Hosts
    
        No hosts contacted.
    
 
        
        
    TCP
    
        
            
                
                    
                        | Source | 
                        Source Port | 
                        Destination | 
                        Destination Port | 
                    
                    
                        
                            | 192.168.56.101 | 
                            49223 | 
                            113.108.239.130 r1---sn-j5o76n7e.gvt1.com | 
                            80 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            49222 | 
                            203.208.41.65 redirector.gvt1.com | 
                            80 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            49221 | 
                            203.208.41.66 update.googleapis.com | 
                            443 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            49224 | 
                            58.63.233.69 r4---sn-j5o76n7l.gvt1.com | 
                            80 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            49177 | 
                            99.86.217.83 dl.iwin.com | 
                            80 | 
                        
                    
                
             
            
         
    
 
        
    UDP
    
        
            
                
                    
                        | Source | 
                        Source Port | 
                        Destination | 
                        Destination Port | 
                    
                    
                        
                            | 192.168.56.101 | 
                            49235 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            50534 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            50568 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            51808 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            56539 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            57874 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            58367 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            60384 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            61680 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            62318 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            65004 | 
                            114.114.114.114  | 
                            53 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            137 | 
                            192.168.56.255  | 
                            137 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            138 | 
                            192.168.56.255  | 
                            138 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            123 | 
                            20.189.79.72 time.windows.com | 
                            123 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            49713 | 
                            224.0.0.252  | 
                            5355 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            51378 | 
                            224.0.0.252  | 
                            5355 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            53380 | 
                            224.0.0.252  | 
                            5355 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            55368 | 
                            224.0.0.252  | 
                            5355 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            56804 | 
                            224.0.0.252  | 
                            5355 | 
                        
                    
                        
                            | 192.168.56.101 | 
                            57756 | 
                            224.0.0.252  | 
                            5355 | 
                        
                    
                
             
            
         
    
 
        
HTTP & HTTPS Requests
    
        | URI | 
        Data | 
    
    
    
        | http://redirector.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe | 
        HEAD /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: redirector.gvt1.com
  | 
    
    
    
        | http://r4---sn-j5o76n7l.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?mh=ms&mvi=4&pl=17&shardbypass=yes&redirect_counter=1&rm=sn-j5oe7e&req_id=1f535ae1b120921&cms_redirect=yes&ipbypass=yes&mip=59.50.85.28&mm=28&mn=sn-j5o76n7l&ms=nvh&mt=1619908093&mv=m | 
        GET /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?mh=ms&mvi=4&pl=17&shardbypass=yes&redirect_counter=1&rm=sn-j5oe7e&req_id=1f535ae1b120921&cms_redirect=yes&ipbypass=yes&mip=59.50.85.28&mm=28&mn=sn-j5o76n7l&ms=nvh&mt=1619908093&mv=m HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
If-Unmodified-Since: Tue, 13 Apr 2021 03:03:58 GMT
Range: bytes=0-6720
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: r4---sn-j5o76n7l.gvt1.com
  | 
    
    
    
        | http://dl.iwin.com/games/GamesManagerInstaller.exe | 
        GET /games/GamesManagerInstaller.exe HTTP/1.0
Host: dl.iwin.com
User-Agent: NSISDL/1.2 (Mozilla)
Accept: */*
  | 
    
    
    
        | http://r1---sn-j5o76n7e.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?cms_redirect=yes&mh=ms&mip=202.100.214.105&mm=28&mn=sn-j5o76n7e&ms=nvh&mt=1619907720&mv=u&mvi=1&pl=23&shardbypass=yes | 
        HEAD /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?cms_redirect=yes&mh=ms&mip=202.100.214.105&mm=28&mn=sn-j5o76n7e&ms=nvh&mt=1619907720&mv=u&mvi=1&pl=23&shardbypass=yes HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: r1---sn-j5o76n7e.gvt1.com
  | 
    
    
    
        | http://r4---sn-j5o76n7l.gvt1.com/edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?mh=ms&mvi=4&pl=17&shardbypass=yes&redirect_counter=1&rm=sn-j5oe7e&req_id=1f535ae1b120921&cms_redirect=yes&ipbypass=yes&mip=59.50.85.28&mm=28&mn=sn-j5o76n7l&ms=nvh&mt=1619908093&mv=m | 
        HEAD /edgedl/release2/update2/AIUdiWYcaIvMz1IBNCM0PPo_1.3.36.82/GoogleUpdateSetup.exe?mh=ms&mvi=4&pl=17&shardbypass=yes&redirect_counter=1&rm=sn-j5oe7e&req_id=1f535ae1b120921&cms_redirect=yes&ipbypass=yes&mip=59.50.85.28&mm=28&mn=sn-j5o76n7l&ms=nvh&mt=1619908093&mv=m HTTP/1.1
Connection: Keep-Alive
Accept: */*
Accept-Encoding: identity
User-Agent: Microsoft BITS/7.5
X-Old-UID: cnt=0
X-Last-HR: 0x0
X-Last-HTTP-Status-Code: 0
X-Retry-Count: 0
X-HTTP-Attempts: 1
Host: r4---sn-j5o76n7l.gvt1.com
  | 
    
    
 
        ICMP traffic
No ICMP traffic performed.
 
        IRC traffic
No IRC requests performed.
 
        Suricata Alerts
    No Suricata Alerts
Suricata TLS
    No Suricata TLS
 
        Snort Alerts
    No Snort Alerts