Q&A Too many dns queries to edgedl.me.gvt1.com

Upendra19

Level 5
Mar 5, 2019
216
I saw too many dns queries to edgedl.me.gvt1.com followed by www.google.com in nextdns logs and also in Yogadns screen logs which is related to Google Chrome download or update but I don't have Chrome installed or neither have downloaded installer. I scanned pc with Malwarebytes, Adwcleaner and NPE but no detection. I don't know which software is causing this. Is there any way to findout which software is making these queries?
 

Upendra19

Level 5
Mar 5, 2019
216
I found out that it is svhost.exe. Is there any chances that system is infected cause I don't have Chrome or any other google software installed?
 
  • Like
Reactions: Nevi

JoyousBudweiser

Level 12
Verified
Aug 22, 2013
587
I found out that it is svhost.exe. Is there any chances that system is infected cause I don't have Chrome or any other google software installed?
Do you have any " not so original" software installed?

PING edgedl.me.gvt1.com (34.104.35.123) 56(84) bytes of data.
64 bytes from 123.35.104.34.bc.googleusercontent.com (34.104.35.123): icmp_seq=1 ttl=108 time=1.97 ms
64 bytes from 123.35.104.34.bc.googleusercontent.com (34.104.35.123): icmp_seq=2 ttl=108 time=1.93 ms
64 bytes from 123.35.104.34.bc.googleusercontent.com (34.104.35.123): icmp_seq=3 ttl=108 time=4.65 ms
64 bytes from 123.35.104.34.bc.googleusercontent.com (34.104.35.123): icmp_seq=4 ttl=108 time=1.98 ms
64 bytes from 123.35.104.34.bc.googleusercontent.com (34.104.35.123): icmp_seq=5 ttl=108 time=3.67 ms

--- edgedl.me.gvt1.com ping statistics ---
5 packets transmitted, 5 received, 0% packet loss, time 4004ms
rtt min/avg/max/mdev = 1.930/2.843/4.650/1.121 ms
traceroute to edgedl.me.gvt1.com (34.104.35.123), 30 hops max, 60 byte packets
1 ip-10-0-0-14.ec2.internal (10.0.0.14) 0.384 ms 0.382 ms 0.359 ms
2 216.182.231.48 (216.182.231.48) 17.911 ms 216.182.238.155 (216.182.238.155) 5.944 ms 216.182.239.195 (216.182.239.195) 59.042 ms
3 100.65.120.80 (100.65.120.80) 4.876 ms 100.66.36.26 (100.66.36.26) 2.322 ms 100.66.9.236 (100.66.9.236) 19.387 ms
4 100.66.60.72 (100.66.60.72) 22.197 ms 100.66.14.184 (100.66.14.184) 13.583 ms 100.66.40.162 (100.66.40.162) 5.641 ms
5 100.66.43.108 (100.66.43.108) 13.165 ms 100.66.43.152 (100.66.43.152) 7.344 ms 241.0.4.193 (241.0.4.193) 1.089 ms
6 240.0.40.28 (240.0.40.28) 1.067 ms 241.0.4.204 (241.0.4.204) 0.815 ms 240.0.40.25 (240.0.40.25) 0.828 ms
7 242.0.170.145 (242.0.170.145) 0.828 ms 240.0.40.30 (240.0.40.30) 0.937 ms 242.0.170.145 (242.0.170.145) 0.905 ms
8 52.93.28.177 (52.93.28.177) 1.548 ms 52.93.28.169 (52.93.28.169) 1.435 ms 52.93.28.173 (52.93.28.173) 1.747 ms
9 100.100.34.40 (100.100.34.40) 1.378 ms 52.93.28.191 (52.93.28.191) 1.709 ms 52.93.28.173 (52.93.28.173) 1.594 ms
10 100.100.4.4 (100.100.4.4) 1.407 ms 99.83.65.3 (99.83.65.3) 1.794 ms 100.95.7.65 (100.95.7.65) 2.522 ms
11 108.170.246.33 (108.170.246.33) 2.919 ms 100.95.7.49 (100.95.7.49) 2.162 ms 108.170.246.65 (108.170.246.65) 5.898 ms
12 100.100.4.12 (100.100.4.12) 1.821 ms 100.100.4.2 (100.100.4.2) 1.743 ms 142.251.70.84 (142.251.70.84) 2.164 ms
13 142.250.232.96 (142.250.232.96) 1.970 ms 99.83.65.3 (99.83.65.3) 2.016 ms 108.170.246.33 (108.170.246.33) 3.417 ms
14 142.251.49.162 (142.251.49.162) 2.331 ms 108.170.246.33 (108.170.246.33) 3.089 ms 123.35.104.34.bc.googleusercontent.com (34.104.35.123) 1.999 ms
 
Last edited:

Upendra19

Level 5
Mar 5, 2019
216
Top