blackwind
2008-07-22, 01:00 PM
小弟最近覺得網路怪怪的使用tcpview一查之下才發現有許多的smtp在偷跑。
原本剛連上網時網路一切都ok,過沒多久,網路的上傳就會開始遠大於下載,
用tcpview查 看才發現怎麼會有這麼多的smtp在跑,每次的smtp遠端ip位置都不一樣,在更早之前沒有這些問題。
以下是由tcpview所copy下來的一些記錄。
[System Process]:0 TCP bwd:1493 mail.conservatek.com:smtp TIME_WAIT
[System Process]:0 TCP bwd:1490 smtp37.redcondor.net:smtp TIME_WAIT
[System Process]:0 TCP bwd:1498 mail-mx-5.tiscali.it:smtp TIME_WAIT
[System Process]:0 TCP bwd:1367 tc-in-f166.google.com:http TIME_WAIT
[System Process]:0 TCP bwd:1496 mail04.mexis.com.mx:smtp TIME_WAIT
[System Process]:0 TCP bwd:1522 antispam4.its.unimelb.edu.au:smtp TIME_WAIT
[System Process]:0 TCP bwd:1523 mail5.zoneedit.com:smtp TIME_WAIT
[System Process]:0 TCP bwd:1555 mail.web4u.cz:smtp TIME_WAIT
[System Process]:0 TCP bwd:1553 mx.relay.orange-business.com:smtp TIME_WAIT
[System Process]:0 TCP bwd:1563 smtp2.mail.sizeit.se:smtp TIME_WAIT
svchost.exe:1084 TCP bwd:1229 e35.co.us.ibm.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1278 postfix3.vitro.epldt.net:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1334 vmailpx2.mvnet.de:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1424 mta-v8.mail.vip.mud.yahoo.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:ingreslock cluster.groups.msn.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1541 e4.ny.us.ibm.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1550 ms3a.hinet.net:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1548 cluster.groups.msn.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1557 relay-par1-neuf.relay.n9uf.net:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1564 lvps80-237-161-54.dedicated.hosteurope.de:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1573 ms62a.hinet.net:smtp ESTABLISHED
以有爬文過...但找不到解答只好請求各大大的協助。小弟在此先謝過了
贊助商連結
原本剛連上網時網路一切都ok,過沒多久,網路的上傳就會開始遠大於下載,
用tcpview查 看才發現怎麼會有這麼多的smtp在跑,每次的smtp遠端ip位置都不一樣,在更早之前沒有這些問題。
以下是由tcpview所copy下來的一些記錄。
[System Process]:0 TCP bwd:1493 mail.conservatek.com:smtp TIME_WAIT
[System Process]:0 TCP bwd:1490 smtp37.redcondor.net:smtp TIME_WAIT
[System Process]:0 TCP bwd:1498 mail-mx-5.tiscali.it:smtp TIME_WAIT
[System Process]:0 TCP bwd:1367 tc-in-f166.google.com:http TIME_WAIT
[System Process]:0 TCP bwd:1496 mail04.mexis.com.mx:smtp TIME_WAIT
[System Process]:0 TCP bwd:1522 antispam4.its.unimelb.edu.au:smtp TIME_WAIT
[System Process]:0 TCP bwd:1523 mail5.zoneedit.com:smtp TIME_WAIT
[System Process]:0 TCP bwd:1555 mail.web4u.cz:smtp TIME_WAIT
[System Process]:0 TCP bwd:1553 mx.relay.orange-business.com:smtp TIME_WAIT
[System Process]:0 TCP bwd:1563 smtp2.mail.sizeit.se:smtp TIME_WAIT
svchost.exe:1084 TCP bwd:1229 e35.co.us.ibm.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1278 postfix3.vitro.epldt.net:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1334 vmailpx2.mvnet.de:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1424 mta-v8.mail.vip.mud.yahoo.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:ingreslock cluster.groups.msn.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1541 e4.ny.us.ibm.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1550 ms3a.hinet.net:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1548 cluster.groups.msn.com:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1557 relay-par1-neuf.relay.n9uf.net:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1564 lvps80-237-161-54.dedicated.hosteurope.de:smtp ESTABLISHED
svchost.exe:1084 TCP bwd:1573 ms62a.hinet.net:smtp ESTABLISHED
以有爬文過...但找不到解答只好請求各大大的協助。小弟在此先謝過了
贊助商連結