Index of /publicDatasets/CTU-Malware-Capture-Botnet-167-1

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]2016-05-27_win-4.rrd2016-07-12 07:30 8.0M 
[   ]2016-05-27_win-4.pcap2016-07-12 07:31 756M 
[   ]2016-05-27_win-4.dnstop2016-08-01 22:37 2.4K 
[   ]2016-05-27_win-4.passivedns2016-08-01 22:37 4.1K 
[   ]2016-05-27_win-4.capinfos2016-08-01 22:39 758  
[   ]2016-05-27_win-4.weblogng2016-08-01 22:39 63M 
[   ]2016-05-27_win-4.tcpdstat2016-09-03 16:48 1.8K 
[TXT]README.md2016-10-11 19:55 830  
[   ]2016-05-27_win-4.netflow52016-11-04 15:30 32M 
[   ]ZeuS_binary_b73aa307e8c2328f6a7dfde1a1f024fc.exe.zip2016-12-05 21:23 536K 
[   ]2016-05-27_win-4.biargus2016-12-05 22:17 57M 
[   ]2016-05-27_win-4.binetflow2016-12-05 22:17 19M 
[TXT]fast-flux-dga-first-analysis.txt2017-01-13 20:48 7.8K 
[TXT]README.html2017-01-13 20:48 1.1K 
[DIR]bro/2017-08-31 09:45 -  

Description

Timeline

Fri May 27 19:02:25 CEST 2016

start win4

Fri May 27 19:06:25 CEST 2016

infected with ZeuS_binary_b73aa307e8c2328f6a7dfde1a1f024fc.exe

Binary taken from here https://zeustracker.abuse.ch/monitor.php?host=neorandom.dothome.co.kr