Load history from a forensic image

BHE does not directly support the parsing of forensic image files therefore you will need to mount the forensic image first as read-only.

Once the image is mounted go to File > Load History, select Load history from Windows user profile and enter the path to the Windows user profile within the mounted drive.

You can then choose which web browsers to load data for and whether to include History data, Cached data or both.

If you do not already have image mounting software there are some free solutions: