Offline Investigation
Deep-dive forensic analysis without live connectivity
- Log formats
- 15+
- Ready
- Air-gap
- Typical analysis
- <30 s
Live demo
Runs in your browser on sample data. Click around, nothing here touches a real system.
Drop log file or click to upload
Supports: .evtx, .json, .csv, .pcap, .log — up to 2GB
What it does
Upload log snapshots or exported datasets and run the full Awiron detection pipeline in an isolated sandbox. Built for incident retrospectives and air-gapped environments.
Key capabilities
- Isolated analysis sandbox
- EVTX, JSON, CSV and syslog support
- Full SIGMA and YARA pipeline offline
- Attack timeline reconstruction
- Executive PDF reports
- Evidence chain preservation
Ready to see it on your own data?
A 30-minute walkthrough with an engineer, tailored to your environment.