PCAP investigation summary

What happened

Host 172.17.8.109 (Dunn-Windows-PC) downloaded an executable file identified as Portable Executable (PE) format from http://91.121.30.169:8000/91msE95B/actiV.bin during the capture period.

Who was involved

What remains uncertain

Next check

Analyst-review draft. Exact evidence references and provider provenance are retained in the structured record.