Presentation is loading. Please wait.

Presentation is loading. Please wait.

E-Detective Decoding Centre (EDDC) Offline Decoding & Reconstruction Solution Decision Group www.edecision4u.com.

Similar presentations


Presentation on theme: "E-Detective Decoding Centre (EDDC) Offline Decoding & Reconstruction Solution Decision Group www.edecision4u.com."— Presentation transcript:

1 E-Detective Decoding Centre (EDDC) Offline Decoding & Reconstruction Solution Decision Group www.edecision4u.com

2 2 EDDC Application Diagram (1)

3 EDDC Application Diagram (2) Offline Raw Data Decoding and Reconstruction system. Comes with User and Case Management functions. Investigator 1 Case 1 Investigator 2 Case 2 Case 1 Results Case 2 Results Collect, Import Raw Data For Case 1 Case 1 Case 2Collect, Import Raw Data For Case 2 Reconstruct various Internet Protocols

4 EDDC Home Page Dashboard Reports Top-Down View Report

5 IM/Chat (Yahoo, MSN, ICQ, QQ, IRC, Google Talk Etc.) Email Webmail HTTP (Link, Content, Reconstruct, Upload Download) File Transfer FTP, P2P Others Online Games Telnet etc. Internet Protocols Supported Support more than 140 protocols

6 Sample Reconstruction: Email (POP3)

7 Sample Reconstruction: Email (SMTP) Company Logo

8 Sample Reconstruction: Webmail (Read) Supports various Webmail Type such as Yahoo Mail, Gmail, Hotmail etc.

9 Sample Reconstruction: Webmail (Sent)

10 Sample Reconstruction: IM – MSN

11 Sample Reconstruction: IM - YAHOO

12 Sample Reconstruction: IM - QQ QQ messages are encrypted. QQ cracking tool is provided.

13 Sample Reconstruction: File Transfer (FTP)

14 Sample : File Transfer (P2P File Sharing Log) Bittorent, eMule/eDonkey, FastTrack, Gnutella

15 Sample : HTTP Web Link Content Reconstruct Company Logo

16 Sample : HTTP (Download/Upload)

17 Sample: HTTP Video Streaming (FLV) Youtube, Google Video, Metacafe etc.

18 Sample: Telnet (with play back)

19 Sample: VoIP Reconstruction (Playback) Codecs: G.711a-law G.711µ-law G.729 ILBC

20 Sample: HTTPS/SSL Decryption SSL Private Key must be known

21 EDDC User Management Admin create multiple users that can have access to authority to use this system.

22 EDDC Case Management User can create own case based on their authority assigned by Administrator.

23 Import Analysis (Manual Import Raw Data) User import raw data files to be parsed and analyzed (reconstructed)

24 Reconstructed Data Export/Backup

25 Sniffer Mode (Raw Data Retention) System can be connected to the network. Raw data can be captured and reserved through mirror mode. Only when administrator require to see the content of traffic at specific period (date-time), these raw data files can be imported, parsed and analyzed.

26 References – Implementation Sites and Customers  Criminal Investigation Bureau  The Bureau of Investigation Ministry of Justice  National Security Agency (Bureau) in various countries  Intelligence Agency in various countries  Ministry of Defense in various countries  Counter/Anti Terrorism Department  National Police, Royal Police in various countries  Government Ministries in various countries  Federal Investigation Bureau in various countries  Telco/Internet Service Provider in various countries  Banking and Finance organizations in various countries  Others Notes: Due to confidentiality of this information, the exact name and countries of the various organizations cannot be revealed.

27 Decision Group www.edecision4u.com


Download ppt "E-Detective Decoding Centre (EDDC) Offline Decoding & Reconstruction Solution Decision Group www.edecision4u.com."

Similar presentations


Ads by Google