There is not enough information in your message. Is it same group of servers every time? Are they in same domain? May be it is different sql server instances on one physical server?
This percon can use linked server, SSIS packeges, or can use login created from AD or local group. May be he or she use some vulnerability or misconfiguration like trustworthy turned on for user database or xp_cmdshell or somethig else.