windows is Downloading from port 80 from this IP...Is this normal?


Recommended Posts

windows is Downloading from port 80 from this IP: 94.245.68.215 (Severvice host ....)As noted by

 

Kaspersly network monitor interface.It used 75% of my download speed (1MB/S)..this is suspecious activity, I persume.

 

Is this normal?why would it need to do so?

 

Link to comment
Share on other sites

That IP was belong to:

http://www.ip-adress.com/reverse_ip/94.245.68.215

 

whois: http://www.ip-adress.com/whois/cds76.zrh9.msecn.net

 

Updated Date

05/12/2013

Expiration Date

05/15/2014

Registrant

Domain Administrator

Microsoft Corporation

One Microsoft Way

Redmond, WA 98052-6399

UN

Telephone: 14258828080

Email: domains@microsoft.com

Administrative Contact

Domain Administrator

Microsoft Corporation

One Microsoft Way

Redmond, WA 98052-6399

UN

Telephone: 14258828080

Email: domains@microsoft.com

Technical Contact

MSN Hostmaster

Microsoft Corporation

One Microsoft Way

Redmond, WA 98052

UN

Telephone: 14258828080

Email: msnhst@microsoft.com

Nameservers

ns1.msecn.net

ns5.msecn.net

ns2.msecn.net

ns4.msecn.net

ns3.msecn.net

 

probably one local server of Microsoft UK

Link to comment
Share on other sites

It's Microsoft hacking your computer because you have:

a) downloading that new movie;

b) watching that unpaid pr0n;

c) have a pirated windows version.

 

so yeah, they got you! :laugh:

  • Like 3
Link to comment
Share on other sites

Does Windows Update (via Control Panel) show any updates have been installed or when the last check for updates was? You should find it corresponds with the time you saw the connection to Microsofts servers. Or it could be the Customer Experience Improvement Program sending data. You can disable this (if you wish) threw Task Scheduler.

 

All in it`s fine, nothing to be alarmed about...

Link to comment
Share on other sites

are you kidding me? Is my pc hacked?

 

This is pretty serious for me.Please clarify

 

No, you weren't hacked, sorry for joking around! You might want to check the Windows Update History to see which days it installed updates and see if it corresponds with the days you see that traffic; anyways that IP is from a Microsoft server from UK, you didn't download any ISO from Microsoft or installed updates recently?

 

So yeah, you are safe but you might hide those movies, pr0n and pay for a Windows license! j/k

Link to comment
Share on other sites

This topic is now closed to further replies.