Device Detection
Automatically detects connected Android devices via ADB. Displays device serial number, manufacturer, model name, Android version and build number. Supports multiple simultaneous device connections for batch processing workflows.
Free Download
Since 2006. CISSP, ISSAP and ISSMP certified. SHA256 verified. Logical acquisition via ADB for forensic examiners and investigators.
Sherlock Forensics Android Acquirer is a Windows forensic tool that performs logical acquisition of Android devices via ADB. It detects connected devices, checks bootloader status, inventories available data and extracts SMS, contacts, call logs, media and apps. The Forensic Edition generates court-ready forensic PDF reports with SHA-256 hashing.
Version 0.1.6 | 5.0 MB | Windows 10/11 | SHA256 verified
Compare
| Feature | Free | Pro ($399) |
|---|---|---|
| Device detection and identification | Yes | Yes |
| Bootloader status check | Yes | Yes |
| Data category inventory | Yes | Yes |
| Helper APK install | Yes | Yes |
| Data extraction to folder | No | Yes |
| SMS/MMS extraction | No | Yes |
| Contacts extraction | No | Yes |
| Call log extraction | No | Yes |
| Media file extraction | No | Yes |
| App/APK extraction | No | Yes |
| Forensic PDF report | No | Yes |
| SHA-256 hash verification | No | Yes |
| Chain of custody logging | No | Yes |
| Priority support | No | Yes |
Capabilities
Automatically detects connected Android devices via ADB. Displays device serial number, manufacturer, model name, Android version and build number. Supports multiple simultaneous device connections for batch processing workflows.
Queries the bootloader lock status of the connected device. An unlocked bootloader indicates the device may have been modified, which is critical context for forensic analysis. This status is documented in the forensic report.
Nine independently selectable data categories for targeted acquisition.
A lightweight companion application deployed to the target device during acquisition. The helper APK provides access to protected data categories that ADB alone cannot reach on newer Android versions. It runs with standard permissions, does not root the device and can be removed after acquisition.
Pro generates a multi-page forensic PDF report documenting the acquisition. Includes device identification, examiner details, acquisition timestamps, selected data categories, SHA-256 hashes for all extracted files, bootloader status and chain of custody metadata. Structured for court submission.
Pro extracts all selected data to a structured local folder organized by data category. Each file is individually hashed with SHA-256. The output folder contains the raw extracted data alongside the forensic PDF report for a complete evidence package ready for analysis or archival.
Pricing
5+ machines? Contact us for volume pricing.
Use Cases
Police departments and federal agencies use Android Acquirer for rapid logical acquisition of suspect and victim devices. Court-ready PDF reports with SHA-256 hashing satisfy evidentiary requirements. Pairs with our expert witness services for testimony support.
Internal investigation teams extract data from company-issued Android devices during policy violation inquiries, IP theft cases and employee misconduct investigations. The structured output folder integrates with existing case management systems.
Family law attorneys and private investigators acquire SMS messages, call logs and media from Android devices in custody disputes, divorce proceedings and harassment cases. Forensic PDF reports document the acquisition for court filing.
Security teams extract data from compromised Android devices during breach investigations. Browser history, installed apps and account data help reconstruct the timeline of a security incident. Used alongside our mobile forensics services.
Litigation support teams preserve Android device data for electronic discovery obligations. The structured extraction with SHA-256 verification establishes chain of custody from the moment of acquisition. Defensible collection at a fraction of enterprise tool costs.
Guide
Questions
Get Started
Free for device detection, bootloader checks and data inventory. Pro at $399 USD for full extraction and forensic PDF reports. Built by the same team that delivers expert witness testimony and mobile forensic investigations in Canadian courts. See also: chain of custody software and forensic report generator. Questions? Call 604.229.1994.
Sherlock Forensics Android Acquirer is provided for lawful use. Terms of Service
Enter your details to download. We will send you update notifications for new versions.
$399.00 USD. One-time payment. License key delivered to your email.