Description

Files
- .capinfos
- .dnstop
- .mitm
- Mitm proxy interception file of http and https
- .passivedns
- .pcap
- .rrd
- .weblogng
- .exe.zip
- bro
- Folder with all the bro output files
- .biargus
- Argus binary file with all the flows
- .binetflow
- Argus text file with bidirectional flows. Report time 3600 secs.
IP Addresses
- Infected hosts: Win7, IP: 10.0.2.119, Name: Win19
Timeline
Sat Aug 31 12:08:45 CEST 2013
Win19 infected running the installation, didnt submit any account, hit cancle.