Like many other Malwarebytes users I recently noticed the nifty new IP protection feature when the yellow balloons started popping up. It caused me to wonder and perform a few extra scans, though my son's past surfing habits have also been a good cause for being cautious. I decided to check my firewall log for inbound events and noticed the same displayed IPs showed up. None of the IPs belonged to any of the websites I had visited, attempted to visit or any of their associated content. A trace of some of the various IPs showed they came from Asia and Canada. Some that I happened to see while I was working recently. 218.6.15.146 218.9.71.66 218.9.148.118 218.6.15.146 218.6.15.138 219.146.142.21 I think this suggests that what I am experiencing is the unsolicited intrusion by a foreign computer and Malwarebytes IP Protection activating and protecting my computer from a real threat. Or, IP Protection is acknowledging the same thing my firewall noticed somehow, that someone wants in but they don't belong and neither my firewall nor Malwarebytes wants to let them in. Either way, so far so good. Here is a screen shot of a page from my firewall's log. Most of the infection detections seem to be hitting that 2697(2967?-typing from memory) port.