Hi everyone,
Sorry if this is not the good forum to post. I don't know exactly how to describe the problem. Please move my topic if needed.

I have been using Zone Alarm free firewall for several years now and I'm happy with it.
But I looked by chance at my logs recently to find out that there have been strange recurring blocked connexions on my computer and network since february: successive high port numbers, and routed through my current pc to another pc on my local network.

FWROUTE,2010/03/09,10:34:44 +1:00 GMT,81.52.160.162:80,192.168.1.15:2235,TCP (flags:AF)
FWROUTE,2010/03/09,11:14:28 +1:00 GMT,217.167.48.53:443,192.168.1.15:2251,TCP (flags:AP)
FWIN,2010/03/09,17:30:42 +1:00 GMT,192.168.1.3:2049,239.255.255.250:1900,UDP
ZLUpdate,2010/03/09,18:00:12 +1:00 GMT,,,Auto
ZLUpdate,2010/03/09,18:00:16 +1:00 GMT,,,Auto
FWROUTE,2010/03/09,18:46:08 +1:00 GMT,74.125.77.132:80,192.168.1.15:2547,TCP (flags:AF)
FWROUTE,2010/03/09,18:48:50 +1:00 GMT,74.125.13.159:80,192.168.1.15:2596,TCP (flags:AF)
FWROUTE,2010/03/09,18:50:06 +1:00 GMT,74.125.13.159:80,192.168.1.15:2598,TCP (flags:AF)
FWROUTE,2010/03/09,18:51:14 +1:00 GMT,74.125.13.159:80,192.168.1.15:2599,TCP (flags:AF)
FWROUTE,2010/03/09,19:53:38 +1:00 GMT,209.85.229.100:80,192.168.1.15:2725,TCP (flags:AF)
FWROUTE,2010/03/09,19:57:10 +1:00 GMT,209.85.229.100:80,192.168.1.15:2750,TCP (flags:AF)
ZLUpdate,2010/03/09,20:23:56 +1:00 GMT,,,Auto
ZLUpdate,2010/03/09,20:23:58 +1:00 GMT,,,Auto
FWROUTE,2010/03/10,09:19:14 +1:00 GMT,192.168.1.3:2049,192.168.1.10:2751,UDP
FWROUTE,2010/03/10,10:01:50 +1:00 GMT,74.125.99.26:80,192.168.1.15:2992,TCP (flags:AF)
FWROUTE,2010/03/10,10:03:14 +1:00 GMT,74.125.99.26:80,192.168.1.15:2993,TCP (flags:AF)
FWROUTE,2010/03/10,10:12:14 +1:00 GMT,209.85.227.157:80,192.168.1.15:3001,TCP (flags:AF)
FWROUTE,2010/03/10,12:37:54 +1:00 GMT,74.125.110.29:80,192.168.1.15:3103,TCP (flags:AF)
FWROUTE,2010/03/10,12:40:08 +1:00 GMT,209.85.227.100:80,192.168.1.15:3067,TCP (flags:AF)
FWROUTE,2010/03/10,13:02:30 +1:00 GMT,209.85.227.157:80,192.168.1.15:3120,TCP (flags:AF)
FWROUTE,2010/03/10,13:09:10 +1:00 GMT,209.85.227.138:80,192.168.1.15:3133,TCP (flags:AF)
FWROUTE,2010/03/10,13:38:04 +1:00 GMT,74.125.6.85:80,192.168.1.15:3165,TCP (flags:AF)
ZLUpdate,2010/03/10,14:23:48 +1:00 GMT,,,Auto
ZLUpdate,2010/03/10,14:23:52 +1:00 GMT,,,Auto
FWROUTE,2010/03/10,15:07:58 +1:00 GMT,74.125.110.159:80,192.168.1.15:3235,TCP (flags:AF)
FWROUTE,2010/03/10,16:06:46 +1:00 GMT,208.117.241.81:80,192.168.1.15:3277,TCP (flags:AF)
FWROUTE,2010/03/10,16:41:26 +1:00 GMT,209.85.227.102:80,192.168.1.15:3303,TCP (flags:AF)
FWROUTE,2010/03/10,16:42:54 +1:00 GMT,209.85.227.155:80,192.168.1.15:3307,TCP (flags:AF)
FWROUTE,2010/03/10,21:27:34 +1:00 GMT,81.52.160.162:80,192.168.1.15:3554,TCP (flags:AF)
FWROUTE,2010/03/10,22:43:16 +1:00 GMT,65.55.13.91:80,192.168.1.15:3557,TCP (flags:AR)
FWROUTE,2010/03/11,11:41:10 +1:00 GMT,209.85.227.139:80,192.168.1.15:4344,TCP (flags:AF)
FWROUTE,2010/03/11,11:43:38 +1:00 GMT,209.85.227.101:80,192.168.1.15:4377,TCP (flags:AF)
FWROUTE,2010/03/11,11:52:36 +1:00 GMT,209.85.227.101:80,192.168.1.15:4388,TCP (flags:AF)
FWROUTE,2010/03/11,12:12:26 +1:00 GMT,74.125.0.96:80,192.168.1.15:4410,TCP (flags:AF)
FWROUTE,2010/03/11,12:15:26 +1:00 GMT,209.85.227.138:80,192.168.1.15:4409,TCP (flags:AF)
FWROUTE,2010/03/11,12:55:52 +1:00 GMT,209.85.227.157:80,192.168.1.15:4458,TCP (flags:AF)
FWROUTE,2010/03/11,16:41:42 +1:00 GMT,209.85.227.102:80,192.168.1.15:4758,TCP (flags:AF)
FWROUTE,2010/03/11,16:42:56 +1:00 GMT,209.85.227.147:80,192.168.1.15:4654,TCP (flags:AF)
FWROUTE,2010/03/11,16:43:30 +1:00 GMT,74.125.79.101:80,192.168.1.15:4721,TCP (flags:AF)
FWROUTE,2010/03/11,17:21:00 +1:00 GMT,91.121.171.222:80,192.168.1.15:4877,TCP (flags:AF)

Can a normal program do this?

I fear this is an attack but I didn't find any malware with my avira antivir and a Hijackthis scan.

Thanks