Malware Traffic

Hot
1645

DFIR Tools

License Type
Free
Test Images and CTFs
CTF & Challenges
Captured malware traffic from honeypots, sandboxes or real world intrusions.

Contagio Malware Dump: Collection of PCAP files categorized as APT, Crime or Metasplot
http://contagiodump.blogspot.com/2013/04/collection-of-pcap-files-from-malware.html
(the PCAP archive is hosted on DropBox and MediaFire )
 WARNING: The password protected zip files contain real malware
 Also see Contagio's PCAP files per case: 


 Malware analysis blog that shares malware as well as PCAP files
http://malware-traffic-analysis.net/

 GTISK PANDA Malrec - PCAP files from malware samples run in PANDA, created by @moyix and GTISK
http://panda.gtisc.gatech.edu/malrec/

 Stratosphere IPS - PCAP and Argus datasets with malware traffic, created by Sebastian Garcia ( @eldracote ) at the ATG group of the Czech Technical University
https://www.stratosphereips.org/datasets-overview/

 VM execution of info-stealer malware. Created by the Services, Cybersecurity and Safety research group at University of Twente.
http://scs.ewi.utwente.nl/downloads/

 Regin malware PCAP files, created by @moyix (see his blog post )
http://laredo-13.mit.edu/~brendan/regin/pcap/

Ponmocup malware/trojan (a.k.a. Milicenso) PCAP by Tom Ueltschi a.k.a. @c_APT_ure
https://download.netresec.com/pcap/ponmocup/vm-2.pcap
Also see original source (password protected zip) and analysis writeup (text) 

 PCAP file with PowerShell Empire (TCP 8081) and SSL wrapped C2 (TCP 445) traffic from CERT.SE's technical writeup of the major fraud and hacking criminal case "B 8322-16".
https://drive.google.com/open?id=0B7pTM0QU5apSdnF0Znp1Tko0ams

 Free malware analysis sandbox. Malware samples can be uploaded or searched, PCAP files from sandbox execution can be downloaded.
https://hybrid-analysis.com/

 Online client honeypot for sharing, browsing and analyzing web-based malware. PCAP download available for analyzed sites.
http://threatglass.com/

 Shadowbrokers PCAPs by Eric Conrad , including ETERNALBLUE and ETERNALROMANCE.
https://www.dropbox.com/sh/kk24ewnqi9qjdvt/AACj7AHJrDHQeyJTuo1oBqeQa

User comments

There are no user comments for this listing.