FOCH - Filter Out Common Hashes. This process can eliminate 20-30% of the drive data to known files, saving hours of time for the examiner. P2 Commander also has engines for advanced analysis of e-mail (including network e-mail stores), chat logs, and supports file viewers for over 225 common file types. The P2 Command kit includes software that focuses on other areas of an examination as well. P2 eXplorer Pro allows you to virtually mount images as drives while protecting the image from being altered. Finally, DP2C (Deployable P2 Commander) is the perfect triage tool for quick collection of specific types of evidence including deleted data.