Logs and dropped files from RPi SSH honeypot
dl/ - files downloaded using wget, curl
log/ - SSH access logs, tty recordings
kaiten/ - malware found on previous honeypot
-
Kaiten: http://www.infosecurity-magazine.com/news/kaiten-malware-returns-to-threaten/
-
C&C: 91.226.50.92 (arrabiata1.ddns.net, arrabiata2.ddns.net, arrabiata3.ddns.net)