[   ]2017-05-01_normal.biargus2017-10-05 12:12 19M 
[   ]2017-05-01_normal.binetflow2017-10-05 12:12 2.9M 
[   ]2017-05-01_normal.capinfos2017-10-05 12:12 1.1K 
[   ]2017-05-01_normal.dnstop2017-10-05 12:12 21K 
[   ]2017-05-01_normal.passivedns2017-10-05 12:12 1.3M 
[   ]2017-05-01_normal.pcap2017-05-01 14:58 436M 
[   ]2017-05-01_normal.tcpdstat2017-10-05 12:12 2.0K 
[   ]2017-05-01_normal.weblogng2017-10-05 12:12 2.7M 
[TXT]README.html2019-03-23 13:37 3.3K 
[TXT]README.md2019-03-23 13:37 2.7K 
[DIR]bro/2017-05-02 19:37 -  
[DIR]suricata/2019-03-23 14:41 -  



IP Addresses

- Normal host:
- Default GW:


2017/05/01 13:00:00 CEST


websites: 150-240 websites from

2017/05/01 15:00:00 CEST



These files were generated in the Stratosphere Lab as part of the Malware Capture Facility Project in the CVUT University, Prague, Czech Republic. The goal is to store long-lived real botnet traffic and to generate labeled netflows files. Any question feel free to contact us: Sebastian Garcia:

You are free to use these files as long as you reference this project and the authors as follows: Garcia, Sebastian. Malware Capture Facility Project. Retrieved from