Sometimes you need to find out which process is using a specifc port. It could be a server hammering your firewall or for some other reason. To find out the process, follow these steps.
3. The red ring to the left is the port you probobly see in the the firewall log. To the right is the PID.
Above you see the PID you got from the netstat command. The port using PID 1200 in this case is svchost.exe.
If you don’t see the PID column, go to View – Select Columns.