Index of /publicDatasets/CTU-Malware-Capture-Botnet-156-1

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]2016-29-4_capture-win4.pcap2016-04-29 21:31 57M 
[   ]2016-29-4_capture-win4.rrd2016-04-29 21:33 8.0M 
[   ]2016-29-4_capture-win4.dnstop2016-04-29 21:34 4.5K 
[   ]2016-29-4_capture-win4.passivedns2016-04-29 21:34 3.5K 
[   ]2016-29-4_capture-win4.capinfos2016-04-29 21:34 761  
[   ]2016-29-4_capture-win4.json2016-04-29 21:36 2.1K 
[TXT]2016-29-4_capture-win4.html2016-04-29 21:36 352K 
[TXT]README.md2016-05-01 12:57 866  
[   ]5aef49f8e68a57d8e526042b8d913c14.exe.zip2016-05-28 12:53 499K 
[   ]2016-29-4_capture-win4.weblogng2016-06-15 19:07 421  
[   ]2016-29-4_capture-win4.tcpdstat2016-09-03 16:53 1.8K 
[   ]2016-29-4_capture-win4.biargus2016-12-05 22:26 624K 
[   ]2016-29-4_capture-win4.binetflow2016-12-05 22:26 324K 
[TXT]fast-flux-dga-first-analysis.txt2017-01-13 22:18 17K 
[TXT]README.html2017-01-13 22:18 1.2K 
[DIR]bro/2017-08-31 09:45 -  

Description

Timeline

Mon Apr 4 23:19:34 CEST 2016

started win4

Mon Apr 4 23:23:59 CEST 2016

infected

Tue Apr 4 07:40:00 CEST 2016 approx

The win machine stop responding

Tue Apr 5 10:11:26 CEST 2016

VM reseted using the same pcap

Fri Apr 29 21:32:53 CEST 2016

power off