EDetective Decoding Centre EDDC Offline Decoding Reconstruction Solution

  • Slides: 27
Download presentation
E-Detective Decoding Centre (EDDC) Offline Decoding & Reconstruction Solution Decision Group www. edecision 4

E-Detective Decoding Centre (EDDC) Offline Decoding & Reconstruction Solution Decision Group www. edecision 4 u. com

EDDC Application Diagram (2) 2

EDDC Application Diagram (2) 2

EDDC Application Diagram (2) Offline Raw Data Decoding and Reconstruction system. Comes with User

EDDC Application Diagram (2) Offline Raw Data Decoding and Reconstruction system. Comes with User and Case Management functions. Collect, Import Raw Data For Case 1 Investigator 1 Case 1 Investigator 2 Case 1 Results Collect, Import Raw Data For Case 2 Reconstruct various Internet Protocols Case 2 Results

EDDC Home Page Dashboard Reports Top-Down View Report

EDDC Home Page Dashboard Reports Top-Down View Report

Internet Protocols Supported Email Webmail IM/Chat (Yahoo, MSN, ICQ, QQ, IRC, Google Talk Others

Internet Protocols Supported Email Webmail IM/Chat (Yahoo, MSN, ICQ, QQ, IRC, Google Talk Others Etc. ) Online Games Telnet etc. HTTP (Link, Content, Reconstruct, Upload Download) File Transfer FTP, P 2 P

Sample Reconstruction: Email (POP 3)

Sample Reconstruction: Email (POP 3)

Sample Reconstruction: Email (SMTP) Company Logo

Sample Reconstruction: Email (SMTP) Company Logo

Sample Reconstruction: Webmail (Read) Supports various Webmail Type such as Yahoo Mail, Gmail, Hotmail

Sample Reconstruction: Webmail (Read) Supports various Webmail Type such as Yahoo Mail, Gmail, Hotmail etc.

Sample Reconstruction: Webmail (Sent)

Sample Reconstruction: Webmail (Sent)

Sample Reconstruction: IM – MSN

Sample Reconstruction: IM – MSN

Sample Reconstruction: IM - YAHOO

Sample Reconstruction: IM - YAHOO

Sample Reconstruction: IM - QQ QQ messages are encrypted. QQ cracking tool is provided.

Sample Reconstruction: IM - QQ QQ messages are encrypted. QQ cracking tool is provided.

Sample Reconstruction: File Transfer (FTP)

Sample Reconstruction: File Transfer (FTP)

Sample : File Transfer (P 2 P File Sharing Log) Bittorent, e. Mule/e. Donkey,

Sample : File Transfer (P 2 P File Sharing Log) Bittorent, e. Mule/e. Donkey, Fast. Track, Gnutella

Sample : HTTP Web Link Content Reconstruct Company Logo

Sample : HTTP Web Link Content Reconstruct Company Logo

Sample : HTTP (Download/Upload)

Sample : HTTP (Download/Upload)

Sample: HTTP Video Streaming (FLV) Youtube, Google Video, Metacafe etc.

Sample: HTTP Video Streaming (FLV) Youtube, Google Video, Metacafe etc.

Sample: Telnet (with play back)

Sample: Telnet (with play back)

Sample: Vo. IP Reconstruction (Playback) Codecs: G. 711 a-law G. 711µ-law G. 729 ILBC

Sample: Vo. IP Reconstruction (Playback) Codecs: G. 711 a-law G. 711µ-law G. 729 ILBC

Sample: HTTPS/SSL Decryption SSL Private Key must be known

Sample: HTTPS/SSL Decryption SSL Private Key must be known

EDDC User Management Admin create multiple users that can have access to authority to

EDDC User Management Admin create multiple users that can have access to authority to use this system.

EDDC Case Management User can create own case based on their authority assigned by

EDDC Case Management User can create own case based on their authority assigned by Administrator.

Import Analysis (Manual Import Raw Data) User import raw data files to be parsed

Import Analysis (Manual Import Raw Data) User import raw data files to be parsed analyzed (reconstructed)

Reconstructed Data Export/Backup

Reconstructed Data Export/Backup

Sniffer Mode (Raw Data Retention) System can be connected to the network. Raw data

Sniffer Mode (Raw Data Retention) System can be connected to the network. Raw data can be captured and reserved through mirror mode. Only when administrator require to see the content of traffic at specific period (date-time), these raw data files can be imported, parsed analyzed.

References – Implementation Sites and Customers v v v Criminal Investigation Bureau The Bureau

References – Implementation Sites and Customers v v v Criminal Investigation Bureau The Bureau of Investigation Ministry of Justice National Security Agency (Bureau) in various countries Intelligence Agency in various countries Ministry of Defense in various countries Counter/Anti Terrorism Department National Police, Royal Police in various countries Government Ministries in various countries Federal Investigation Bureau in various countries Telco/Internet Service Provider in various countries Banking and Finance organizations in various countries Others Notes: Due to confidentiality of this information, the exact name and countries of the various organizations cannot be revealed.

Decision Group www. edecision 4 u. com

Decision Group www. edecision 4 u. com