Hi,
Thanks in advance for any help you can provide ?
Today AVG free edition was trying to connect to an IP on
bulldogdsl.com, over the POP port.
Here is a dump from my firewall.
Any idea what this could be ?
Thanks
D
File Version : 7.1.0.338
File Description : AVG E-Mail Scanner (avgemc.exe)
File Path : C:\Program Files\Grisoft\AVG Free\avgemc.exe
Process ID : 0x670 (Heximal) 1648 (Decimal)
Connection origin : local initiated
Protocol : TCP
Local Address : 192.168.0.5
Local Port : 4265
Remote Name : host-84-9-81-96.bulldogdsl.com
Remote Address : 84.9.81.96
Remote Port : 110 (POP3 - Post Office Protocol - Version 3)
Ethernet packet details:
Ethernet II (Packet Length: 76)
Destination: 00-09-5b-3c-0e-6e
Source: 00-e0-18-ea-48-b4
Type: IP (0x0800)
Internet Protocol
Version: 4
Header Length: 20 bytes
Flags:
.1.. = Don't fragment: Set
..0. = More fragments: Not set
Fragment offset:0
Time to live: 128
Protocol: 0x6 (TCP - Transmission Control Protocol)
Header checksum: 0x9443 (Correct)
Source: 192.168.0.5
Destination: 84.9.81.96
Transmission Control Protocol (TCP)
Source port: 4265
Destination port: 110
Sequence number: 603454603
Acknowledgment number: 0
Header length: 28
Flags:
0... .... = Congestion Window Reduce (CWR): Not set
.0.. .... = ECN-Echo: Not set
..0. .... = Urgent: Not set
...0 .... = Acknowledgment: Not set
.... 0... = Push: Not set
.... .0.. = Reset: Not set
.... ..1. = Syn: Set
.... ...0 = Fin: Not set
Checksum: 0x36ac (Correct)
Data (0 Bytes)
Binary dump of the packet:
0000: 00 09 5B 3C 0E 6E 00 E0 : 18 EA 48 B4 08 00 45 00 |
...[<.n....H...E.
0010: 00 30 51 1D 40 00 80 06 : 43 94 C0 A8 00 05 54 09 |
..0Q.@...C.....T.
0020: 51 60 10 A9 00 6E 23 F7 : FC 8B 00 00 00 00 70 02 |
Q`...n#.......p.
0030: 40 00 AC 36 00 00 02 04 : 04 EC 01 01 04 02 65 6E |
@..6..........en
0040: 74 20 70 72 6F 74 6F 63 : 6F 6C 00 00 | t protocol..
>> Stay informed about: spyware in AVG antivirus ?