Is anybody here a trojan horse expert?

I've got something on my system, listening all the time. But I can't isolate it. I've run every trojan horse finder that I know of. And everything comes back clean.

The NETSTAT entry is always something like:

TCP 0.0.0.0:20580 0.0.0.0:0 LISTENING

with no corresponding UDP entry. And the port number changes with every reboot -- always to a port number that's not among any of the commonly-known ports that trojans are notorius for using.

I've isolated it with my firewall, so no one can talk to it. And it never seems to reach out to phone home.

But I can't figure out what it is. Anyone have any ideas?

I should add... this isn't on a server. It's on my Windows desktop machine.

 

 

 

 

Top