Suspicious data downloaded from airtel

phoenixankit

Newbie
Messages
57
Location
NA
ISP
Airtel
Yesterday I noticed that I'm getting around 8-10 kBps download speed, instead of ~32kBps that I should be getting. I'm on a 256kbit unltd Airtel connection.
I decided to investigate into the matter, and I downloaded NBMonitor.

Today, again I noticed the same thing. I checked in NBMonitor, and the results were surprising.



My computer is receiving(pretty fast) and sending data(at a very low rate) to a particular IP address via svchost.exe, which is a windows system process responsible for networking.
I whois'd that IP address, and turns out it's an Airtel IP address.

Can someone here, more knowledgable than be tell me what can be the cause of this data recieved from airtel? Or should I directly talk to customer care (I doubt they'll know much about this)? (Recieved data has reached 20MB, sent data 500KB and rising, as I type).
I know SVChost sends and recieved data to airtel's DNS servers, which is absolutely necessary, but this is NOT a DNS server, and there can't be 20MB and rising worth of DNS data.

EDIT: Looks like activity from that address has stopped at 39.1MB received 800KB sent.
 
Back