New
#11
These two utilities are portable you can run them without installation try one of these two utilities.
These two utilities are portable you can run them without installation try one of these two utilities.
Ok, so this is what I see in TCPView.
System 4 TCP desktop-22c5phi microsoft-ds static-200-58-75-221.supernet.com.bo 65523 ESTABLISHED 2 146 System 4 TCP desktop-22c5phi microsoft-ds static-200-58-75-221.supernet.com.bo 22498 ESTABLISHED 4 292
It is these two things that appear red, yellow and green and happen to coincide with the 8 Kbps in Task Manager Ethernet.
What is supernet.com.bo I have no idea. But this network activity is everything related to System TCP, PID 4.
You can block network connection for 200.58.72.105 ip address from your firewall or from Hosts file.
The ip is a bolivian server full info here ... WHOIS Source: LACNIC, IP Address: 200.58.72.105, Country: Bolivia, Network Name: BO-COLT2-LACNIC, Owner Name: Comteco Ltda, CIDR: 200.58.64.0/20, From IP: 200.58.64.0, To IP: 200.58.79.255, Allocated: Yes, Contact Name: Marcos Peredo, Address: Av. Ballivian, 705, -, -- - Cochabamba -, Email: *******@COMTECO.COM.BO, Phone: +591 70718065 [0000]
It's likely that the specific address is allocated or otherwise leased to an individual or company
I would be wary of the connection if you have no reasonable reason to be connected - Set up blocks as advised above
I use a wireless connection at home that isn't fast and is somewhat expensive when you use over 10GB/month. I have used this bandwidth monitoring tool before as you can set-up time schedules and many other features to capture bandwidth use. There are many others out there.
NetWorx - Download
This is scary. How can I find out what Remote address is responsible for this? Am I being attacked/hijacked? I have nothing to do with Bolivia!
All it is showing is Process, System. But I can't find any program that is associated with such IP address!
Unless this has something to do with my recent use of Windows Update Blocker/PSTools. But I am confused right now.
Though I have to admit I did disable my Windows Firewall.
But this System 4 TCP desktop-22c5phi microsoft-ds static-200-58-75-221.supernet.com.bo 24720 ESTABLISHED
Doesn't seem normal to me. Is there anyway to track down what is behind this IP address? I live in the UK and I have nothing to do with any South American country.
Scan your computer with MalwareBytes to make sure your computer not infected.
I am wondering if the "problem" could be your Update blocker?
is It possible that the blocker redirects a Microsoft Heartbeat monitor to a random reliable location so as to prevent the actual heartbeat from activating?
I have to admit that I do not run any blocking software as I do not have any issues with Updates or telemitry, so am just guessing at logical possibilities.
If this is the result of the blocking software then I would suggest that this is not an issue to worry about