Maybe some forensic analysis will help you for this case. For example,
所在版块:技术の宅 发贴时间:2004-06-16 07:52  评分:

用户信息
复制本帖HTML代码
高亮: 今天贴 X 昨天贴 X 前天贴 X 
1) Since you can see it in netstat, check the port which it is using .. then you can use TCP view to check which process is using the port.
http://www.sysinternals.com/ntw2k/utilities.shtml

2) you can also use pstools to check process, trace dlls info on your system.
http://www.sysinternals.com/ntw2k/freeware/pstools.shtml
.
欢迎来到华新中文网,踊跃发帖是支持我们的最好方法!

 相关帖子 我要回复↙ ↗回到正文
很郁闷的中了一项t很神奇的病毒 快快跑   (716 bytes , 336reads )
which navscanner32 Flying   (0 bytes , 217reads )
BTW, 'which' is assuming cygwin. Flying   (126 bytes , 230reads )
Maybe some forensic analysis will help you for this case. For example, Rick   (497 bytes , 342reads )
3x, will try 快快跑   (0 bytes , 204reads )