Product Activation

Change Language

         

Home Products iNet Personal
iNet Personal


Worms are methods of automated attack. In most cases, automated attacks are based on a known vulnerability in a system. The best method of defense against an automated attack is simply to keep the system fully patched at all times and monitor your network for suspicious events or messages.

 iNet Personal Overview

Current protection approaches currently available is as shown. A typical computer user would have an antivirus on his machine and protection from the internet is controlled at the gateway by a firewall or in some places, an Intrusion Detection System (IDS) and Intrusion Protection System (IPS). The entry point to and from Internet is cosseted by the Firewall whilst the entry point of the computer and other network peripherals is protected by standard antivirus package. Nevertheless, there is no protection whatsoever in between the firewall and the computers, i.e. the Local Area Network (LAN) is still open for attacks. You might say that the antivirus would perform the job of preventing network worms from infecting the computer, so there would be no issue but imagine the following scenario. A rogue machine (e.g. visitor's notebook) connects to the network. Since this is an outsider, it would be difficult to ascertain if it is protected or even if it is already been infected. In such even, the worm from this rogue machine would start flooding the network and this definitely leads to productivity loss.

There is a loophole in such protection where if a worm manages to get into the local network, even though most users in the network has an antivirus protected machines they will still experience the effects of worm attack (e.g. network slowdown) from infected machines. The activity brings down the network

The task of finding infected machines requires knowledge of network and advanced tools used by experts. J-iNet Personal provides protection to the network portion (LAN) left out by the two approaches (IDS and antivirus) for complete protection . j-iNet Personal has the ability to complete antivirus and IDS in a seamless and synergizing approach. The approach taken by iNet Personal is to minimize user intervention by automating as much as possible. iNet Personal uses a novel proprietary detection engine based on the actual activity of the worm attempting to propagate itself. It boasts a complete database of current worms and provides solutions on how to fix the problem.

iNet Personal Technology

The circular buffer is designed in a way that it will avoid packet loss. We also propose new High Level Circular Buffer (HLCB) algorithm used to control our circular buffer technology. The algorithm will split the activity of capturing packets and analyzing packets into two separate processes. That is, instead of using threads, which is more likely to be error prone and cannot run concurrently, the proposed circular buffer algorithm uses different operating system process to do the task. Hence, the issues of racing threads, where the capture thread and the analyzer thread race each other to gain spot at the CPU, can be avoided 

buffer1.jpg
 

 
Since the proposed circular buffer technology use two different processes to allow fast processing, the proposed HLCB algorithm is divided into two parts, HLCB1 and HLCB2. The first one is designed to control the first process which is part of the packet capturing process, and the second one is specifically designed to enable second process to read up the packets from the circular file buffer smoothly avoiding the producer-consumer problem

iNet Personal engine passively listens to incoming/outgoing packets from the network and matches these packets to the database. Worms traverse through the network leaves certain signatures on the packet itself. These signatures are part of the packet payload. Signatures could be file attachment names, file extensions, email subjects, email content and key words. Each packet’s payload is then matched against available signature. 

parser.jpg
  
Since iNet Personal Engine is a passive monitoring tool, it’s able to capture network packets while preserving network resources. The packets are then matched by an in-house researched worm signature and intelligent matching engine. This approach is not implemented on any other commercially available monitoring software.

iNet Personal comes with a proprietary detection engine based on the actual activity of the worm trying to propagate itself. It boasts a complete database of current worms and provides solutions on how to fix the problem.

iNet Personal main interface, display a worm warning message. When a worm is detected in the network, an alarm with the recommended solution is presented to the user. There are no dependencies on specific hardware. A PC with a network card running Windows is sufficient. 

worm1.jpg
 

iNet Personal explanation and solution pane displays explanation on the detected worm and the removal instructions.

worm2.jpg


iNet Personal Screenshots

 

worm.jpg

worm1.jpg

buffer.jpg

parser.jpg

 

 

 

iNet Personal Features

In light of this, iNetmon researched and developed iNet Personal to tackle the rising threats of worms and other Internet security issues that plague the internet user. At present, iNet Personal is a one of a kind tool that tracks and warns the user of malicious worms and other security treats on the network as well as within your computer...

Read more...

iNet Personal Benefits

iNet Personal introduces a new approach to worm monitoring; it monitors the area left out by the two other current approaches.

  • New approach to worm monitoring; monitor and protect not only against individual PC but also network segments.
  • Worm signature database, complete with explanation, expert solution and recommendation to all known worms in the net.
Read more...