Jump to content

What spyware might be running?


Recommended Posts

I noticed some command prompt windows sometimes start and before I check what is in it it gets closed. Below is a list of connections. Anyone notice anything unusual?

 

Active Connections
  Proto  Local Address          Foreign Address        State
  TCP    127.0.0.1:57189        DESKTOP-5SKK6I7:57190  ESTABLISHED
  TCP    127.0.0.1:57190        DESKTOP-5SKK6I7:57189  ESTABLISHED
  TCP    127.0.0.1:57310        DESKTOP-5SKK6I7:57311  ESTABLISHED
  TCP    127.0.0.1:57311        DESKTOP-5SKK6I7:57310  ESTABLISHED
  TCP    127.0.0.1:57312        DESKTOP-5SKK6I7:57313  ESTABLISHED
  TCP    127.0.0.1:57313        DESKTOP-5SKK6I7:57312  ESTABLISHED
  TCP    127.0.0.1:57470        DESKTOP-5SKK6I7:57471  ESTABLISHED
  TCP    127.0.0.1:57471        DESKTOP-5SKK6I7:57470  ESTABLISHED
  TCP    127.0.0.1:57479        DESKTOP-5SKK6I7:57480  ESTABLISHED
  TCP    127.0.0.1:57480        DESKTOP-5SKK6I7:57479  ESTABLISHED
  TCP    127.0.0.1:57602        DESKTOP-5SKK6I7:57603  ESTABLISHED
  TCP    127.0.0.1:57603        DESKTOP-5SKK6I7:57602  ESTABLISHED
  TCP    127.0.0.1:57608        DESKTOP-5SKK6I7:57609  ESTABLISHED
  TCP    127.0.0.1:57609        DESKTOP-5SKK6I7:57608  ESTABLISHED
  TCP    127.0.0.1:58561        DESKTOP-5SKK6I7:58560  TIME_WAIT
  TCP    127.0.0.1:58563        DESKTOP-5SKK6I7:58562  TIME_WAIT
  TCP    127.0.0.1:58603        DESKTOP-5SKK6I7:58602  TIME_WAIT
  TCP    127.0.0.1:58605        DESKTOP-5SKK6I7:58604  TIME_WAIT
  TCP    192.168.100.6:49414    hk2sch130020956:https  ESTABLISHED
  TCP    192.168.100.6:49471    212.30.134.199:http    TIME_WAIT
  TCP    192.168.100.6:49473    a23-45-109-192:http    TIME_WAIT
  TCP    192.168.100.6:49475    93.184.220.70:https    ESTABLISHED
  TCP    192.168.100.6:49477    a23-45-109-192:http    ESTABLISHED
  TCP    192.168.100.6:49481    msnbot-207-46-194-14:http  ESTABLISHED
  TCP    192.168.100.6:49482    a23-67-137-91:https    ESTABLISHED
  TCP    192.168.100.6:58507    93.184.221.133:http    ESTABLISHED
  TCP    192.168.100.6:58508    93.184.221.133:http    ESTABLISHED
  TCP    192.168.100.6:58509    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58528    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58532    a184-31-86-169:https   ESTABLISHED
  TCP    192.168.100.6:58533    a184-31-86-169:https   ESTABLISHED
  TCP    192.168.100.6:58535    edge-star-mini-shv-01-arn2:https  ESTABLISHED
  TCP    192.168.100.6:58536    a23-45-239-243:http    ESTABLISHED
  TCP    192.168.100.6:58537    a23-45-109-192:http    ESTABLISHED
  TCP    192.168.100.6:58550    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58557    ec2-35-157-155-191:https  ESTABLISHED
  TCP    192.168.100.6:58564    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58566    ec2-52-48-139-15:https  ESTABLISHED
  TCP    192.168.100.6:58568    a-0001:https           ESTABLISHED
  TCP    192.168.100.6:58569    ec2-35-157-155-191:https  ESTABLISHED
  TCP    192.168.100.6:58577    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58578    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58579    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58580    ec2-52-51-75-18:https  FIN_WAIT_2
  TCP    192.168.100.6:58581    a23-67-133-51:https    ESTABLISHED
  TCP    192.168.100.6:58582    i-by3p-cor002:https    ESTABLISHED
  TCP    192.168.100.6:58585    a-0001:https           ESTABLISHED
  TCP    192.168.100.6:58586    a-0001:https           ESTABLISHED
  TCP    192.168.100.6:58587    ec2-52-51-75-18:http   TIME_WAIT
  TCP    192.168.100.6:58589    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58590    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58591    13.107.3.128:https     ESTABLISHED
  TCP    192.168.100.6:58592    ec2-52-209-223-162:https  FIN_WAIT_2
  TCP    192.168.100.6:58593    ec2-52-209-223-162:https  FIN_WAIT_2
  TCP    192.168.100.6:58594    192.229.220.142:http   ESTABLISHED
  TCP    192.168.100.6:58595    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58596    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58597    ec2-52-209-223-162:https  FIN_WAIT_2
  TCP    192.168.100.6:58598    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58599    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58601    ec2-52-209-223-162:https  FIN_WAIT_2
  TCP    192.168.100.6:58609    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58610    ec2-52-29-234-163:https  FIN_WAIT_2
  TCP    192.168.100.6:58617    ec2-35-156-141-183:https  ESTABLISHED
  TCP    192.168.100.6:58618    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58619    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58620    ec2-52-31-16-60:https  FIN_WAIT_2
  TCP    192.168.100.6:58621    ec2-52-31-16-60:https  FIN_WAIT_2
  TCP    192.168.100.6:58622    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58623    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58624    ec2-52-31-16-60:https  FIN_WAIT_2
  TCP    192.168.100.6:58625    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58626    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58627    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58628    ec2-52-31-16-60:https  FIN_WAIT_2
  TCP    192.168.100.6:58629    ec2-52-31-16-60:https  FIN_WAIT_2
  TCP    192.168.100.6:58631    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58632    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58633    ec2-52-31-16-60:https  ESTABLISHED
  TCP    192.168.100.6:58634    207.46.7.252:http      ESTABLISHED
  TCP    192.168.100.6:58635    reverse-unset:http     SYN_SENT
  TCP    192.168.100.6:58637    ec2-35-156-141-183:https  ESTABLISHED
  TCP    192.168.100.6:58638    ec2-35-156-141-183:https  FIN_WAIT_2
  TCP    192.168.100.6:58640    65.55.52.23:https      ESTABLISHED
Link to post
Share on other sites

  • 1 month later...
  • Root Admin

We're sorry. It looks like your topic was somehow overlooked. Due to the length of time we'll go ahead and close this topic now but if you still actually need help please send a private message to one of the Moderators and we'll assist you.Thank you and sorry we missed your topic.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.