All of a sudden URLs were loading much more s..l..o..w..l..y so I went into the Network Threat Protection Traffic Log to see what I could see. I expected to find incoming and outgoing traffic to and from my comcast router but instead I found incoming traffic more than 75 different remote hosts (about half from *.stanford.edu) using ICMP protocol yet all from the same remote MAC address. I'm a newbie at this so I'm not sure what I'm seeing. Can anyone point me in the right direction to learn more about this? Thanks.