Re: Identifying which process is sending specific packets?

From: Steven Umbach (n9rou_at_n0spam-comcast.net)
Date: 06/07/04


Date: Sun, 06 Jun 2004 23:58:07 GMT

TCPView from Sysinternals and Fport from Foundstone come to mind as do personal
firewalls that can alert to activity from a process and log it such as
ygate. --- Steve

http://www.sysinternals.com/ntw2k/source/tcpview.shtml
http://www.foundstone.com/index.htm?subnav=resources/navigation.htm&subcontent=/resources/proddesc/fport.htm
http://www.snapfiles.com/Freeware/security/fwfirewall.html

"Rich" <ipshark@yahoo.com> wrote in message
news:b1aaf031.0406061551.417890ba@posting.google.com...
> Hi all,
>
> I am running windows 2000 professional + sp4 and it seems to be using an
> excessive amount of bandwidth.
>
> Using netstat I have identified to suspect sites but nslookup does not
> reveal a hostname.
>
> Does anyone know of a (preferably free) program that allows me to monitor
> network activity on a device as well as the process/program that generated
> the particular packet (about an hour of searching on google didn't yield
> any obvious solutions).
>
> Any help would be very much appreciated.
>
> Thanking you in advance.
>
> Rik



Relevant Pages

  • Re: lighting---hacked!
    ... >> web server on your firewall. ... > You relay on your logging to monitor and alert you to this. ... explain about netbased firewalls and hostbased ...
    (comp.os.linux.security)
  • Re: Do i need a virus scanner?
    ... ...but don't mind me if I keep my anti-virus software up to date. ... >After my many posts about firewalls i've decided on a strategy and thought ... >So, my question is do i need a virus scanner, just in case? ...
    (comp.security.firewalls)
  • Re: PerfMon to get running status of a process
    ... make sure you can get ANY alert to work. ... Have you got the alerter and messenger service running on the sending ... Intermediate firewalls? ... when process stops, it hangs or something... ...
    (microsoft.public.windows.server.general)
  • Re: Knocked down by an elderly driver
    ... I would also bet that I could bear most of them on a straightforward, simple endurance walking event -- never mind on my velo! ... Good for you, Trevor, and respect for what you do, but unfortunately there are a lot of people in their 70s who *aren't* as fit or alert as you are. ... There is a degeneration with age in many folk. ...
    (uk.rec.cycling)
  • Re: Zone Labs Pro question
    ... I'm completely new to the firewalls world (got hit over the weekend by ... this trojan that loads WinVNC on your machine which scared the bejeezus out ... so I got a copy of Zone Alarm Pro). ... I get a lot of red-banded (high alert) firewall alerts for some reason I ...
    (comp.security.firewalls)