A system and method for automatically locating, identifying, and
collecting electronic evidence data stored in a number of computers. In
one embodiment, a method of the present invention collects electronic
evidence data from a plurality of computers and stores the collected data
on a server. The method first provides an agent software application to
the plurality of computers. The agent software application is configured
and arranged with predefined criteria that allows the agent software
application to identify data that is characteristic of electronic
evidence. The agent software application is also configured and arranged
to transmit the identified data to the server. In response to receiving
the identified data, the server stores the identified data on a memory
device of the server.