Index of /publicDatasets/CTU-Malware-Capture-Botnet-207-1

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]mitm.out2016-12-05 05:55 724K 
[   ]2016-12-12_win1.rrd2016-12-05 09:57 8.0M 
[   ]2016-12-12_win1.mitm.weblog2016-12-12 15:31 55K 
[TXT]README.md2016-12-12 15:40 1.5K 
[   ]f3ff19402ae567797da10aac06fd39796c09e69749b4c93cbc3d4727922b566f.exe.zip2016-12-12 15:40 690K 
[   ]2016-12-12_win1.json2016-12-13 15:24 601K 
[TXT]2016-12-12_win1.html2016-12-13 15:24 810K 
[   ]2016-12-12_win1.biargus.5s2017-05-05 10:36 195K 
[   ]2016-12-12_win1.pcap2017-05-05 10:46 757K 
[   ]2016-12-12_win1.dnstop2017-05-05 10:46 3.3K 
[   ]2016-12-12_win1.passivedns2017-05-05 10:46 1.7K 
[DIR]bro/2017-05-05 10:46 -  
[   ]2016-12-12_win1.capinfos2017-05-05 10:46 1.1K 
[   ]2016-12-12_win1.weblogng2017-05-05 10:46 42K 
[   ]2016-12-12_win1.tcpdstat2017-05-05 10:46 1.4K 
[   ]2016-12-12_win1.biargus2017-05-05 10:46 125K 
[   ]2016-12-12_win1.binetflow2017-05-05 10:46 31K 
[TXT]fast-flux-dga-first-analysis.txt2017-05-05 10:46 7.8K 
[TXT]README.html2017-05-05 10:46 2.2K 
[   ]ra.conf.signal2017-05-05 10:55 2.1K 
[   ]2016-12-12_win1.binetflow.5s2017-05-05 14:29 94K 
[   ]CTU-207-1.features.600s2017-05-05 18:41 35K 
[   ]CTU-207-1.features.60s2017-05-05 18:42 327K 
[   ]CTU-207-1.features.3600s2017-05-05 18:42 8.5K 

Description

Files

IP Addresses

- Infected host: 192.168.1.110
- Default GW: 192.168.1.2

Timeline

Tue Nov 29 16:49:46 CET 2016

started win1

Tue Nov 29 16:52:54 CET 2016

infected

Mon Dec 5 09:57:31 CET 2016

power off