Port
# |
Protocol |
Allgemeine Beschreibung |
1 |
TCP |
Socks
Des Troie |
2 |
TCP |
Death |
8 |
ICMP |
Ping
Attack |
20 |
TCP |
Senna Spy |
21 |
TCP |
FTP
service, Dolly Trojan |
22 |
TCP |
Shaft |
23 |
TCP |
Fire
Hacker |
25 |
TCP |
Trojans
& Worms using this port |
31 |
TCP |
Agent
31, Hacker's Paradise |
37 |
TCP |
Trojans
& Worms using this port |
41 |
TCP |
Deep
Throat |
53 |
TCP |
Trojans
& Worms using this port |
58 |
TCP |
DM
Setup |
69 |
TCP |
Trojans & Worms using this port |
70 |
TCP |
W32.Evala.Worm |
79 |
TCP |
Firehotcker |
80 |
TCP |
Trojans
& Worms using this port |
81 |
TCP |
Beagle.S |
85 |
TCP |
Common
Port for phishing scam sites |
87 |
TCP |
Common
Port for phishing scam sites |
88 |
TCP |
pwsteal.likmet.a |
90 |
TCP |
Hidden
Port 2.o |
99 |
TCP |
Common Port for phishing scam sites |
110 |
TCP |
ProMail
Trojan |
113 |
TCP |
Trojans
& Worms using this port |
119 |
TCP |
Happy99 |
121 |
TCP |
Jammer
Killah |
129 |
TCP |
Password
Generator Protocol |
135 |
TCP UDP |
Trojans
& Worms using this port |
137 |
TCP UDP |
Netbios
name (DoS attacks) |
138 |
TCP UDP |
Netbios
datagram |
139 |
TCP UDP |
Netbios
session (DoS attacks) |
146 |
TCP |
Infector
1.3 |
382 |
TCP |
W32.Rotor |
420 |
TCP |
W32.kibuv.b |
421 |
TCP |
Tcp
Wrappers |
443 |
TCP |
Trojans & Worms using this port |
445 |
TCP |
Trojans & Worms using this port |
456 |
TCP |
Hacker's
Paradise |
530 |
TCP |
W32.kibuv.worm |
531 |
TCP |
Rasmin |
555 |
TCP |
Stealth
Spy, Phaze, 7-11 Trojan |
559 |
TCP |
Trojans
& Worms using this port |
587 |
TCP |
Sober worm Variants |
666 |
TCP |
Attack
FTP |
666 |
UDP |
N0kN0k
Trojan |
777 |
TCP |
BackDoor.Netcrack.B |
778 |
TCP |
BackDoor.Netcrack.B |
880 |
TCP |
Common Port for phishing scam sites |
| 901 |
TCP |
Backdoor.Devil |
| 902 |
TCP |
Backdoor.Devil |
911 |
TCP |
Dark
Shadow |
999 |
TCP |
DeepThroat |
1000 |
TCP |
Der
Spaeher |
1001 |
TCP |
Backdoor.Wortbot |
1011 |
TCP |
Doly
Trojan |
1012 |
TCP |
Doly
Trojan |
1015 |
TCP |
Doly
Trojan |
1024 |
TCP |
Backdoor.lingosky |
1025 |
TCP |
Trojans
& Worms using this port |
1025 |
UDP |
Maverick's
Matrix 1.2 - 2.0 |
1033 |
TCP |
NetSpy |
1034 |
TCP |
Trojans
& Worms using this port |
1042 |
TCP |
Bla |
1045 |
TCP |
Rasmin |
1080 |
TCP |
Trojans
& Worms using this port |
1081 |
TCP |
Backdoor.Zagaban |
1111 |
TCP |
Trojans
& Worms using this port |
1218 |
TCP |
Backdoor.Sazo |
1234 |
TCP |
Trojans
& Worms using this port |
1243 |
TCP |
Sub
Seven |
1245 |
TCP |
VooDoo
Doll |
12345 |
TCP |
Backdoor.Amitis.B |
1269 |
TCP |
Maverick's
Matrix |
12631 |
TCP |
WhackJob |
1349 |
UDP |
BackOrifice
DLL Comm |
1394 |
TCP |
GoFriller,
Backdoor G-1 |
1433 |
TCP |
W32.spybot.ofn |
1492 |
TCP |
FTP99CMP |
1505 |
TCP UDP |
FunkProxy |
1509 |
TCP |
Psyber
Streaming server |
1533 |
TCP |
Backdoor.Miffice |
1534 |
TCP |
Bizex.Worm |
1600 |
TCP |
Shivka-Burka |
1604 |
TCP UDP |
ICA
Browser |
1751 |
TCP |
Loxbot.d |
1772 |
TCP |
Backdoor.NetControle |
1807 |
TCP |
SpySender |
1863 |
TCP |
Trojans
& Worms using this port |
1981 |
TCP |
Shockrave |
1999 |
TCP |
BackDoor.BiFrose |
2000 |
TCP UDP |
BackDoor.Fearic |
2001 |
TCP |
Trojan
Cow |
2002 |
TCP |
TransScout |
2003 |
TCP |
TransScout |
2004 |
TCP |
TransScout |
2005 |
TCP |
TransScout |
2023 |
TCP |
Ripper |
2041 |
TCP |
W32.korgo.a |
2080 |
TCP |
Backdoor.TJServ |
2090 |
TCP |
Backdoor.Expjan |
2115 |
TCP |
Bugs |
2140 |
TCP |
Deep
Throat |
2140 |
UDP |
Deep
Throat |
2155 |
TCP |
Illusion
Mailer |
2222 |
UDP |
BackDoor.Botex |
2283 |
TCP |
Dumaru.Y |
2322 |
TCP |
Backdoor.shellbot |
2333 |
TCP |
Backdoor.shellbot |
2334 |
TCP |
Eyeveg.worm.c |
2335 |
TCP |
Backdoor.shellbot |
2414 |
TCP |
vbs.shania |
2565 |
TCP |
Striker |
2583 |
TCP |
WinCrash |
2716 |
TCP |
The
Prayer 1.2 -1.3 |
2721 |
TCP |
Phase
Zero |
2745 |
TCP |
Beagle.J |
2766 |
TCP |
W32.hllw.deadhat.b |
2801 |
TCP |
Phineas
Phucker |
2989 |
TCP |
Backdoor.Brador.A |
2989 |
UDP |
Rat |
3024 |
TCP |
WinCrash |
3028 |
TCP |
Backdoor.Wortbot |
3030 |
TCP |
W32.Mytob.cz@mm |
3067 |
TCP |
W32.korgo.a |
3127 |
TCP |
Trojans & Worms using this port |
3127 - 3198 |
TCP |
MyDoom.B@mm |
3129 |
TCP |
Master's
Paradise |
3150 |
TCP |
Deep
Throat |
3150 |
UDP |
Deep
Throat |
3195 |
TCP |
Backdoor.IRC.Whisper.b |
3256 |
TCP |
W32.HLLW.Dax |
3306 |
TCP |
Backdoor.Nemog.D |
3332 |
TCP |
Trojans & Worms using this port |
3385 |
TCP |
w32.Mytob.kp@MM |
3737 |
TCP |
Backdoor.helios |
3410 |
TCP |
W32.mockbot.a.worm |
3456 |
TCP UDP
|
Backdoor.Fearic |
3459 |
TCP |
Eclipse
2000 |
3547 |
TCP |
Backdoor.Amitis.B |
3700 |
TCP |
Portal
of Doom |
3791 |
TCP |
Eclypse |
3801 |
UDP |
Eclypse |
4000 |
UDP |
WityWorm
(BlackICE/ISS) |
4001 |
TCP |
Backdoor.OptixPro.13.C |
4092 |
TCP |
WinCrash |
4128 |
TCP |
Backdoor.rcserv |
4242 |
TCP |
Backdoor.Nemog.D |
4300 |
TCP |
Backdoor.smokodoor |
4387 |
TCP |
Phatbot |
4444 |
TCP |
Trojans
& Worms using this port |
4512 |
TCP |
W32.mytob.db |
4567 |
TCP |
File
Nail |
4590 |
TCP |
ICQ
Trojan |
4646 |
TCP |
Backdoor.Nemog.D |
4661 |
TCP |
Backdoor.Nemog.D |
4751 |
TCP |
Beagle.U |
4820 |
TCP |
Backdoor.tuxder |
4888 |
TCP |
W32.Opanki |
4899 |
TCP |
W32.RaHack |
4903 |
TCP |
Common Port for phishing scam sites |
| 8080 |
TCP |
Trojans
& Worms using this port |
| 8081 |
TCP |
Trojans
& Worms using this port |
9999 |
TCP |
The
prayer 1.2 -1.3 |
5000 |
TCP |
Trojans
& Worms using this port |
5001 |
TCP |
Sokets
de Trois v1./Bubbel |
5011 |
TCP |
Ootlt |
5031 |
TCP |
Net
Metropolitan 1.0 |
5032 |
TCP |
Net
Metropolitan 1.04 |
5152 |
TCP |
Backdoor.laphex.client |
5190 |
TCP |
Trojans
& Worms using this port |
5321 |
TCP |
Firehotcker |
5400 |
TCP |
Blade
Runner |
5401 |
TCP |
Blade
Runner |
5402 |
TCP |
Blade
Runner |
5418 |
TCP |
Backdoor.DarkSky.B |
5419 |
TCP |
Backdoor.DarkSky.B |
5503 |
UDP |
Remote Shell Trojan |
5521 |
TCP |
Illusion
Mailer |
5550 |
TCP |
Xtcp |
5512 |
TCP |
Xtcp |
5553 |
TCP |
Backdoor.Xlog |
| 5554 |
TCP |
W32.Sasser.Worm |
5555 |
TCP |
Backdoor.Sysbug |
5555 |
TCP |
Backdoor.OptixPro |
5556 |
TCP |
BO
Facil |
5557 |
TCP |
BO
Facil |
5558 |
TCP |
Backdoor.Easyserv |
5569 |
TCP |
Robo-Hack |
5555 |
TCP |
W32.MiMail.P |
5588 |
TCP |
Backdoor.EasyServ |
5637 |
TCP |
PC
Crasher |
5638 |
TCP |
PC
Crasher |
5714 |
TCP |
WinCrash |
5741 |
TCP |
WinCrash |
5742 |
TCP |
WinCrash |
5800 |
TCP |
Backdoor.Evivinc |
5900 |
TCP |
Backdoor.Evivinc |
6000 |
TCP |
LovGate.ak |
6129 |
TCP |
W32.mockbot.a.worm |
6180 |
TCP |
Common
Port for phishing scam sites |
6187 |
TCP |
Trojan.Tilser |
6400 |
TCP |
The
Thing |
6565 |
TCP |
Backdoor.Nemog.D |
6631 |
TCP |
Backdoor.sdbot.ag |
6667 |
TCP |
Trojans
& Worms using this port |
6669 |
TCP |
Vampyre |
6670 |
TCP |
Deep
Throat |
6671 |
TCP |
Deep
Throat |
6711 |
TCP |
Sub
Seven, Backdoor.G |
6712 |
TCP |
Sub
Seven |
6713 |
TCP |
Sub
Seven |
6723 |
TCP |
Mstream
attack-handler |
6771 |
TCP |
Deep
Throat |
6776 |
TCP |
Sub
Seven, Backdoor.G |
6777 |
TCP |
W32/Bagle@MM |
6789 |
TCP |
NetSky.U |
6838 |
UDP |
Mstream
Agent-handler |
6912 |
TCP |
Sh*t
Heap |
6939 |
TCP |
Indoctrination |
6969 |
TCP |
Trojans
& Worms using this port |
6970 |
TCP |
Gate
Crasher |
7000 |
TCP |
W32.mytob.mx@mm |
7043 |
TCP |
W32.Spybot.ycl |
7000 |
TCP |
Remote
Grab |
7028 |
TCP |
Unknown
Trojan |
7028 |
UDP |
Unknown
Trojan |
7300 |
TCP |
Net
Monitor |
7301 |
TCP |
Net
Monitor |
7306 |
TCP |
Net
Monitor |
7307 |
TCP |
Net
Monitor |
7308 |
TCP |
Net
Monitor |
7329 |
TCP |
Backdoor.netshadow |
7410 |
TCP |
Backdoor.phoenix |
7597 |
TCP |
QaZ
(Remote Access Trojan) |
7614 |
TCP |
Backdoor.GRM |
7740 |
TCP |
backdoor.nodelm |
| 7741 |
TCP |
backdoor.nodelm |
| 7742 |
TCP |
backdoor.nodelm |
| 7743 |
TCP |
backdoor.nodelm |
| 7744 |
TCP |
backdoor.nodelm |
| 7745 |
TCP |
backdoor.nodelm |
| 7746 |
TCP |
backdoor.nodelm |
| 7747 |
TCP |
backdoor.nodelm |
| 7748 |
TCP |
backdoor.nodelm |
| 7749 |
TCP |
backdoor.nodelm |
7789 |
TCP |
ICKiller |
7823 |
TCP |
Backdoor.Amitis.B |
7955 |
TCP |
W32.kibuv.b |
7983 |
UDP |
MStream
handler-agent |
7999 |
TCP |
W32.mytob.lz@mm |
8000 |
TCP |
w32.mytob.jw@mm |
8012 |
TCP |
Backdoor.Ptakks.b |
| 8076 |
TCP |
W32.Spybot.pen |
8080 |
TCP |
Trojans
& Worms using this port |
8090 |
TCP |
Backdoor.Asniffer |
8126 |
TCP |
W32.PejayBot |
8787 |
TCP UDP |
BackOrifice
2000 |
8811 |
TCP |
Backdoor.Monator |
8866 |
TCP |
Beagle.B@mm |
8879 |
TCP UDP |
BackOrifice
2000 |
8888 |
TCP |
W32.Axatak |
8889 |
TCP |
W32.Axatak |
9000 |
TCP |
W32.randex.ccf |
9125 |
TCP |
Backdoor.nibu.k |
9325 |
UDP |
MStream
Agent-handler |
9400 |
TCP |
InCommand |
9604 |
TCP |
W32.kibuv.worm |
9696 |
TCP |
Backdoor.gholame |
9697 |
TCP |
Backdoor.gholame |
9870 |
TCP |
BackDoor.RC3.B |
9872 |
TCP |
Portal
of Doom |
9873 |
TCP |
Portal
of Doom |
9874 |
TCP |
Portal
of Doom |
9875 |
TCP |
Portal
of Doom |
9876 |
TCP |
Cyber
Attacker |
9878 |
TCP |
Trans
Scout |
9898-9999 |
TCP |
W32.dabber.a |
9989 |
TCP |
iNi-Killer |
9995 |
TCP |
W.32.Sasser
Worm |
9999 |
TCP |
Trojans
& Worms using this port |
10000 |
TCP |
W32.dumaru.ad |
10001 |
TCP |
Backdoor.Zdemon.126 |
10002 |
TCP |
Backdoor.Zdemon.126 |
10008 |
TCP |
Cheese
worm |
10027 |
TCP |
w32.mytob.jw@mm |
10067 |
TCP |
Portal
of Doom |
10067 |
UDP |
Portal
of Doom |
10080 |
TCP |
Mydoom.B |
10100 |
TCP |
Backdoor.ranky.o |
10102 |
TCP |
Backdoor.staprew |
10103 |
TCP |
Backdoor.tuimer |
10167 |
UDP |
Portal
of Doom |
10498 |
UDP |
Mstream
handler-agent |
10520 |
TCP |
Acid
Shivers |
10607 |
TCP |
Coma |
10666 |
TCP |
Ambush |
11000 |
TCP |
Senna
Spy |
11050 |
TCP |
Host
Control |
11223 |
TCP |
Progenic
Trojan |
11768 |
TCP |
Dipnet / oddBob Trojan |
11831 |
TCP |
Latinus
Server |
12000 |
TCP |
Backdoor.Satancrew |
12065 |
TCP |
Backdoor.Berbew.j |
12076 |
TCP |
GJamer |
12223 |
TCP |
Hack'99,
KeyLogger |
12345 |
TCP |
Netbus,
Ultor's Trojan |
12346 |
TCP |
Netbus |
12456 |