Index of /publicDatasets/CTU-Malware-Capture-Botnet-182-1

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]2016-06-22_win17.biargus2016-09-04 16:50 297K 
[   ]2016-06-22_win17.binetflow2016-09-04 16:50 344K 
[   ]2016-06-22_win17.capinfos2016-09-04 16:47 1.1K 
[   ]2016-06-22_win17.dnstop2016-09-04 16:47 2.4K 
[TXT]2016-06-22_win17.html2016-09-04 16:49 424K 
[   ]2016-06-22_win17.json2016-09-04 16:49 151K 
[   ]2016-06-22_win17.passivedns2016-09-04 16:47 2.4K 
[   ]2016-06-22_win17.pcap2016-07-12 07:31 4.5M 
[   ]2016-06-22_win17.rrd2016-07-12 07:30 8.0M 
[   ]2016-06-22_win17.tcpdstat2016-09-04 16:47 1.5K 
[   ]2016-06-22_win17.uniargus2016-12-05 22:14 3.0M 
[   ]2016-06-22_win17.uninetflow2016-12-05 22:14 2.0M 
[   ]2016-06-22_win17.weblogng2016-09-04 16:47 747  
[TXT]README.html2017-01-13 14:10 1.9K 
[TXT]README.md2016-09-20 21:42 1.3K 
[DIR]bro/2017-08-31 09:45 -  
[   ]d90a06855c6e4a03f6e5939a6b2a2e40.exe.zip2016-09-04 16:46 608K 
[TXT]fast-flux-dga-first-analysis.txt2017-01-13 14:10 3.5K 

Description

Files

IP Addresses

- Infected host: 10.0.2.117
- Default GW: 10.0.2.1

Timeline

Wed Jun 22 01:56:21 CEST 2016

started win17

Wed Jun 22 02:01:52 CEST 2016

infected

Tue Jul 12 07:30:35 CEST 2016

power off