Index of /publicDatasets/CTU-Malware-Capture-Botnet-184-1

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]34db7f97e0856941ed9c35716700d2a6.exe.zip2016-09-04 20:40 147K 
[   ]2016-07-29_winn3.biargus2017-01-24 10:17 2.4M 
[   ]2016-07-29_winn3.binetflow2017-01-24 10:17 1.3M 
[   ]2016-07-29_winn3.capinfos2017-01-24 10:17 1.1K 
[   ]2016-07-29_winn3.dnstop2017-01-24 10:17 10K 
[TXT]2016-07-29_winn3.html2016-09-04 20:42 63M 
[   ]2016-07-29_winn3.json2016-09-04 20:42 137M 
[   ]2016-07-29_winn3.passivedns2017-01-24 10:17 26K 
[   ]2016-07-29_winn3.pcap2016-07-30 14:16 55M 
[   ]2016-07-29_winn3.rrd2016-07-30 14:16 8.0M 
[   ]2016-07-29_winn3.tcpdstat2017-01-24 10:17 2.1K 
[   ]2016-07-29_winn3.uniargus2017-01-24 10:17 8.4M 
[   ]2016-07-29_winn3.uninetflow2017-01-24 10:17 5.0M 
[   ]2016-07-29_winn3.weblogng2017-01-24 10:17 60K 
[TXT]README.html2017-01-24 10:17 2.1K 
[TXT]README.md2016-09-04 20:54 1.5K 
[DIR]bro/2017-08-31 09:45 -  
[TXT]fast-flux-dga-first-analysis.txt2017-01-24 10:17 62K 

Description

Files

IP Addresses

- Infected host: 192.168.1.102
- Default GW: 192.168.1.1

Timeline

Fri Jul 29 14:21:24 CEST 2016

started win normal 3

Fri Jul 29 14:23:09 CEST 2016

infected

Connected to 31.184.235.246

Sat Jul 30 14:16:14 CEST 2016

power off