I am just curious why is it that this cli.exe always connects outside, and this was even considered as a suspicious hidden connections colored in red by Port Explorer. I’ve already tried blocking this application in my Filseclab firewall rules… but still there are several ports used by cli.exe that connects outside, and some are listening. I’ve made a rule to block this cli.exe to connect out… but some ports of cli.exe still connect out. Is it just okay to leave the other ports coz I have already made a rule to block the program? Or it is better to block every ports of this cli.exe that was listening and established?