I was wondering is a CCap.exe (Symantec) red socket a normal hidden process. It appears in the All/TCP/Listening Tabs...All it shows is listening...When I try to kill the process it comes up with a dialog box saying could not open the process. Is this normal or is this a Trojan Mick123
Hi Mick123 A legitimate process may also be flagged and shown as a hidden socket. If you are running Symantec software, ie. NAV or NIS/NPF, it would be normal to see ccapp.exe running/listening. Regards, CrazyM