netstat
因此,当我决定在本地计算机上运行它并查看哪些进程持有开放端口时,我正在努力了解有关寻址的更多信息。
我遇到了这个...
tcp 0 0 XXX:42254 172.217.0.13:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:53804 72.5.205.39:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:49172 172.217.8.174:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:53800 72.5.205.39:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:40632 173.194.67.138:443 TIME_WAIT -
tcp 0 0 XXX:59292 172.217.0.3:80 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:54446 216.58.216.194:443 TIME_WAIT -
tcp 242 0 XXX:48564 23.211.100.195:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:59490 40.97.117.242:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:53652 198.252.206.25:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:59494 40.97.117.242:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:37850 216.58.192.170:80 ESTABLISHED 7275/libpepflashpla
tcp 258 0 XXX:34482 151.101.193.69:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:36038 104.16.108.18:443 TIME_WAIT -
tcp 242 0 XXX:59090 23.194.169.123:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:58026 23.21.110.0:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:45658 192.0.73.2:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:54048 104.28.31.80:80 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:43670 216.58.192.138:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:42252 172.217.0.13:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:45664 192.0.73.2:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:48572 23.211.100.195:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:38600 151.101.193.69:80 TIME_WAIT -
tcp 0 0 XXX:59496 40.97.117.242:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:33772 172.217.9.35:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:60214 172.217.6.10:80 TIME_WAIT -
tcp 0 0 XXX:53624 198.252.206.25:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:50110 72.5.205.53:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:52816 70.37.96.155:443 ESTABLISHED 7275/libpepflashpla
tcp 242 0 XXX:59094 23.194.169.123:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:54052 104.28.31.80:80 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:59460 40.97.117.242:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:46308 172.217.6.14:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:54050 104.28.31.80:80 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:53816 72.5.205.39:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:55088 138.91.243.193:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:59712 172.217.9.46:443 TIME_WAIT -
tcp 0 0 XXX:45536 192.0.73.2:443 TIME_WAIT -
tcp 0 0 XXX:58024 23.21.110.0:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:37852 216.58.192.170:80 ESTABLISHED 7275/libpepflashpla
tcp 242 0 XXX:48562 23.211.100.195:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:34310 151.101.129.69:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:58028 23.21.110.0:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:54044 104.28.31.80:80 ESTABLISHED 7275/libpepflashpla
tcp 242 0 XXX:59088 23.194.169.123:443 ESTABLISHED 7275/libpepflashpla
tcp 242 0 XXX:59096 23.194.169.123:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:45310 178.79.134.250:22 ESTABLISHED 6978/ssh
tcp 0 0 XXX:34274 151.101.129.69:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:59492 40.97.117.242:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:52672 70.37.96.155:443 TIME_WAIT -
tcp 0 0 XXX:50130 72.5.205.53:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:59118 172.217.0.3:80 TIME_WAIT -
tcp 0 0 XXX:50760 184.24.107.198:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:48942 172.217.8.174:443 TIME_WAIT -
tcp 0 0 XXX:58056 23.21.110.0:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:53802 72.5.205.39:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:51268 104.208.31.113:443 ESTABLISHED 7275/libpepflashpla
tcp 392 0 XXX:33774 172.217.9.35:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:50780 184.24.107.198:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:49166 172.217.8.174:443 ESTABLISHED 7275/libpepflashpla
tcp 242 0 XXX:59086 23.194.169.123:443 ESTABLISHED 7275/libpepflashpla
tcp 258 0 XXX:34010 104.16.109.18:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:58628 172.217.6.110:443 TIME_WAIT -
tcp 0 0 XXX:59498 40.97.117.242:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:54046 104.28.31.80:80 ESTABLISHED 7275/libpepflashpla
tcp 242 0 XXX:48566 23.211.100.195:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:35538 216.58.194.68:443 TIME_WAIT -
tcp 242 0 XXX:59092 23.194.169.123:443 ESTABLISHED 7275/libpepflashpla
tcp 0 0 XXX:36036 104.16.108.18:443 TIME_WAIT -
tcp 0 0 XXX:54054 104.28.31.80:80 ESTABLISHED 7275/libpepflashpla
**注意,XXX表示我的本地IP
为什么pepperflashplayer 持有这么多http
并且https
连接处于打开状态?!我现在在 chrome 中只有 4 个选项卡,而且它是一个 flashplayer...这难道不应该意味着每个使用 flash 的连接站点只需要一个连接吗?据我所知,我的选项卡都不需要运行 Flash 播放器。
我还注意到该进程正在连接到同一个外国IP和从本地计算机上的不同端口进行多次端口连接。我的pepperflashplayer 被窃听了吗?这是否表明存在恶意活动?
没有理由在不知名的端口上保持如此多的连接打开。
我的官方问题是:我该如何解决这个问题?为什么pepperflashplayer要这样做?我怎样才能阻止它再次发生?