On a Mac, how are connections (possibly by spyware) made to outside internet addresses during initia
- by TT
I am trying to secure a Mac after discovering that network links are being established to some unwanted internet sites.
Using 'lsof -i' (list open 'files', internet) I have seen that launchd, ntpd, firefox, dropbox and other processes are either 'LISTENING' or have 'ESTABLISHED' links to a site or sites which I suspect have to do with spyware. I have been trying to find startup files and preference lists that initiate thise links but can't find them. I could easily reinstall the OS and restore data from a backup but I'd prefer to know how to fix this as I have six Macs to look after.
Thanks...