Index of /publicDatasets/CTU-Malware-Capture-Botnet-59

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[DIR]bro/2017-08-31 09:45 -  
[TXT]README.md2015-08-28 22:37 560  
[TXT]README.html2015-08-28 22:37 861  
[   ]2014-03-12_capture-win15.passivedns2015-08-28 22:37 4.2K 
[   ]2014-03-12_capture-win15.dnstop2015-08-28 22:37 4.6K 
[   ]2014-03-12_capture-win15.weblogng2016-06-15 19:06 13K 
[   ]af65832c64980e57bf68eb15a4218f0b.exe.zip2015-12-16 10:26 596K 
[TXT]2014-03-12_capture-win15.html2015-04-09 15:04 941K 
[   ]2014-03-12_capture-win15.json2015-04-09 15:04 1.0M 
[   ]2014-03-12_capture-win15.rrd2014-03-12 09:46 8.0M 
[   ]2014-03-12_capture-win15.pcap2014-03-12 09:42 40M 

Analysis

Timeline

Fri Feb 28 21:56:12 CET 2014

started win15

Fri Feb 28 22:06:33 CET 2014

infected

Fri Feb 28 22:08:47 CET 2014

click on install the fake internet explorer download manager

Fri Feb 28 22:12:01 CET 2014

click on finish

Wed Mar 12 09:46:26 CET 2014

poweroff win15. It downloaded that program and then did nothing...

Not botnet perhaps?