Index of /publicDatasets/CTU-Malware-Capture-Botnet-110-5

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]2015-04-23_capture-win9.biargus2017-04-25 09:43 318K 
[   ]2015-04-23_capture-win9.binetflow2017-04-25 09:43 39K 
[   ]2015-04-23_capture-win9.capinfos2017-04-25 09:43 1.1K 
[   ]2015-04-23_capture-win9.dnstop2017-04-25 09:43 14K 
[TXT]2015-04-23_capture-win9.html2015-04-23 13:35 528K 
[   ]2015-04-23_capture-win9.json2015-04-23 13:35 161K 
[   ]2015-04-23_capture-win9.passivedns2017-04-25 09:43 23K 
[   ]2015-04-23_capture-win9.pcap2017-04-25 09:43 5.9M 
[   ]2015-04-23_capture-win9.rrd2015-04-23 13:32 8.0M 
[   ]2015-04-23_capture-win9.tcpdstat2017-04-25 09:43 1.7K 
[   ]2015-04-23_capture-win9.uniargus2017-04-25 09:43 321K 
[   ]2015-04-23_capture-win9.uninetflow2017-04-25 09:43 128K 
[   ]2015-04-23_capture-win9.weblogng2016-06-15 17:44 21K 
[TXT]README.html2017-04-25 09:43 348  
[TXT]README.md2015-04-23 13:34 222  
[DIR]bro/2017-04-25 09:43 -  
[   ]e515267ba19417974a63b51e4f7dd9e9.exe.zip2015-12-16 10:26 39K 
[TXT]fast-flux-dga-first-analysis.txt2017-04-25 09:43 44K 

Timeline

Wed Apr 22 11:52:04 CEST 2015

Started win9 already infected

Thu Apr 22 18:10 CEST 2015

Approximately at this hour the VM was powered off alone. Weird.