Viber is a popular messaging app that allows users to make calls, send texts, photos, videos, and share other types of files. It is available for download on Windows, iOS, Mac, and Android devices and it is used by millions of people worldwide. in this blog we will discuss more details folowing on the previous blog
Viber can be a valuable source of information during a forensic analysis as Viber artifacts retain information related to calls, contacts, chats, messages, and application configuration.
              Viber artifacts are found in the following location:
            % %systempartititon%Users\%username%\AppData\Roaming\ViberPC\%user’s phone number %\
			
        
            This section will discuss how to use ArtiFast to extract Viber from Windows and what kind of digital forensics insights we can gain from the artifacts.
            
            After you have created your case and added evidence for the investigation, at the Artifact Selection phase, you can select Viber artifacts.
        
Once ArtiFast parser plugins complete processing the artifact for analysis, it can be reviewed via “Artifact View” or “Timeline View,” with indexing, filtering, and searching capabilities. Below is a detailed description of Window Viber artifacts in ArtiFast.
Viber Calls Artifact
Viber Contacts Artifact
Viber Chats Artifact
Viber Settings Artifact
For more information or suggestions please contact: ekrma.elnour@forensafe.com
