Index of /publicDatasets/CTU-Malware-Capture-Botnet-112-2

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]919a8a6d873bb2a7263d8309249726fd.exe.zip2016-05-28 12:51 149K 
[   ]2015-04-09_capture-win11.biargus2015-06-06 16:04 287M 
[   ]2015-04-09_capture-win11.binetflow2015-09-17 16:52 295M 
[   ]2015-04-09_capture-win11.capinfos2016-03-19 12:52 767  
[   ]2015-04-09_capture-win11.customized.https.weblog2015-06-06 14:35 66M 
[   ]2015-04-09_capture-win11.dnstop2016-03-19 12:51 24K 
[   ]2015-04-09_capture-win11.first100000.biargus2016-12-06 08:08 1.3M 
[   ]2015-04-09_capture-win11.first100000.binetflow2016-12-06 08:08 465K 
[   ]2015-04-09_capture-win11.first100000.capinfos2016-03-19 12:50 776  
[   ]2015-04-09_capture-win11.first100000.dnstop2016-03-19 12:50 11K 
[TXT]2015-04-09_capture-win11.first100000.html2015-06-07 15:36 18M 
[   ]2015-04-09_capture-win11.first100000.json2015-06-07 15:36 32M 
[   ]2015-04-09_capture-win11.first100000.passivedns2016-03-19 12:50 18K 
[   ]2015-04-09_capture-win11.first100000.pcap2015-06-07 15:35 35M 
[   ]2015-04-09_capture-win11.first100000.tcpdstat2016-12-06 08:08 2.0K 
[   ]2015-04-09_capture-win11.first100000.uniargus2016-12-06 08:08 4.8M 
[   ]2015-04-09_capture-win11.first100000.uninetflow2016-12-06 08:08 2.0M 
[   ]2015-04-09_capture-win11.first200000.biargus2016-12-06 08:08 2.1M 
[   ]2015-04-09_capture-win11.first200000.binetflow2016-12-06 08:08 758K 
[   ]2015-04-09_capture-win11.first200000.capinfos2016-03-19 12:50 776  
[   ]2015-04-09_capture-win11.first200000.dnstop2016-03-19 12:50 21K 
[TXT]2015-04-09_capture-win11.first200000.html2015-06-07 16:26 64M 
[   ]2015-04-09_capture-win11.first200000.json2015-06-07 16:26 110M 
[   ]2015-04-09_capture-win11.first200000.passivedns2016-03-19 12:50 31K 
[   ]2015-04-09_capture-win11.first200000.pcap2015-06-07 15:41 64M 
[   ]2015-04-09_capture-win11.first200000.tcpdstat2016-12-06 08:08 2.0K 
[   ]2015-04-09_capture-win11.first200000.uniargus2016-12-06 08:08 8.9M 
[   ]2015-04-09_capture-win11.first200000.uninetflow2016-12-06 08:08 3.5M 
[   ]2015-04-09_capture-win11.passivedns2016-03-19 12:51 1.2M 
[   ]2015-04-09_capture-win11.pcap2015-04-08 22:04 3.9G 
[   ]2015-04-09_capture-win11.rrd2015-04-08 22:04 8.0M 
[   ]2015-04-09_capture-win11.tcpdstat2016-12-06 08:08 2.3K 
[   ]2015-04-09_capture-win11.uniargus2016-12-06 08:09 276M 
[   ]2015-04-09_capture-win11.uninetflow2016-12-06 08:09 113M 
[   ]2015-04-09_capture-win11.vweblog2015-06-06 13:16 58M 
[   ]2015-04-09_capture-win11.weblog2015-06-06 13:06 50M 
[   ]2015-04-09_capture-win11.weblogng2017-01-15 16:34 946K 
[TXT]README.html2017-01-15 16:34 408  
[TXT]README.md2015-06-12 14:28 277  
[DIR]bro/2017-08-31 09:45 -  
[TXT]emails-and-passwords2.txt2015-06-07 12:24 339K 
[TXT]fast-flux-dga-first-analysis.txt2017-01-15 16:34 31K 
[IMG]htbot-1.png2015-06-06 13:25 27K 
[IMG]htbot-first-half.png2015-06-06 13:25 24K 
[IMG]htbot-first 16th.png2015-06-06 13:25 26K 
[IMG]htbot-first 32th.png2015-06-06 13:25 20K 
[IMG]htbot-first 64th.png2015-06-06 13:25 25K 
[IMG]htbot-first 128th.png2015-06-06 13:25 22K 
[IMG]htbot-first 256th.png2015-06-06 13:25 18K 
[IMG]htbot-first eigth.png2015-06-06 13:25 16K 
[IMG]htbot-first quarter.png2015-06-06 13:25 22K 

Timeline

Mon Mar 9 15:14:27 CET 2015

win11 started already infected with 919a8a6d873bb2a7263d8309249726fd. The server froze. The previous capture is 112-1

Thu Apr 9 14:00:49 CEST 2015

yesterday it froze