Hi. I have just started using wireshark and etherape on linux. They both show a lot of connections, obviously more when im’m browsing the web and that kind of stuff. I recognize the dns server and amazon aws, azure, dns reslution domains… but many others are just addresses(with no name). Some of them are also being contacted when i’m not on the net. So some service- program must be contacting them… how do i know which connections might be suspicious/malicious? I have quite a minimal system, so there are not really many programs that qualify for this… i have read about malware that records user activity and sends back to the attacker…. i’m kinda getting paranoid…