4.7 (488)
Rating
(340)
(130)
(17)
(0)
(1)

Outlook Forensic Toolbox - Online help

To identify deleted or hidden data from files with PST or OST extensions, which store Microsoft Outlook data, you need to use the Outlook Forensic Toolbox tool (Download). Outlook Forensic Toolbox is designed as a simple step-by-step guide.

Detailed description of each step:

Step 1. Selecting a source file for forensic analysis

The source file for forensic analysis can be selected in one of 2 ways:

  1. Press the button and select the PST / OST file on disk in Explorer / Windows Explorer. By default, the program offers to analyze the main PST file of the main profile.
  2. Press the button to search for all available data files on the local or network drive.
Step 2. Forensic analysis of the file

After selecting a file for analysis, you just need to click the Next button and the process of forensic analysis of the file will start automatically. This process can take a long time, depending on the size of the source file and the performance of your computer. Upon completion of the file analysis, all hidden and deleted objects will be displayed on the preview page as a tree of objects and a list of objects from each folder:

Step 3. Selecting a folder to save data

To save the recovered hidden data, the user needs to choose the folder to save on the local device:

Step 4. Saving data

The data will be saved to a PST file so that it will be convenient to open the file in Microsoft Outlook later.

Step 5. Opening the recovered data in Microsoft Outlook

To open a PST file in Microsoft Outlook, you need:

  1. Select File from the menu
  2. Select Open and Export
  3. Select Open Outlook Data File
  4. In Windows Explorer open the saved .PST file with recovered hidden objects