Slient Runner
AccessData Enterprise
AccessData E-Discovery
Forensic People E-Detective Enterprise ( FPEDE)
Paraben P2 Enterprise
Paraben P2 Enterprise Shuttle
FoxReplay Analyst
Fort Fox Data Diode

Forensic People-E-Detective ( FP-ED)

FP-ED is new product that devoleped by Forensic People and Decision Computer cooperation. This product has 5 module as;

1) E-Detective (ED – Ethernet LAN and ISP Lawful Internet Interception System)

E-Detective is used by organizations (Enterprises and Corporations) which includes Banking and Finance sectors, Governments, Private Sectors all over the world to preserve all daily Internet transactions/activities and in case of any confidential data leakage, the system allow you full content track and trace back in the search of evidence and culprits.   Read more

2) Wireless-Detective (WD – WLAN Lawful Internet Interception System)

Wireless E-Detective system (WLAN Legal Intercept System) is applied in Wireless LAN network based on 802.11a, 802.11b and 802.11g standard. It is capable to scan the wireless signal…Read More

3) HTTPS/SSL Network Packet Forensics Device

Decrypting HTTPS network packets existed within the same domain.
This ystem pretends as a gateway to obtain public keys (Decryption/Encryption keys) vy cheating when the data is transferred via internet in order to decrypt the information….
Read More

4) E-Detective Decoding Centre (EDDC)

E-Detective Decoding Centre (EDDC) is designed as a Linux based centralized system for offline Internet raw data file parser/reconstruction. It can be used to parser (decode and reconstruct) raw data files in PCAP format collected from different sources Read More

5) E-Detective VOIP Recorder (EDVR)

User can play back the reconstructed “wav” file using popular media voice player..Read More

For More information

 

E-Detective


Network Content Monitoring and Network Forensic

E-Detective is used by organizations (Enterprises and Corporations) which includes Banking and Finance sectors, Governments, Private Sectors all over the world to preserve all daily Internet transactions/activities and in case of any confidential data leakage, the system allow you full content track and trace back in the search of evidence and culprits.

It is proven that E-Detective is an Internet Surveillance and Content Auditing Tool that records internet activities (flowing out and in) such as Emails (POP3, SMTP, Web Mail), Instant Messages (YAHOO, MSN, ICQ, AOL, QQ Messenger), FTP, P2P, Telnet, HTTP Link, HTTP Content, HTTP Upload/Download, VoIP & Webcam (Windows Live Messenger and Yahoo) and others.

1. E-Mail (SMTP, POP3, Hotmail and Web –mail)

Monitoring and recording all the details of E-mail, including sender and receiver's Email address, CC, BCC and mail content with attached files.

2. Instant Message (MSN, Yahoo Messenger, AOL, ICQ)

Monitoring and recording instant message, including access time, user name, IP, each message transferred, and attached files.

3. Web Browsing

E-Detective records Internet browsing detail activities, including URL, content and access time, which can even be classified by users.

4. FTP

E-Detective records and upload and download activities including login ID, password and Server IP.

5. Telnet

E-Detective records all the activities by Telnet. It also provides "playback" function. Administrators can inspect user's activities easily.

How to manage?

1. Remote Access

E-Detective provides remote console interface through browser for administrative control.

2. Network Access rules

E-Detective supports policy setting for monitoring, forwarding, and alerting.

3. Search

It also provides a quick and easy search function. All you need to do is typing some key words. Then, get what you want.

4. Reports

With the reporting and statistic function of E-Detective, you can get useful graphical reports with internet usage status. This information is created by different protocols and data in each period.

5. Backup

Auto and manual - backup both can help you to create backup files with HTML format. Even though the recording data is saved in other hard drives, you still can read it through browser anywhere if you are authorized.

Purpose

Track down work effectiveness

Prevent confidentiality disclosure

End employees' laziness and boredom

Protect business right

Help government and law enforcement agencies

Neutralize threats from terrorists and criminals

Features at a glance

Exclusive operating system

Non-intrusion mode means it is undetectable

Web-based management interface

Monitor multiple protocols

Access control ensures only authorized use of resources

Easy to define monitoring and alerting rules

Centralized monitoring of local and remote stations

Quick search function

Useful management reports

Data backup and recovery solution

What else?

E-Detective provides your enterprise with a new business management platform. "Digital Era" is not just a concept. The appliance records all internet activities within your enterprise. Now, you can make use of the most of data rather than just leaving it on the disk.

Resource Management System is what you expect. It collects the data which has been recorded, and establishes a comprehensive knowledge database by different key words. After being categorized, your data reveal new message. The system not only optimizesthe use of data but also maximizes the power of search function.

E-detective Ethernet LAN Interception Diagram:

E-Detective ISP Lawful Interception System:

For more information, please refer to our Download and Products sites for Product Specs and User Manual.

Wireless Detective (WLAN and 802.11a/b/g Interception System):

Wireless E-Detective system (WLAN Legal Intercept System) is applied in Wireless LAN network based on 802.11a, 802.11b and 802.11g standard. It is capable to scan the wireless signal (2.4GHz and 5GHz) in the air and capture wireless LAN packets. It has cracking capability to decrypt wireless network with WEP key (64, 128 and 256-bit key) encryption etc. It can also decode and reconstruct the raw data captured, and display the captured  information in original format according to protocols or applications such as Emails (POP3, SMTP, Web Mails - Gmail, Yahoo Standard and Beta Mail, Windows Live/Hotmail etc.), File Transfer (FTP, P2P), Telnet, VoIP and Webcam (Yahoo and Windows Live), Instant Messenger/Chat (YAHOO, MSN, ICQ, QQ, Skype VOIP Logs), HTTP (Link, Content, Reconstruct, Download/Upload) and so on. Wireless E-Detective system has the capability of approximate the direction of wireless device such as AP and wireless client if a directional antenna is used. Furthermore, it has GPS function to identify its own location as well as other wireless devices approximate location at outdoor. Most of all, we can customize the Wireless E-Detective system to meet users' requirements.

Wireless E-Detective System Application:

For more information, please refer to Download and Products sites for Product Specs and User Manual.

HTTPS/SSL Network Packet Forensic Device:

Features:

Decrypting HTTPS network packets existed within the same domain.

This ystem pretends as a gateway to obtain public keys (Decryption/Encryption keys) vy cheating when the data is transferred via internet in order to decrypt the information.

Able to cooperate with SSL server and obtain its public keys in order to decrypt all data related to this SSL server.

The primary auditing feature is able to be integrated with E-DETECTIVE system and its database, in order to exchange /decode/analyze the data.

Login Username and Passwords for HTTP and HTTPS websites such as Gmail, Yahoo mail, Ebay etc..

Gmail and Bank online transactions are not secured anymore.

Operating Theory (1)

1. Utilizing Man in the middle attack (MiTM)

or Monkey in the middle concept This system pretends as gateway/proxy to get public keys (Decryption/Encryption keys) by cheating when the data is transferred via Internet in order to decrypt the information.

Operating Theory (2)

2. Offline Decryption and Decoding

HTTPS/SSL Network Forensic Device can decrypt and decode (integration with E-Detective system) HTTPS web content if the private key used is known.

 

Edetective Decoding Center:

E-Detective Decoding Centre (EDDC) is designed as a Linux based centralized system for offline Internet raw data file parser/reconstruction. It can be used to parser (decode and reconstruct) raw data files in PCAP format collected from different sources. Internet raw data (Internet packets) files can be collected from an Ethernet/LAN network or a WLAN network through different packet capturing or sniffing tools such as Ethereal, Wireshark, LinkFerret etc.

EDDC comes with specifically designed features that allow different forensic investigators to identify project or case specific offline Internet raw data files for decoding and reconstruction on a system. It allows the administrator to create different user accounts and different cases of investigation for various users or forensic professionals or investigators. The administrator has the flexibility to assign different rights and access levels to different users to manage access to the reconstructed data on different cases. The users can then import their Internet raw data files collected from different sources into the system to carry out the parser and analyzing process.

EDDC allows Internet Content Forensics tasks to be carried out easily and systematically in order to obtain a variety of information and evidence needed from the Internet raw data files collected. EDDC also aims to assist Police Intelligence Services, Military Intelligence Organizations, Intelligence Bureaus, National Security Agencies, Government Intelligence Agencies and all forensics related agencies in conducting Internet Content Forensics geared towards enhancing their investigative effort.

E-Detective VOIP Recorder:

         Protocols Supported: Session Initiation Protocol (SIP) and H.323

         Audio CODECS Supported: G.711, G.729 and G.723.

         User can play back the reconstructed “wav” file using popular media voice player.

VOIP Architecture Supported:

1. Point-to-point Communication

2. SIP Server Architecture
3. Relay