Jump to content

Mitch

Members
  • Posts

    39
  • Joined

  • Last visited

Reputation

0 Neutral

About Mitch

Personal Information

  • Location
    Leeds
  • Homepage
    http://www.internetauditsolutions.com
  1. Mitch

    Computer Forensics

    Ok Dan Can you give me a ring on 07765782749, BTW everyone forget the audit side of 2003 not applicable !!!!!. Mitch
  2. Mitch

    Computer Forensics

    Yes i can acomplish this, is this a serious occurance or just interested on how to do it. Mitch
  3. Dear All We are pleased to announce that we are now in partnership with CCL Computers offering our solution to schools. We have also updated our website and given our product a name. Have a look and see what you think, all views appreciated. Mitch
  4. True and welcome to the forum, and im humble to have your first post. amazon is a jungle isnt it Mitch
  5. W32/Jbot Remember what i posted in a eairlier topic re forensics software. also to be a "real" forensic application under the ACPO protocol you need some specific hardware. As a registered professional computer forensic consultant, my forensic software cost me over 8K, and the LAN version over 25K !!!!.I Just hope the software companies that claim their software is "forensic" or uses the word in any way shape or form to promote there product, dont have their clients involved in disiplinary / termination with their employees. (or do i hope, the employees could ring me) remember FORENSICS is a sexy word, and a very POWERFUL word, We are in a position with our clients if a issue arises, they contact us. our bespoke application, will intigrate with the forensic software Simon
  6. Tony We can do this no problem, how many laptops do you have via this scheme. We have noticed schools moving into this area, and have implemented solutions to it. Simon
  7. Firstly, you cannot steal bandwidth or steal the use of a wireless access point. Under Section 4 of the Theft act 1968, the definition of property states it has to be tangible, therefore offences under section 1 of the Theft Act 1968 have to be discounted. Secondly, offences under Section 13 of the Theft Act 1968 (Abstracting Electricity) would not be plausible either due to the fact that I doubt if it could be proved and measured that additional electricity was wasted or diverted due to someone having access. There are offences on the statute book which are more appropriate. I think the real possibilities here are: Communications Act 2003 Computer Misuse Act 1990 There are a number of practical problems when it comes to investigating and proving these offences. Firstly, it may be extremely difficult to prove access to an AP without evidence in logs. Many of the wireless access points I have seen do not have logging on as default. Considering the users don’t even switch on encryption, I doubt if any of them have logging. It would be extremely difficult catching someone in the act of committing the offence. It would also be difficult to prove that if someone left their access point insecure that they were not inviting people to connect. With many of the hot spots available throughout the country, you have no idea it is legitimate until you have actually connected. If people are wardriving they must set there wireless card into monitor mode, therefore you are only viewing and not connecting. I was curious, so i got in my car and drove for 15 mins exactly from my house to a local shopping complex and came back. what did i discover 108 Access Points Active 5 Wireless Print Servers 4 of the 108 were WEP Enabled. I noticed that my next door had wireless unsececured, because i know him well i informed him of this his reply was "not bothered i pay a fix rate if any one wants to connect let them" Can you believe that !
  8. Most sites havent complied with this requirement yet to get round it for the moment do the following Tools Internet Options Advanced Scrool down to the bottom and disable this option
  9. Aulthough the idea in principle is an excellent one, and would benifit you aj tremendously and i can see where your coming from, the the resources, stability, and secuity of the network could be compromised significantly.
  10. Update Report We now have the ability to perform remote audits, thus enabiling us to provide a detailed report whenever the need arises at a particular school, be it a single pupil, year groups, whole of school, on a daily, monthly, quarterly, annually basis. For example a school like alan-d could request that quarterly we issue a report to him containing internet violations by users. Alan then does nothing, every quarter a report lands on his desk in any media format requested, (secure E-Mail, CDrom, Hard Copy) Emergency Responce Should the need arise from a client, we can respond to a specific incident with the same level of detail within a time frame of 24 hours. Child Protection issues take priority and supersede any other obligations we may have. Mitch
  11. Geoff Depends on the origin of the music in question. can get quite complicated, even backups is a grey area. "fair use" is now abolished. Mitch
  12. PiqueABoo Well Done !. You are correct in saying that a gracefull logoff, will alter the file system, it will also alter many other aspects of the windows architecture too. Wiping history and pagefiles is not a problem to me, Hey ive examined Hard Drives that have been thrown in the bath, formatted and Fdisked numerous times, hard drives with this "washer software" installed. Trying to monitor students is a nightmare there is software out there that does have its merits, the main problem i have found is the amount of false notifications, and the amount of time the technician or network manager has to plod through data. also the possibility of bottlenecks on the network. Its alright having lots of screen shots of possible violations and lots of reports of possible violations. But then the "administrator" has to go through this and can get it wrong. Thats why we take the responcibility of this away from the school. I had a school using another package, we run oursoftware on the system and produced the report, they were impressed but they said what they could not understand is we have banned a pupil for pornographic material and you have not shown him on the this report. I knew exactly the username they were talking about, and we had prepared a report on that user, I showed that the pupil was NOT searching for porn at all, he was actually searching for crackz and serials, and the pornographic material that was being "screenshot" was redirections. Thus the pupil had no control over the content of redirections. Thus the software that had alerted the IT Manager was producing false information with regard to the users actions.The IT manager and Head had the parents of this boy in. the boys parent was a governor of the school. We sorted that problem out and spoke to the parents. everybody is now happy. Yes the boy was using the school network wrongly, but not for PORN. but then we can get onto copywrite issues within the school as pupils download music ect. leaving the school open to prosecution, we stop that too. We also put a stop to the huge problem "its not me sir, someone has my password". Mitch
  13. This threadhas taken my intrest, as I have background in forensic computing. To label a piece of software "forensic" it must comply with a number of protocols laid down by a number of governing bodies inluding the law. and the methology of obtaing the "data" also is subject to specific protocols. The ability to monitor activity upon a network does not under any circumstances conform to "forensic investigation" in my work i have had to perform forensic investigations and give evidence in court, and justify every action i do. It is a science in itself and it has taken me years to be respected in this field. Lets have a little question, "you have been called out to sieze a computer that has been used in a crime, you are accomanied by police tothe house where upon entry the pc is on and logged on to the internet. under the ACPO how do you make the PC "safe" for forensic investigation. Ill tel you its a windows XP home edition (depending on the OS depends also whayou do. do you 1. close ie and logoff, then shut down 2. go start>shutdown 3. ask the accused to logoff 4. pull the plug 5. go to the internet temp internet history and record activity straight in you notebook. Mitch
  14. Alan-d Many thanks for your post and comments and time. We are pleased that you found the service that we are able to offer, excellent. Russ We have compared our results from a non-selective comprehensive school Single and Mixed. We have discovered a phenomenal difference in student’s inappropriate behavior; we must also take in account that each audit is tailored to each school. Beeswax Looks like you could do with a quote PM or email sales @ internetauditsolutions.com CyberNerd Your points are noted, computer forensic software incorrect. We are here to provide a full service to the ICT departments in schools, and to combat internet misuse within schools, both parties comply with the DPA fully. This is used as a preventative measure; Smart filtering on the whole does not work 100%. We do not go through any student’s private information whatsoever. And my main objective is to protect pupils firstly. Mitch at a school at the moment so will post more indepth later
  15. Hi We have noticed a huge increase in e-messenger, so far our database is over 150+ addresses that we know of and still finding them Mitch
×
×
  • Create New...