This technical report describes a set of tools and techniques to capture and analyse virus-generated IP network traffic. We analyse seven viruses, worms, trojans and spyware that are common in Microsoft Windows environments. We log and analyse the IP traffic generated in the roughly 15 minutes after each infection. Based on the resulting IP traffic patterns we estimate the likely financial impact of having an infected PC connected to a consumer-grade, broadband Internet connection.