My cable connection was shaped two days after the start of the billing month, this is very fast for me even when dowloading with p2p.
Since shaping web and email were unusable. I used TCPviewer and found my services.exe is opening lots of smtp connections to yahoo and aol addresses.
I believe this is a spambot hijacking my system, however it is still functioning as a key windows file as if I shut it down windows reboots. I have it blocked now via bitdefender, so I can get here. But how can I go about cleaning the file or at least restoring the original file. It seems it is endemic on my ISP as the only two people I know who use the same ISP have the same symptoms. PS the path is the legit path for services.exe
Am I right or is that usual behaviour for services.exe?