Well, thanks [MENTION=92]YoshiEnVerde[/MENTION], your analysis pretty much solves the mistery xD.
Though I'd really like to be able to analyse the code further, but the conclusions makes sense to me, so I agree.

Didn't even wanted to use WireShark, but I guess there's no problem in just sniffing some packages and observe traffic.