52acf02278dcc0bb5a619a0dce929ed6.ppt
- Количество слайдов: 22
E-DETECTIVE Decision Group Inc. www. edecision 4 u. com
Contents E-Detective Wireless-Detective E-Detective Decoding Centre HTTPS/SSL Interceptor Decision Computer Group
E-Detective LAN Internet Monitoring & Forensics Analysis System Solution for: • Internet Monitoring/Network Behavior Recording • Auditing and Record Keeping • Forensics Analysis and Investigation E-Detective Standard System Models and Series ~ 10 Mbps FX-06 10 ~ 60 Mbps 60 ~ 200 Mbps 200 ~ 700 Mbps FX-30 FX-100 FX-120 Decision Computer Group
E-Detective Work Flow 1010100101010 Port-mirroring or In-line monitoring Capture Packets Statistical Reports Reassemble & Decode E-Detective Work Flow Content Reconstruct Archive 101010 100111 101101 1100011011 E-mail/Webmail IM/Chat HTTP File Transfer Vo. IP Decision Computer Group
Internet Protocols Supported Email Webmail IM/Chat (Yahoo, MSN, ICQ, QQ, IRC, Google Talk Etc. ) HTTP (Link, Page, Upload/Download) File Transfer FTP, P 2 P Others Decision Computer Group
More Than 140 Internet Application Decoders Generic E-Mail POP 3, IMAP, SMTP Webmail GMail, Yahoo, Hotmail, … more than 21 Instant Message MSN, Google. Talk, ICQ, … more than 8 Web Page Link, Content, Request Web FTP Upload/Download Web Video You. Tube, Google. Video… File Transfer FTP, P 2 P, … more than 20 Telnet BBS Playback is available Asia On-Line Game Vo. IP More than 81 SIP, H. 323 (G. 711, G. 729, ILIBC)
Sample Screenshots - Reports Decision Computer Group
Sample: Email (POP 3, SMTP, IMAP)
Sample: Webmail (Read/Sent) Webmail Type: Yahoo Mail, Gmail, Windows Live Hotmail, Giga Mail and others Decision Computer Group
Sample IM/Chat: Yahoo, MSN etc. Decision Computer Group
Sample: HTTP Web Browsing Whois function provides you the actual URL Link IP Address HTTP Web Page content can be reconstructed Decision Computer Group
Sample: Video Streaming Playback of Video File Video Stream (FLV format): Youtube, Google Video, Metacafe. Decision Computer Group
Wireless-Detective WLAN Analytics/Forensics/Legal Interception System • Support Wireless LAN 802. 11 a/b/g Scanning & Packet Capturing • Automatically WEP Key Cracking (WPA Optional Module) • Decode and Reconstruct WLAN packets • Capture/Decode/Display are All-in. One All in One Syste Important Tool for Intelligent Agencies such as Police, Military, Forensics, Legal and Lawful Interception Agencies. Decision Computer Group
Implementation Diagram WLAN Interception Standalone Architecture Deployment (Capture a single channel, a single AP or a single STA) Decision Computer Group
Sample: Scan and Capture GUI Displaying information of Wireless devices (AP/STA) in surrounding area. Decision Computer Group
Sample: Email (POP 3, SMTP, IMAP) Date/Time, From, To, CC, Subject, Account, Password Decision Computer Group
Wireless Equipment Locator Utilizes Wireless Sensors and Triangulation Training Methods to estimate the location of the targeted Wireless Devices. 1 WD Master system + min. 3 WD Slave systems (sensors) Note: Watch. Guard. WLAN can be used in place of WD slave systems for this Wireless Equipment Locator function) Decision Computer Group
Wireless-Detective Superiority Ø Smallest, Portable and Mobile Ø Capturing of WLAN packets from Multiple Channels by deploying Distributed/Multiple Systems Ø Decryption of Wireless Key, WEP Key (WPA cracking is optional module) Ø Decoding and Reconstruction of Internet services/protocols On The Fly Ø Condition Search and Free Text Search are available Ø Wireless Forbidding/Jamming is available Ø Wireless Equipment Location function. The All-in-One Portable WLAN Interception System Decision Computer Group
E-Detective Decoding Centre v Designed for Off-line Packet Reconstruction v Multi-Users and Case Base Management Ø Administrator can create different project/case for different user/investigator to conduct Internet raw data parser and forensics analysis task on the system v Various Content of Internet Applications Decoding Ø Email (POP 3, SMTP, IMAP), Webmail (Yahoo Mail, Gmail, Hotmail etc. ) IM (Yahoo, MSN, ICQ, QQ, UT, IRC, Google Talk, Skype Voice Call Log), File Transfer (FTP, P 2 P), HTTP (Link, Content, Reconstruct, Upload/Download, Video Stream), Telnet, Online Games, Vo. IP, Webcam (Yahoo, MSN) Decision Computer Group
Implementation Diagram Off-line Packets Decoding and Reconstruction system. Comes with User and Case Management functions. Decision Computer Group
HTTPS/SSL Interceptor • Decrypting HTTPS/SSL Traffic • Operation Modes • Network Crack and Redirect - Man in the Middle Attack • HTTP/HTTPS Proxy and Certificate Replacement To view encrypted content, a key is a needed Decision Computer Group
www. edecision 4 u. com


