This document analyzes and compares several forensic tools that can be used in a cloud environment. It discusses tools like EnCase, FTK, Oxygen Forensics, FROST, and SIFT. It also proposes two Python-based tools for cloud forensic analysis on AWS - AWS-IR, which automates initial response actions like disabling compromised keys, and Margarita Shotgun, which allows pulling memory from AWS systems. The document evaluates these tools based on factors like cost-effectiveness, data abundance, scalability, and analyzing forensics as a service on the cloud.