Index of /publicDatasets/CTU-Normal-28

[ICO]NameLast modifiedSizeDescription

[PARENTDIR]Parent Directory  -  
[   ]2017-05-01_normal.biargus2017-10-05 12:11 7.3M 
[   ]2017-05-01_normal.binetflow2017-10-05 12:11 1.1M 
[   ]2017-05-01_normal.capinfos2017-10-05 12:11 1.1K 
[   ]2017-05-01_normal.dnstop2017-10-05 12:10 21K 
[   ]2017-05-01_normal.passivedns2017-10-05 12:10 584K 
[   ]2017-05-01_normal.pcap2017-05-01 04:48 137M 
[   ]2017-05-01_normal.tcpdstat2017-10-05 12:11 2.0K 
[   ]2017-05-01_normal.weblogng2017-10-05 12:11 604K 
[TXT]README.html2019-03-23 13:37 3.3K 
[TXT]README.md2019-03-23 13:37 2.7K 
[DIR]bro/2017-05-02 19:36 -  
[DIR]suricata/2019-03-23 14:42 -  



IP Addresses

- Normal host:
- Default GW:


2017/04/30 23:00:00 CEST

websites: twiter account, 61-120 websites from

2017/05/01 03:10:00 CEST



These files were generated in the Stratosphere Lab as part of the Malware Capture Facility Project in the CVUT University, Prague, Czech Republic. The goal is to store long-lived real botnet traffic and to generate labeled netflows files. Any question feel free to contact us: Sebastian Garcia:

You are free to use these files as long as you reference this project and the authors as follows: Garcia, Sebastian. Malware Capture Facility Project. Retrieved from