|
|
TÁMADHATÓ PORT-OK LISTÁJA
Az alábbi
táblázatban
a támadások során leggyakrabban használt számítógépes port-ok
és az azokat általában használó támadó, trójai, távvezérlő,
adatlopó, stb. programok listája olvasható.
|
Portszám
|
Protokoll
|
Név
|
| 0 |
ICMP |
Click attack |
| 2 |
|
Death |
| 8 |
ICMP |
Ping Attack |
| 9 |
UDP |
Chargen |
| 19 |
UDP |
Chargen |
| 20 |
|
Senna Spy FTP server |
| 21 |
TCP |
FTP service, Back Construction, Blade Runner, Doly
Trojan, Fore, Invisible FTP, Juggernaut 42, Larva,
MotIv FTP, Net Administrator, Senna Spy FTP server,
Traitor 21,WebEx, WinCrash |
| 22 |
|
Shaft |
| 23 |
TCP |
Fire HacKer, Tiny Telnet Server - TTS, Truva Atl |
| 25 |
TCP |
Ajan, Antigen, Email Password Sender - EPS, EPS II,
Gip, Gris, Happy99, Hpteam mail, I love you, Kuang2,
Magic Horse, MBT (Mail Bombing Trojan), Moscow Email
trojan, Naebi, NewApt worm, ProMail trojan, Shtirlitz,
Stealth, Tapiras, Terminator, WinPC, WinSpy |
| 31 |
TCP |
Agent 31, Hacker's Paradise, Masters Paradise |
| 41 |
TCP |
Deep Throat, Foreplay, Reduced Foreplay |
| 48 |
|
DRAT |
| 50 |
|
DRAT |
| 53 |
TCP |
DNS |
| 59 |
TCP |
DM Setup |
| 79 |
TCP |
CDK, Firehotcker |
| 80 |
TCP |
AckCmd, Back End, CGI Backdoor, Executor, Hooker,
RingZero, CodeRed, Nimda |
| 81 |
|
RemoConChubo |
| 99 |
TCP |
Hidden Port |
| 110 |
TCP |
ProMail Trojan |
| 113 |
TCP |
Invisible Identd Deamon, Kazimas |
| 119 |
TCP |
Happy99 |
| 121 |
TCP |
BO Jammer Killah |
| 123 |
|
Net Controller |
| 133 |
|
Farnaz |
| 137 |
TCP UDP |
Netbios name (DoS attacks) |
| 139 |
TCP UDP |
Netbios session (DoS attacks) - NukeNabber |
| 142 |
|
NetTaxi |
| 146 |
TCP |
Infector 1.3 |
| 170 |
|
A-Trojan |
| 334 |
|
Backage |
| 420 |
|
Breach |
| 421 |
TCP |
Tcp Wrappers |
| 456 |
TCP |
Hacker's Paradise |
| 513 |
|
Grlogin |
| 514 |
|
RPC Backdoor |
| 531 |
TCP |
Rasmin |
| 555 |
TCP |
Ini-Killer, Net Administrator, Phase Zero, Phase-0,
Stealth Spy |
| 605 |
|
Secret Service |
| 666 |
TCP |
Attack FTP, Back Construction, Cain & Abel, NokNok,
Satans Back Door - SBD, ServU, Shadow Phyre, Satanz
FTP |
| 667 |
|
SniperNet |
| 669 |
|
DP Trojan |
| 692 |
|
GayOL |
| 777 |
TCP |
AIM Spy, Undetected |
| 808 |
|
Winhole |
| 911 |
TCP |
Dark Shadow |
| 999 |
TCP |
DeepThroat, Foreplay, Reduced Foreplay, WinSatan |
| 1000 |
TCP |
Der Spaeher |
| 1001 |
TCP |
Der Spaeher, Le Guardien, Silencer, WebEx |
| 1010 |
|
Doly Trojan |
| 1011 |
TCP |
Doly Trojan |
| 1012 |
TCP |
Doly Trojan |
| 1015 |
TCP |
Doly Trojan |
| 1016 |
|
Doly Trojan |
| 1020 |
|
Vampire |
| 1024 |
TCP |
NetSpy |
| 1025 |
UDP |
Maverick's Matrix 1.2 - 2.0 |
| 1033 |
TCP |
NetSpy |
| 1042 |
TCP |
Bla |
| 1045 |
TCP |
Rasmin |
| 1049 |
|
/sbin/initd |
| 1050 |
|
MiniCommand |
| 1054 |
|
AckCmd |
| 1080 |
TCP |
WinHole |
| 1081 |
TCP |
WinHole |
| 1082 |
TCP |
WinHole |
| 1083 |
|
WinHole |
| 1090 |
TCP |
Xtreme |
| 1095 |
|
RAT |
| 1097 |
|
RAT |
| 1098 |
|
RAT |
| 1099 |
|
Blood Fest Evolution, RAT |
| 1170 |
TCP |
Voice, Streaming Audio, Psyber Stream Server |
| 1200 |
UDP |
NoBackO |
| 1201 |
UDP |
NoBackO |
| 1207 |
TCP |
SoftWar |
| 1212 |
|
Kaos |
| 1234 |
TCP |
Ultors Trojan |
| 1243 |
TCP |
BackDoor-G, SubSeven, SubSeven Apocalypse, Tiles |
| 1245 |
TCP |
VooDoo Doll, GabanBus, NetBus |
| 1255 |
|
Scarab |
| 1256 |
|
Project nEXT |
| 1269 |
TCP |
Maverick's Matrix |
| 1313 |
|
NETrojan |
| 1338 |
|
Millennium Trojan |
| 1349 |
UDP |
BackOrifice DLL Comm |
| 1394 |
TCP |
GoFriller, Backdoor G-1 |
| 1492 |
TCP |
FTP99CMP |
| 1505 |
TCP UDP |
FunkProxy |
| 1509 |
TCP |
Psyber Streaming server |
| 1524 |
|
Trinoo |
| 1600 |
TCP |
Shivka-Burka |
| 1604 |
TCP UDP |
ICA Browser |
| 1777 |
|
Scarab |
| 1807 |
TCP |
SpySender |
| 1981 |
TCP |
Bowl, Shockrave |
| 1966 |
|
Fake FTP |
| 1969 |
|
OpC BO |
| 1999 |
TCP |
BackDoor, Transcout |
| 2000 |
TCP |
Remote Explorer, Der Spaeher, Insane Network |
| 2001 |
TCP |
Der Spaeher, Trojan Cow |
| 2002 |
TCP |
TransScout |
| 2003 |
TCP |
TransScout |
| 2004 |
TCP |
TransScout |
| 2005 |
TCP |
TransScout |
| 2023 |
TCP |
Ripper |
| 2080 |
|
WinHole |
| 2115 |
TCP |
Bugs |
| 2140 |
TCP UDP |
Deep Throat, The Invasor, Foreplay, Reduced Foreplay
|
| 2155 |
TCP |
Illusion Mailer |
| 2255 |
|
Nirvana |
| 2283 |
TCP |
HVL Rat5 |
| 2300 |
|
Xplorer |
| 2339 |
|
Voice Spy |
| 2345 |
|
Doly Trojan |
| 2565 |
TCP |
Striker |
| 2583 |
TCP |
WinCrash |
| 2600 |
|
Digital RootBeer |
| 2716 |
TCP |
The Prayer 1.2 -1.3 |
| 2721 |
TCP |
Phase Zero |
| 2773 |
|
SubSeven, SubSeven 2.1 Gold |
| 2801 |
TCP |
Phineas Phucker |
| 2989 |
UDP |
RAT |
| 3000 |
|
Remote Shut |
| 3024 |
TCP |
WinCrash |
| 3128 |
TCP |
Ring Zero |
| 3129 |
TCP |
Master's Paradise |
| 3150 |
TCP |
The Invasor |
| 3150 |
UDP |
Deep Throat, Foreplay or Reduced Foreplay |
| 3456 |
|
Terror Trojan |
| 3459 |
TCP |
Eclipse 2000, Sanctuary |
| 3700 |
TCP |
Portal of Doom |
| 3791 |
TCP |
Total Solar Eclypse |
| 3801 |
UDP |
Total Solar Eclypse |
| 4000 |
|
Skydance |
| 4092 |
TCP |
WinCrash |
| 4100 |
TCP |
Watchguard Firebox admin DoS Expl |
| 4242 |
|
Virtual Hacking Machine |
| 4321 |
|
BoBo |
| 4444 |
|
Prosiak, Swift Remote |
| 4567 |
TCP |
File Nail |
| 4590 |
TCP |
ICQ Trojan |
| 4950 |
|
ICQ Trogen |
| 5000 |
TCP |
Back Door Setup, Blazer5, Bubbel, ICKiller, Sokets
de Troie v1. |
| 5001 |
TCP |
Back Door Setup, Sokets de Troie v1. |
| 5002 |
|
cd00r, Shaft |
| 5010 |
|
Solo |
| 5011 |
TCP |
OOTLT Chart |
| 5025 |
|
WM Remote KeyLogger |
| 5031 |
TCP |
Net Metropolitan 1.0 |
| 5032 |
TCP |
Net Metropolitan 1.04 |
| 5321 |
TCP |
Firehotcker |
| 5343 |
|
WC Remote Administration Tool |
| 5400 |
TCP |
BackConstruction 1.2, Blade Runner |
| 5401 |
TCP |
BackConstruction, Blade Runner 1.x |
| 5402 |
TCP |
BackConstruction, Blade Runner 2.x |
| 5512 |
TCP |
Illusion Mailer,Xtcp |
| 5550 |
TCP |
Xtcp |
| 5555 |
TCP |
ServeMe |
| 5556 |
TCP |
BO Facil |
| 5557 |
TCP |
BO Facil |
| 5569 |
TCP |
Robo-Hack |
| 5637 |
TCP |
PC Crasher |
| 5638 |
TCP |
PC Crasher |
| 5714 |
TCP |
WinCrash |
| 5741 |
TCP |
WinCrash |
| 5742 |
TCP |
WinCrash |
| 5760 |
|
Portmap Remote Root Linux Exploit |
| 5882 |
UDP |
Y3K RAT |
| 5888 |
|
Y3K RAT |
| 6000 |
TCP |
The Thing 1.6 |
| 6006 |
|
Bad Blood |
| 6272 |
|
Secret Service |
| 6400 |
TCP |
The Thing |
| 6666 |
|
Dark Connection Inside, NetBus worm |
| 6667 |
TCP |
ScheduleAgent, Trinity, WinSatan, Sub-7 Trojan |
| 6669 |
TCP |
Host Control, Vampyre |
| 6670 |
TCP |
BackWeb Server, Deep Throat, Foreplay, Reduced Foreplay,
WinNuke eXtreame |
| 6671 |
TCP |
Deep Throat |
| 6711 |
TCP |
BackDoor-G, SubSeven, VP Killer |
| 6712 |
TCP |
Funny trojan, Sub Seven |
| 6713 |
TCP |
Sub Seven |
| 6723 |
TCP |
Mstream attack-handler |
| 6771 |
TCP |
Deep Throat,Foreplay, Reduced Foreplay |
| 6776 |
TCP |
2000 Cracks, BackDoor-G, SubSeven, VP Killer |
| 6838 |
UDP |
Mstream Agent-handler |
| 6883 |
|
Delta Source Dark Star |
| 6912 |
TCP |
Sh*t Heap |
| 6939 |
TCP |
Indoctrination |
| 6969 |
TCP |
Gate Crasher, IRC 3, Net Controller, Priority |
| 6970 |
TCP |
Exploit Translation Server, Kazimas, Remote Grab,
SubSeven 2.1 Gold |
| 7000 |
TCP |
Remote Grab |
| 7001 |
|
Freak88 |
| 7215 |
|
SubSeven, SubSeven 2.1 Gold |
| 7300 |
TCP |
Net Monitor |
| 7301 |
TCP |
Net Monitor 1.x |
| 7306 |
TCP |
Net Monitor 2.x |
| 7307 |
TCP |
Net Monitor 3.x |
| 7308 |
TCP |
Net Monitor 4.x |
| 7424 |
|
Host Control |
| 7424 |
UDP |
Host Control |
| 7597 |
TCP |
QaZ (Remote Access Trojan) |
| 7777 |
|
Tini |
| 7789 |
TCP |
ICQKiller |
| 7983 |
UDP |
MStream handler-agent |
| 8080 |
TCP |
Brown Orifice, RemoConChubo, Ring Zero |
| 8787 |
TCP UDP |
BackOrifice 2000 |
| 8879 |
TCP UDP |
BackOrifice 2000 |
| 8988 |
|
BacHack |
| 8989 |
|
Rcon, Recon, Xcon |
| 9000 |
|
Netministrator |
| 9325 |
UDP |
MStream Agent-handler |
| 9400 |
TCP |
InCommand |
| 9872 |
TCP |
Portal of Doom |
| 9873 |
TCP |
Portal of Doom 1.x |
| 9874 |
TCP |
Portal of Doom 2.x |
| 9875 |
TCP |
Portal of Doom 3.x |
| 9876 |
TCP |
Cyber Attacker, Rux |
| 9878 |
TCP |
Trans Scout |
| 9989 |
TCP |
iNi-Killer |
| 9999 |
TCP |
The prayer 1.2 -1.3 |
| 10067 |
TCP UDP |
Portal of Doom 4.x |
| 10085 |
|
Syphillis |
| 10086 |
|
Syphillis |
| 10101 |
|
BrainSpy |
| 10167 |
TCP UDP |
Portal of Doom 5.x |
| 10498 |
UDP |
Mstream handler-agent |
| 10520 |
TCP |
Acid Shivers |
| 10528 |
|
Host Control |
| 10607 |
TCP |
Coma |
| 10666 |
UDP |
Ambush |
| 11000 |
TCP |
Senna Spy |
| 11050 |
TCP |
Host Control |
| 11051 |
TCP |
Host Control |
| 11223 |
TCP |
Progenic Trojan, Secret Agent |
| 12076 |
TCP |
GJamer |
| 12223 |
TCP |
Hack'99, KeyLogger |
| 12345 |
TCP |
cron/crontab, Fat Bitch trojan, GabanBus, icmp_pipe.c,
Mypic, NetBus, NetBus Toy, NetBus worm, Pie Bill Gates,
Whack Job, X-bill |
| 12346 |
TCP |
Fat Bitch trojan, GabanBus, X-bill, Netbus 1.x |
| 12349 |
|
BioNet |
| 12361 |
TCP |
Whack-a-Mole |
| 12362 |
TCP |
Whack-a-Mole 1.x |
| 12456 |
TCP |
NetBus |
| 12623 |
UDP |
DUN Control |
| 12624 |
|
ButtMan |
| 12631 |
TCP |
WhackJob |
| 12701 |
TCP |
Eclypse 2000 |
| 12754 |
TCP |
Mstream attack-handler |
| 13000 |
TCP |
Senna Spy |
| 13010 |
|
Hacker Brasil |
| 13700 |
TCP |
Kuang2 the Virus |
| 14500 |
|
PC Invader |
| 15092 |
|
Host Control |
| 15104 |
TCP |
Mstream attack-handler |
| 15858 |
|
ODK |
| 16484 |
TCP |
Mosucker |
| 16660 |
|
Stacheldraht |
| 16772 |
|
ICQ Revenge |
| 16959 |
TCP |
SubSeven DEFCON8 2.1 Backdoor |
| 16969 |
TCP |
Priority |
| 17166 |
|
Mosaic |
| 17300 |
TCP |
Kuang2 The Virus |
| 17449 |
|
Kid Terror |
| 17499 |
|
CrazzyNet |
| 17777 |
|
Nephron |
| 18753 |
UDP |
Shaft handler to Agent |
| 19864 |
|
ICQ Revenge |
| 20000 |
TCP |
Millennium |
| 20001 |
TCP |
Millennium |
| 20002 |
|
AcidkoR |
| 20023 |
|
VP Killer |
| 20034 |
TCP |
NetBus 2 Pro, NetRex, Whack Job |
| 20203 |
TCP |
Logged!, Chupacabra |
| 20331 |
TCP |
Bla Trojan |
| 20432 |
TCP |
Shaft Client to handlers |
| 20433 |
TCP |
Shaft Agent to handlers |
| 21544 |
|
GirlFriend, Kid Terror |
| 21554 |
|
Exploiter, Kid Terror, Schwindler, Winsp00fer |
| 22222 |
TCP |
Donald Dick, Prosiak |
| 23005 |
|
NetTrash |
| 23023 |
|
Logged |
| 23032 |
|
Amanda |
| 23432 |
|
Asylum |
| 23456 |
TCP |
EvilFTP, UglyFTP, Whack Job |
| 23476 |
TCP |
Donald Dick |
| 23477 |
TCP |
Donald Dick |
| 26274 |
TCP |
Delta Source |
| 26274 |
UDP |
Delta Source |
| 26681 |
|
Voice Spy |
| 27374 |
|
Bad Blood, SubSeven, SubSeven 2.1 Gold, Subseven
2.1.4 DefCon 8 |
| 27444 |
UDP |
Trin00/TFN2K |
| 27573 |
UDP |
SubSeven 2.1 |
| 27573 |
TCP |
SubSeven 2.1 |
| 27665 |
TCP |
Trin00 DoS Attack |
| 29104 |
|
NetTrojan |
| 29891 |
TCP |
The Unexplained |
| 30001 |
|
ErrOr32 |
| 30003 |
|
Lamers Death |
| 30029 |
TCP |
AOL Trojan |
| 30100 |
TCP |
NetSphere |
| 30101 |
TCP |
NetSphere |
| 30102 |
TCP |
NetSphere |
| 30103 |
UDP |
NetSphere |
| 30129 |
|
Master's Paradise |
| 30133 |
TCP |
NetSphere Final |
| 30303 |
TCP |
Sockets de Troie |
| 30947 |
|
Intruse |
| 30999 |
TCP |
Kuang2 |
| 31335 |
UDP |
Trin00 DoS Attack |
| 31336 |
TCP |
Bo Whack, Butt Funnel |
| 31337 |
UDP |
Back Fire, Back Orifice (Lm), Back Orifice russian,
Baron Night, Beeone, BO client, BO Facil, BO spy, BO2,
cron / crontab, Freak88, icmp_pipe.c, Sockdmini |
| 31337 |
TCP |
Netpatch |
| 31338 |
TCP |
Back Orifice, Butt Funnel, NetSpy DK |
| 31338 |
UDP |
Deep BO |
| 31339 |
TCP |
NetSpy DK |
| 31666 |
TCP |
BOWhack |
| 31785 |
TCP |
Hack'a'Tack |
| 31788 |
UDP |
Hack`a'Tack |
| 31789 |
UDP |
Hack'a'Tack |
| 31790 |
UDP |
Hack`a'Tack |
| 31791 |
UDP |
Hack'a'Tack |
| 32001 |
|
Donald Dick |
| 32418 |
TCP |
Acid Battery |
| 33270 |
TCP |
Trinity Trojan |
| 33333 |
TCP |
Blakharaz, Prosiak |
| 33577 |
|
PsychWard |
| 33777 |
|
PsychWard |
| 33911 |
TCP |
Spirit 2000, Spirit 2001 |
| 34324 |
TCP |
BigGluck, TN |
| 34444 |
|
Donald Dick |
| 34555 |
UDP |
Trinoo |
| 35555 |
UDP |
Trinoo |
| 37651 |
TCP |
Yet Another Trojan |
| 40412 |
TCP |
The Spy |
| 40421 |
TCP |
Master's Paradise |
| 40421 |
TCP |
Agent 40421, Master's of Paradise |
| 40422 |
TCP |
Master's Paradise 1.x |
| 40423 |
TCP |
Master's Paradise 2.x |
| 40425 |
TCP |
Master's Paradise |
| 40426 |
TCP |
Master's Paradise 3.x |
| 41666 |
|
Remote Boot Tool |
| 43210 |
TCP |
Master's Paradise |
| 44444 |
|
Prosiak |
| 47252 |
TCP |
Delta Source |
| 47262 |
UDP |
Delta Source |
| 49301 |
UDP |
OnLine keyLogger |
| 50505 |
TCP |
Sokets de Troie v2. |
| 50776 |
TCP |
Fore, Schwindler |
| 51966 |
|
Cafeini |
| 52317 |
|
Acid Battery 2000 |
| 53001 |
TCP |
Remote Windows Shutdown |
| 54283 |
|
SubSeven, SubSeven 2.1 Gold |
| 54320 |
TCP |
Back Orifice 2000 |
| 54320 |
UDP |
Back Orifice |
| 54321 |
TCP |
School Bus, Back Orifice |
| 54321 |
UDP |
Back Orifice 2000 |
| 57341 |
UDP TCP |
NetRaider Trojan |
| 58339 |
|
Butt Funnel |
| 60000 |
TCP |
Deep Throat, Foreplay, Reduced Foreplay, Sockets des
Troie |
| 60068 |
|
Xzip 6000068 |
| 60411 |
|
Connection |
| 61348 |
TCP |
Bunker-Hill Trojan |
| 61466 |
TCP |
Telecommando |
| 61603 |
TCP |
Bunker-Hill Trojan |
| 63485 |
TCP |
Bunker-Hill Trojan |
| 65000 |
TCP |
Stacheldraht,Sockets des Troie, Devil |
| 65432 |
TCP |
The Traitor |
| 65432 |
UDP |
The Traitor |
| 65534 |
|
/sbin/initd |
| 65535 |
|
RC1 trojan |
|
|
|