E3 is Easy – Efficient – Effective Don’t get caught up in tools that are unmanageable. The E3 Platform gets you processing all types of digital evidence quickly with an Easy interface, Efficient engines, and Effective workflow.

Buy Now

Computer Forensics

Smartphone Forensics

Cloud Forensics

Email Investigations

Windows Artifacts

The Power of an All-In-One Platform for Digital Forensics

The need to change around your tool based on what type of digital data you have is a thing of the past.

The E3 Forensic Platform seamlessly adds a large variety of evidence into a single interface to be able to search, parse, review and report on the digital data from most digital sources.

Smartphone Forensics

Smartphone forensics has risen to the top of the investigative pile with more and more devices being involved in activities that require an investigation. With the E3 Forensic Platform, the focus on all the aspects of the device together without having to do additional licensing makes it the optimal choice for doing a smartphone investigation.

Lock Bypass

Being able to bypass locked devices is always a hurdle with smartphone forensics. The E3 Forensic Platform allows for a bypass through multiple methods from chip dumps, rooting, and iOS exploits there are always different options when it comes to access to the latest devices.

App Analysis

Apps are always changing with the trends of the populous so being able to quickly navigate to all the Apps and where the data resides is critical. The easy to use App navigation in E3 allows you to review all the Apps their data sources and even their access rights with a few simple clicks. 

Ease in Processing

Whether it is a physical examination of a device or a quick triage image you have an interface that gives you all the details to follow to get the job done. Step by step the E3 Forensic Platform gets you to access to the data you need in mobile devices.

Getting what you need in Computer Forensics

Computer forensics focuses on bits and bytes of the file system that holds a large variety of different valuable pieces of data that can be the key to your investigation. From the FAT files systems of old to modern file systems like Xboxes, the E3 Forensic Platform works with the powerhouse of multi-tasking analysis engines to breakdown the data.

Complete Processing Engines

File System Engine-FAT, NTFS, EXT, HPFS, HPFS+, etc.

Network Email Engine-MS Exchange, Lotus Notes, GroupWise

Internet History Engine

Instant Messaging Engine

Local Email Engine-PST, OST, MBX, EML, etc.

Chip Off Analysis Engine

Logical Phone Imaging Engine

Physical Phone Imaging Engine

IoT Analysis Engine

Cloud Data Imaging and Analysis Engine

Mobile Backup Analysis Engine

SQLite Processing and Analysis Engine

Registry Analysis Engine

Gaming System Processing Engine

Everything that is created in the E3 Platform is included with E3:Universal.

Direct File Header Sorting

The E3 Forensic Platform Sorter is designed to break down the data to be examined by the header for quick reference to find specific items such as spreadsheets, graphics, etc. Each Sorter category brings you closer to finding the needle in the haystack. 

Lots of Processing Options

From multi-lingual searching, to customize time zone settings, and corrupt data repair for email archives there is always a little something extra in the 58 different processing engines that make E3 Forensic Platform so powerful. 

Cloud Forensics is Now

Cloud data has become an increasing problem in digital forensics with traditional collection techniques not working. Paraben’s approach to the cloud allows for the best possible collection options and practices while maintaining the evidence.


When dealing with GSuite and the associated data with or without credentials the E3 Forensic Platform has you covered. With the ability to collect directly from the cloud or to review the data collected with a GoogleTakeout archive the review of the data is as easy as 1-2-3.

Social Media & IoT

With more and more mobile Apps going to the cloud the ability to collect data from sources such as Facebook and Amazon Alexa is critical. With the E3 Forensic Platform, those collections can be done with keys from the mobile device or with credentials. Cloud collection options are key to get the best possible data. 

AWS & Microsoft Azure

Knowing that you can not only execute your tool in any cloud platform or be able to collect from it is critical. Now E3:Universal can image data remotely from any of the cloud sources or machines. More info email us at forensics@paraben.com

Email Investigations

Email is still the primary method of communication for most of the planet so there is no surprise on how valuable that data is when it comes to an investigation. Whether you are looking at it with a computer investigation or with eDiscovery and only reviewing email the E3 Forensic Platform has everything you need to process all types of email archives from local stores, network stores, and cloud stores.

Local Email Archives

There is always something new with email archives and Paraben prides itself on the support of one of the largest collection of mail types.

Local email supported:

  • Microsoft Outlook (PST & OST)
  • Windows 10 Mail
  • Office365 Email
  • Microsoft Outlook Express
  • Windows Mail Email
  • The Bat!
  • America Online (AOL)
  • Mozilla Thunderbird
  • Eudora
  • Email Files (EML)
  • Maildir Database
  • 750+ Mime Formats

Network Email Archives

You never know what type of network mail you will encounter so the E3 Forensic Platform has you covered.

Support of  MS Exchange, Lotus Notes, and GroupWise

Optimization of Data

When working through email it is important to have the full header and details associated with the archives. The E3 Forensic Platform provides that data as well as the ability to optimize the information and refine it to exactly what you are looking for and even export it out to a new PST file. 

Windows 10 & 11 Artifacts

With MS Windows being the most popular operating system in the world there is no surprise that the data review of all of the artifacts is critical to all types of investigations.

Data Triage

When dealing with larger and larger data sets it is critical to be able to quickly triage the drive and get an overview of what was happening. With the artifact processing, you have a valuable quick insight into items such as last login, email accounts, recent documents, windows searches, attached media, and so much more. With dozens of artifacts supported that process in minutes you can see where your investigation needs to go.

Cloud Accounts

Do you know if your suspect is linking there data to the cloud? With the E3 Forensic Platform Triage function, you easily see what they are connected with and sharing data so you know what the next best step should be.

Incident Response Answers

Incident response is becoming a larger and larger demand for investigations. Being able to quickly scan a drives artifact for important information is essential. With the options in the E3 Forensic Platform, you can quickly see Registry keys that can be useful for analysis while investigating the incident response cases. It includes Scheduled Tasks, SRUM, Shimcache, Profile List, etc.

  • Data Carving & Sorting
  • Keyword Searching
  • Full-Text Indexing
  • OCR Scanning 
  • Variety of file viewers
  • SQLite Processing
  • Bookmarking
  • Hash Database Filtering
  • Emoji & Emoticon Searching
  • Built-in Python Scripting
  • Online Training
  • First Year Subscription Included


  • XML Data Export


Reporting & Review

There is nothing more important than showing off all the hard work that goes into the investigation. The reporting options in the E3 Forensic Platform are top of the class when it comes to being clear, concise, and kick ass. There are different report types depending on what type of data you have to share so take a look at the options.

Data review is easy with the E3 Forensic Platform with E3:View you get all the analytic powers of E3 built into a read-only viewer. You even get all the reporting options. Work in scaled teams and with others easily with E3. The E3:View is sold separately or included with E3:Universal. 


Hours of Operation M-TH 8 AM to 6 PM F 8 AM to 3 PM (Eastern Time Zone)

P.O. Box 199, Altamont TN 37301 USA



U.S. Woman-Owned Business