Modem send/receive stats I have a broadband connection and when I check the send receive stats. my modem is sending out more data than am receivng... For instance like now I have been online for 25 minutes just general web surfing, ie. no downloading files. Sent is 13,000,000 bytes Received is 6,000,000 bytes Is this normal? Is there any software which will identify where its going or what the data is?
Yeah McAfee Virus scan 6.... Summat aint right am sure.... tis constantly sending... stats now read... sent : 16,000.000 bytes received: 8,000,000 bytes
tis only a few days old. Am running a check now. Installed etherel.... have no idea how to use it though mate, got 3 executables... I downloaded WinPcap?
go into dos prompt type in netstat -a have a look thru see if any unusual connections to your machine... doesnt seem normal for so much outbound traffic if all u are doin is web browsing.. u sure u aint got anythin auto loaded in background? kazza or sum shit like that?
Nothing runnin in background other than winamp and msn messenger. Sent is 19Mb and received 10Mb!!! Right have run netstat mate.... Got quite a list, dunno what I'm looking for though really... long list of TCP connections, all listening smtp.fsmail.net TIME_WAIT and theres 4 Established connection to ip addresses and a list of UDP
basically jus lookin for summit which cud be someone connected to your machine... for the ip addresses that aint yours....type in ping -a ip this will resolve it to a host...see if any seem like someones connection.... also - you did full virus/trojan scan yeah?
types ping -a ip Ping request could not find host ip. please check the name and try again. Ran the virus scan. nothing found.
Did you install wincap and ethereal? If so start ethereal Click capture then start Then click ok. Leave it for 2 mins then press stop You can now see all incoming and outgoing traffic. This should help you find the problem
stupid me... I realise u meant type the ip address not the word... ok so for the ip address above... timed out a couple of times then, packets sent=4 received =0 lost=4 (100% loss) So go on then tell me what that means please... i did actually do Information systems at uni... so I aint a complete retard but I aint ever done out like this before. Normally can sort me probs out meself but this sending data thing has got me stumped!! Just in case ya interested its sents 27Mb now compared to the 12Mb its received!!!
That ip is just messenger, see below. Trying 207.46.107.67 at ARIN Trying 207.46.107 at ARIN OrgName: Microsoft Corp OrgID: MSFT Address: One Microsoft Way City: Redmond StateProv: WA PostalCode: 98052 Country: US
thats very very strange havin 27mb send out mind!!!! especially with nothing running!! as rob says capture the packets for a few mins with ether real then have a look see what the outgoin data is!
Just curious what is taskmon.exe the windows process? Cos that seems to be constantly doing something and I know it tried or is accessing the internet through mcAfee firewall.....
ok ive installed ethereal and winPcap.. there's no interface to select when I click on start/capture??? and... i just restartedmy comp after installing mcAfee firewall, both these tried to access the internet instantly.. C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\taskmon.exe dunno if thats normal? And also to do with messenger... it came up with this... C:\Program Files\MSN Messenger\msnmsgr.exe rule violation - Outbound to TCP/IP protocol on port 443 detected this app is trying to access a resource outside of its allowed boundaries.