永安期货深圳营业部:这个有中木马吗?解答的谢谢!!

来源:百度文库 编辑:高考问答 时间:2024/05/10 07:58:48
我的电脑怀疑是被人种了木马,现在我把用netstat -na扫描的结果传上来 另外还用fport检查结果也传上来了 有谁知道的给我解答一下,谢谢!!!!
C:\>netstat -na

Active Connections

Proto Local Address Foreign Address State
TCP 0.0.0.0:135 0.0.0.0:0 LISTENING
TCP 0.0.0.0:445 0.0.0.0:0 LISTENING
TCP 0.0.0.0:1027 0.0.0.0:0 LISTENING
TCP 0.0.0.0:2869 0.0.0.0:0 LISTENING
TCP 117.118.119.111:139 0.0.0.0:0 LISTENING
TCP 127.0.0.1:1025 0.0.0.0:0 LISTENING
UDP 0.0.0.0:445 *:*
UDP 0.0.0.0:500 *:*
UDP 0.0.0.0:1028 *:*
UDP 0.0.0.0:1030 *:*
UDP 0.0.0.0:1037 *:*
UDP 0.0.0.0:1040 *:*
UDP 0.0.0.0:1049 *:*
UDP 0.0.0.0:4500 *:*
UDP 117.118.119.111:53 *:*
UDP 117.118.119.111:123 *:*
UDP 117.118.119.111:137 *:*
UDP 117.118.119.111:138 *:*
UDP 117.118.119.111:1900 *:*
UDP 127.0.0.1:123 *:*
UDP 127.0.0.1:1029 *:*
UDP 127.0.0.1:1038 *:*
UDP 127.0.0.1:1060 *:*
UDP 127.0.0.1:1900 *:*
UDP 222.94.147.73:123 *:*

C:\>fport
FPort v2.0 - TCP/IP Process to Port Mapper
Copyright 2000 by Foundstone, Inc.
http://www.foundstone.com

Pid Process Port Proto Path
816 -> 135 TCP
4 System -> 139 TCP
4 System -> 445 TCP
1556 -> 1025 TCP
1264 -> 1027 TCP
1024 -> 2869 TCP

0 System -> 53 UDP
976 -> 123 UDP
0 System -> 123 UDP
0 System -> 137 UDP
0 System -> 138 UDP
816 -> 445 UDP
4 System -> 500 UDP
1264 -> 1028 UDP
0 System -> 1029 UDP
1024 -> 1030 UDP
4 System -> 1037 UDP
0 System -> 1038 UDP
1556 -> 1040 UDP
0 System -> 1049 UDP
19 -> 1060 UDP
0 System -> 1900 UDP
620 lsass -> 1900 UDP C:\WINDOWS\system32\lsass.exe
0 System -> 4500 UDP

你下一个"反间谍专家"杀一下木马.

我看你没有开可疑得端口,我看不像是中了木马吧

kuken+haster 幸福日