·.·. Computer forensics software made in Germany .·.·

X-Ways Forensics: Integrated Computer Forensics Software

X-Ways Forensics


X-Ways Forensics icon

only for customers
(latest download instructions here)

X-Ways Forensics is an advanced work environment for computer forensic examiners and our flagship product. Runs under Windows XP/2003/Vista/2008/7/8/8.1/2012/10/2016/2019/11*, 32 Bit/64 Bit, standard/PE/FE. (Windows FE is described here, here and here.) Compared to its competitors, X-Ways Forensics is more efficient to use after a while, by far not as resource-hungry, often runs much faster, finds deleted files and search hits that the competitors will miss, offers many features that the others lack, as a German product is potentially more trustworthy, comes at a fraction of the cost, does not have any ridiculous hardware requirements, does not depend on setting up a complex database, etc.! X-Ways Forensics is fully portable and runs off a USB stick on any given Windows system without installation if you want. Downloads and installs within seconds (just a few MB in size, not GB). X-Ways Forensics is based on the WinHex hex and disk editor and part of an efficient workflow model where computer forensic examiners share data and collaborate with investigators that use X-Ways Investigator.

Training Certification User manual Videos about installation and settings  Older videos about some important functions  Ted Smith's Videos Service release announcements Book  User interface 3rd party add-ons Administration tips

To be kept informed of updates, please enter your e-mail address:

Previous mailings can be found in the newsletter archive.

Trial licenses are not publicly available, only on request to law enforcement, government agencies and certain corporations. Please provide us with your full official address and contact details.

X-Ways Forensics comprises all the general and specialist features known from WinHex, such as...

...and then some:

It is impossible to list all the features and options here. The above list is notoriously incomplete, last updated on May 23, 2015. New features were announced in the newsletter (archive). Check prices, order now. Other available languages: . X-Ways Forensics is protected with a local dongle or network dongle or via BYOD. Reduced and simplified user interface available for investigators that are not forensic computing specialists, at half the price: X-Ways Investigator.


Owners of licenses for X-Ways Forensics can achieve Gold status.

Difference between X-Ways Forensics and WinHex with a forensic license

*Limitations under Windows Vista and later: Physical RAM cannot be opened. Unable to write sectors on the partitions that contain Windows and WinHex.


Old Quick Start Guide Videos