![]() | Name | Last modified | Size | Description |
---|---|---|---|---|
![]() | Parent Directory | - | ||
![]() | bro/ | 2017-08-31 09:45 | - | |
![]() | README.md | 2015-07-07 21:25 | 559 | |
![]() | README.html | 2017-01-14 17:09 | 746 | |
![]() | 2015-06-30_capture-win20.capinfos | 2015-07-07 21:25 | 763 | |
![]() | 2015-06-30_capture-win20.weblogng | 2016-06-15 19:06 | 792 | |
![]() | 2015-06-30_capture-win20.tcpdstat | 2016-12-05 22:29 | 1.9K | |
![]() | 2015-06-30_capture-win20.dnstop | 2015-08-28 21:10 | 2.4K | |
![]() | 2015-06-30_capture-win20.passivedns | 2015-08-28 21:10 | 2.5K | |
![]() | fast-flux-dga-first-analysis.txt | 2017-01-14 17:09 | 3.8K | |
![]() | fa19abacc73cc09ae00ae234ed6189ed72db64b187664484637f139964cb58b9.exe.zip | 2015-12-16 10:26 | 19K | |
![]() | 2015-06-30_capture-win20.biargus | 2015-10-15 16:14 | 113K | |
![]() | 2015-06-30_capture-win20.binetflow | 2015-10-15 16:14 | 128K | |
![]() | 2015-06-30_capture-win20.json | 2015-07-07 21:45 | 153K | |
![]() | 2015-06-30_capture-win20.html | 2015-07-07 21:45 | 433K | |
![]() | 2015-06-30_capture-win20.pcap | 2015-07-07 15:07 | 2.3M | |
![]() | 2015-06-30_capture-win20.rrd | 2015-07-07 15:16 | 8.0M | |
started win20
Tue Jun 30 15:46:39 CEST 2015 infected
It was infected successfully and it connected to some TLS ports and non known ports.
For 7 days it did nothing more. We are not sure why not.
poweroff