Description

Timeline

Fri Apr 29 21:23:20 CEST 2016

Started win2

Fri Apr 29 21:42:37 CEST 2016

infected successfully

Analysis

It is using DGA, and is the fasted DGA I ever saw.

Sun May 1 10:56:23 CEST 2016

Restarted the windows because it stopped sending packets. It didn't worked.