TCP常用网络端口共12页
TCPIP常见协议及协议号端口号
TCPIP常见协议及协议号端⼝号 TCP/IP常见协议及协议号及端⼝号协议:ICMP——1 (Internet控制报⽂协议)IGMP——2 (Internet组管理协议)TCP ——6 (传输控制协议)EGP ——8 (外部⽹关协议)IGP ——9 (专⽤内部⽹关协议)UDP ——17 (⽤户数据报协议)IPv6 ——41 (互联⽹协议第6版)GRE ——47 (通⽤路由封装协议)ESP ——50 (封装安全载荷协议)AH ——51 (⾝份验证标头)ICMPv6 ——51 (IPv6⽹络的报⽂控制协议)EIGRP ——88 (增强内部⽹关路由协议,思科独有)OSPF ——89 (开放式最短路径优先协议)VRRP ——112 (虚拟路由器冗余协议)L2TP ——115 (第⼆层隧道协议)端⼝:20 —— (FTP⽂件传输协议数据连接端⼝)/TCP 表⽰为TCP端⼝21 —— (FTP⽂件传输协议控制连接端⼝)/TCP22 —— (SSH远程登陆)/TCP23 —— (Telnet远程登陆)/TCP25 —— (SMTP电⼦邮件传输协议)/TCP49 —— (TACACS 登录主机协议)53 —— (DNS域名系统)/TCP65 —— (TACACS 数据库服务)67 —— (DHCP服务器接收请求的端⼝)/UDP68 —— (DHCP客户机接收回应的端⼝)/UDP69 —— (TFTP简单⽂件传输协议)/UDP 表⽰为UDP端⼝80 —— (WWW,(HTTP超⽂本传输协议))/TCP109 —— (POP2邮局协议2)/TCP110 —— (POP3邮局协议3)/TCP161 —— (SNMP简单⽹络管理协议)/UDP179 —— (BGP边界⽹关协议)。
常见tcp端口说明
常见tcp端⼝说明(静态端⼝)TCP 0= ReservedTCP 1=TCP Port Service MultiplexerTCP 2=DeathTCP 5=Remote Job Entry,yoyoTCP 7=EchoTCP 11=SkunTCP 12=BomberTCP 16=SkunTCP 17=SkunTCP 18=消息传输协议,skunTCP 19=SkunTCP 20=FTP Data,AmandaTCP 21=,Back Construction,Blade Runner,Doly Trojan,Fore,FTP trojan,Invisible FTP,Larva,WebEx,WinCrash TCP 22=协议TCP 23=(Telnet),Tiny Telnet Server (= TTS)TCP 25=电⼦邮件(SMTP),Ajan,Antigen,Email Password Sender,Happy 99,Kuang2,ProMailtrojan,Shtrilitz,Stealth,Tapiras,Terminator,WinPC,WinSpy,Haebu CocedaTCP 27=AssasinTCP 28=AmandaTCP 29=MSG ICPTCP 30=Agent 40421TCP 31=Agent 31,Hackers Paradise,Masters Paradise,Agent 40421TCP 37=Time,ADM wormTCP 39=SubSARITCP 41=DeepThroat,ForeplayTCP 42=Host Name ServerTCP 43=WHOISTCP 44=ArcticTCP 48=DRATTCP 49=主机登录协议TCP 50=DRATTCP 51=IMP Logical Address Maintenance,Fuck Lamers BackdoorTCP 52=MuSka52,SkunTCP 53=DNS,Bonk (DOS Exploit)TCP 54=MuSka52TCP 58=DMSetupTCP 59=DMSetupTCP 63=whois++TCP 64=Communications IntegratorTCP 65=TACACS-Database ServiceTCP 66=Oracle SQL*NET,AL-BarekiTCP 67=Bootstrap Protocol ServerTCP 68=Bootstrap Protocol ClientTCP 69=TFTP,W32.Evala.Worm,BackGate Kit,Nimda,Pasana,Storm,Storm worm,Theef,Worm.Cycle.aTCP 70=Gopher服务,ADM wormTCP 79=⽤户查询(Finger),Firehotcker,ADM wormTCP 80=超⽂本服务器(Http),Executor,RingZeroTCP 81=Chubo,Worm.Bbeagle.qTCP 82=Netsky-ZTCP 88=Kerberos krb5服务TCP 99=Hidden PortTCP 102=消息传输代理TCP 108=SNA⽹关访问服务器TCP 109=Pop2TCP 110=电⼦邮件(Pop3),ProMailTCP 113=Kazimas,Auther IdnetTCP 115=简单协议TCP 118=SQL Services,Infector 1.4.2TCP 119=传输协议(Newsgroup(Nntp)),Happy 99TCP 121=JammerKiller,Bo jammerkillahTCP 123=(NTP),Net ControllerTCP 129=Password Generator ProtocolTCP 133=Infector 1.xTCP 135=微软DCE RPC end-point mapper服务TCP 137=微软Netbios Name服务(传输⽂件使⽤)TCP 138=微软Netbios Name服务(传输⽂件使⽤)TCP 139=微软Netbios Name服务(⽤于⽂件及)TCP 142=NetTaxiTCP 143=Internet 邮件访问协议版本 4(IMAP4)TCP 146=FC Infector,InfectorTCP 150=NetBIOS Session ServiceTCP 156=SQL服务器TCP 161=SnmpTCP 162=Snmp-TrapTCP 170=A-TrojanTCP 177=X Display管理控制协议TCP 179=Border⽹关协议(BGP)TCP 190=⽹关访问控制协议(GACP)TCP 194=IrcTCP 197=⽬录定位服务(DLS)TCP 220=Internet 邮件访问协议版本 3(IMAP3)TCP 256=NirvanaTCP 315=The InvasorTCP 371=ClearCase版本管理软件TCP 389=Lightweight Directory Access Protocol (LDAP)TCP 396=Novell Netware over IPTCP 420=BreachTCP 421=TCP WrappersTCP 443=(HTTPS)TCP 444=Simple Network Paging Protocol(SNPP)TCP 445=Microsoft-DSTCP 455=Fatal ConnectionsTCP 456=Hackers paradise,FuseSparkTCP 458=QuickTimeTCP 513=GrloginTCP 514=RPC BackdoorUDP 520=RipTCP 531=Rasmin,Net666TCP 544=kerberos kshellTCP 546=DHCP ClientTCP 547=DHCP ServerTCP 548=Macintosh⽂件服务TCP 555=Ini-Killer,Phase Zero,Stealth SpyTCP 569=MSNTCP 605=SecretServiceTCP 606=Noknok8TCP 660=DeepThroatTCP 661=Noknok8TCP 666=Attack FTP,Satanz Backdoor,Back Construction,Dark Connection Inside 1.2 TCP 667=Noknok7.2TCP 668=Noknok6TCP 669=DP trojanTCP 692=GayOLTCP 707=Welchia,nachiTCP 777=AIM SpyTCP 808=RemoteControl,WinHoleTCP 815=Everyone DarlingTCP 901=Backdoor.DevilTCP 911=Dark ShadowTCP 990=ssl加密TCP 993=IMAPTCP 999=DeepThroatTCP 1000=Der SpaeherTCP 1001=Silencer,WebEx,Der SpaeherTCP 1003=BackDoorTCP 1010=DolyTCP 1011=DolyTCP 1012=DolyTCP 1015=DolyTCP 1016=DolyTCP 1020=VampireTCP 1023=Worm.Sasser.e(动态端⼝)TCP 1024=NetSpy.698(YAI)TCP 1025=NetSpy.698,Unused Windows Services BlockTCP 1026=Unused Windows Services BlockTCP 1027=Unused Windows Services BlockTCP 1028=Unused Windows Services BlockTCP 1029=Unused Windows Services BlockTCP 1030=Unused Windows Services BlockTCP 1033=NetspyTCP 1035=MultidropperTCP 1042=BlaTCP 1045=RasminTCP 1047=GateCrasherTCP 1050=MiniCommandTCP 1059=nimregTCP 1069=Backdoor.TheefServer.202TCP 1070=Voice,Psyber Stream Server,Streaming Audio Trojan TCP 1080=Wingate,Worm.BugBear.B,Worm.Novarg.BTCP 1090=Xtreme,VDOLiveTCP 1092=LoveGateTCP 1095=RatTCP 1097=RatTCP 1098=RatTCP 1099=RatTCP 1110=nfsd-keepaliveTCP 1111=Backdoor.AIMVisionTCP 1155=Network File AccessTCP 1170=Psyber Stream Server,Streaming Audio trojan,Voice TCP 1200=NoBackOTCP 1201=NoBackOTCP 1207=SoftwarTCP 1212=Nirvana,Visul KillerTCP 1234=UltorsTCP 1243=BackDoor-G,SubSeven,SubSeven ApocalypseTCP 1245=VooDoo DollTCP 1269=Mavericks MatrixTCP 1313=NirvanaTCP 1349=BioNetTCP 1433=Microsoft SQL服务TCP 1441=Remote StormTCP 1492=FTP99CMP(BackOriffice.FTP)TCP 1503=NetMeeting T.120TCP 1509=Psyber Streaming ServerTCP 1600=Shivka-BurkaTCP 1688=Key Management Service(密钥管理服务)TCP 1703=Exloiter 1.1TCP 1720=NetMeeting H.233 call SetupTCP 1723=VPN ⽹关(PPTP)TCP 1731=NetMeeting⾳频调⽤控制TCP 1807=SpySenderTCP 1966=Fake FTP 2000TCP 1976=Custom portTCP 1981=ShockraveTCP 1990=stun-p1 cisco STUN Priority 1 portTCP 1990=stun-p1 cisco STUN Priority 1 portTCP 1991=stun-p2 cisco STUN Priority 2 portTCP 1992=stun-p3 cisco STUN Priority 3 port,ipsendmsg IPsendmsg TCP 1993=snmp-tcp-port cisco SNMP TCP portTCP 1994=stun-port cisco serial tunnel portTCP 1995=perf-port cisco perf portTCP 1996=tr-rsrb-port cisco Remote SRB portTCP 1997=gdp-port cisco Gateway Discovery ProtocolTCP 1998=x25-svc-port cisco X.25 service (XOT)TCP 1999=BackDoor,TransScoutTCP 2000=Der Spaeher,INsane NetworkTCP 2002=W32. Beagle .AX @mmTCP 2001=Transmisson scoutTCP 2002=Transmisson scoutTCP 2003=Transmisson scoutTCP 2004=Transmisson scoutTCP 2005=TTransmisson scoutTCP 2011=cypressTCP 2015=raid-csTCP 2023=Ripper,Pass Ripper,Hack City Ripper ProTCP 2049=NFSTCP 2115=BugsTCP 2121=NirvanaTCP 2140=Deep Throat,The InvasorTCP 2155=NirvanaTCP 2208=RuXTCP 2255=Illusion MailerTCP 2283=HVL Rat5TCP 2300=PC ExplorerTCP 2311=Studio54TCP 2556=Worm.Bbeagle.qTCP 2565=StrikerTCP 2583=WinCrashTCP 2600=Digital RootBeerTCP 2716=Prayer TrojanTCP 2745=Worm.BBeagle.kTCP 2773=Backdoor,SubSevenTCP 2774=SubSeven2.1&2.2TCP 2801=Phineas PhuckerTCP 2989=RatTCP 3024=WinCrash trojanTCP 3127=Worm.NovargTCP 3128=RingZero,Worm.Novarg.BTCP 3129=Masters ParadiseTCP 3150=Deep Throat,The InvasorTCP 3198=Worm.NovargTCP 3210=SchoolBusTCP 3332=Worm.Cycle.aTCP 3333=ProsiakTCP 3389=超级终端(远程桌⾯)TCP 3456=TerrorTCP 3459=Eclipse 2000TCP 3700=Portal of DoomTCP 3791=EclypseTCP 3801=EclypseTCP 3996=Portal of Doom,RemoteAnythingTCP 4000=客户端TCP 4060=Portal of Doom,RemoteAnythingTCP 4092=WinCrashTCP 4242=VHMTCP 4267=SubSeven2.1&2.2TCP 4321=BoBoTCP 4444=Prosiak,Swift remoteTCP 4500=W32.HLLW.TufasTCP 4567=File NailTCP 4590=ICQTrojanTCP 4899=Remote Administrator服务器TCP 4950=ICQTrojanTCP 5000=WindowsXP服务器,Blazer 5,Bubbel,Back Door Setup,Sockets de Troie TCP 5001=Back Door Setup,Sockets de TroieTCP 5002=cd00r,ShaftTCP 5011=One of the Last Trojans (OOTLT)TCP 5025=WM Remote KeyLoggerTCP 5031=Firehotcker,Metropolitan,NetMetroTCP 5032=MetropolitanTCP 5190=ICQ QueryTCP 5321=FirehotckerTCP 5333=Backage Trojan Box 3TCP 5343=WCratTCP 5400=Blade Runner,BackConstruction1.2TCP 5401=Blade Runner,Back ConstructionTCP 5402=Blade Runner,Back ConstructionTCP 5471=WinCrashTCP 5512=Illusion MailerTCP 5521=Illusion MailerTCP 5550=Xtcp,INsane NetworkTCP 5554=Worm.SasserTCP 5555=ServeMeTCP 5556=BO FacilTCP 5557=BO FacilTCP 5569=Robo-HackTCP 5598=BackDoor 2.03TCP 5631=PCAnyWhere dataTCP 5632=PCAnyWhereTCP 5637=PC CrasherTCP 5638=PC CrasherTCP 5698=BackDoorTCP 5714=Wincrash3TCP 5741=WinCrash3TCP 5742=WinCrashTCP 5760=Portmap Remote Root Linux Exploit TCP 5880=Y3K RATTCP 5881=Y3K RATTCP 5882=Y3K RATTCP 5888=Y3K RATTCP 5889=Y3K RATTCP 5900=WinVncTCP 6000=Backdoor.ABTCP 6006=Noknok8TCP 6129=Dameware Nt Utilities服务器TCP 6272=SecretServiceTCP 6267=⼴外⼥⽣TCP 6400=Backdoor.AB,The ThingTCP 6500=Devil 1.03TCP 6661=TemanTCP 6666=TCPshell.cTCP 6667=NT Remote Control,Wise 播放器接收端⼝TCP 6668=Wise Video⼴播端⼝TCP 6669=VampyreTCP 6670=DeepThroat,iPhoneTCP 6671=Deep Throat 3.0TCP 6711=SubSevenTCP 6712=SubSeven1.xTCP 6713=SubSevenTCP 6723=MstreamTCP 6767=NT Remote ControlTCP 6771=DeepThroatTCP 6776=BackDoor-G,SubSeven,2000 Cracks TCP 6777=Worm.BBeagleTCP 6789=Doly TrojanTCP 6838=MstreamTCP 6883=DeltaSourceTCP 6912=Shit HeepTCP 6939=IndoctrinationTCP 6969=GateCrasher,Priority,IRC 3TCP 6970=RealAudio,GateCrasherTCP 7000=Remote Grab,NetMonitor,SubSeven1.x TCP 7001=Freak88TCP 7201=NetMonitorTCP 7215=BackDoor-G,SubSevenTCP 7001=Freak88,Freak2kTCP 7300=NetMonitorTCP 7301=NetMonitorTCP 7306=NetMonitor,NetSpy 1.0TCP 7307=NetMonitor,ProcSpyTCP 7308=NetMonitor,X SpyTCP 7323=Sygate服务器端TCP 7424=Host ControlTCP 7511=聪明基因TCP 7597=QazTCP 7609=Snid X2TCP 7626=冰河TCP 7777=The ThingTCP 7789=Back Door Setup,ICQKillerTCP 7983=MstreamTCP 8000=腾讯OICQ服务器端,XDMATCP 8010=Wingate,LogfileTCP 8011=WAY2.4TCP 8080=WWW 代理,Ring Zero,Chubo,Worm.Novarg.B TCP 8102=⽹络神偷TCP8181=W32.Erkez.D@mmTCP 8520=W32.Socay.WormTCP 8594=I-Worm/Bozori.aTCP 8787=BackOfrice 2000TCP 8888=WinvncTCP 8897=Hack Office,ArmageddonTCP 8989=ReconTCP 9000=NetministratorTCP 9325=MstreamTCP 9400=InCommand 1.0TCP 9401=InCommand 1.0TCP 9402=InCommand 1.0TCP 9872=Portal of DoomTCP 9873=Portal of DoomTCP 9874=Portal of DoomTCP 9875=Portal of DoomTCP 9876=Cyber AttackerTCP 9878=TransScoutTCP 9989=Ini-KillerTCP 9898=Worm.Win32.Dabber.aTCP 9999=Prayer TrojanTCP 10067=Portal of DoomTCP 10080=Worm.Novarg.BTCP 10084=SyphillisTCP 10085=SyphillisTCP 10086=SyphillisTCP 10101=BrainSpyTCP 10167=Portal Of DoomTCP 10168=Worm.Supnot.78858.c,Worm.LovGate.T TCP 10520=Acid ShiversTCP 10607=Coma trojanTCP 10666=AmbushTCP 11000=Senna SpyTCP 11050=Host ControlTCP 11051=Host ControlTCP 11223=Progenic,Hack ’99KeyLoggerTCP 11831=TROJ_LATINUS.SVRTCP 12076=Gjamer,MSH.104bTCP 12223=Hack’99 KeyLoggerTCP 12345=GabanBus,NetBus 1.6/1.7,Pie Bill Gates,X-bill TCP 12346=GabanBus,NetBus 1.6/1.7,X-billTCP 12349=BioNetTCP 12361=Whack-a-moleTCP 12362=Whack-a-moleTCP 12363=Whack-a-moleTCP12378=W32/Gibe@MMTCP 12456=NetBusTCP 12623=DUN ControlTCP 12624=ButtmanTCP 12631=WhackJob,WhackJob.NB1.7TCP 12701=Eclipse2000TCP 12754=MstreamTCP 13000=Senna SpyTCP 13010=Hacker BrazilTCP 13013=PsychwardTCP 13223=Tribal Voice的聊天程序PowWowTCP 13700=Kuang2 The VirusTCP 14456=SoleroTCP 14500=PC InvaderTCP 14501=PC InvaderTCP 14502=PC InvaderTCP 14503=PC InvaderTCP 15000=NetDaemon 1.0TCP 15092=Host ControlTCP 15104=MstreamTCP 16484=MosuckerTCP 16660=Stacheldraht (DDoS)TCP 16772=ICQ RevengeTCP 16959=PriorityTCP 16969=PriorityTCP 17027=提供⼴告服务的Conducent"adbot"共享软件TCP 17166=MosaicTCP 17300=Kuang2 The VirusTCP 17490=CrazyNetTCP 17500=CrazyNetTCP 17569=Infector 1.4.x + 1.6.xTCP 17777=NephronTCP 18753=Shaft (DDoS)TCP 19191=蓝⾊⽕焰TCP 19864=ICQ RevengeTCP 20000=Millennium II (GrilFriend)TCP 20001=Millennium II (GrilFriend)TCP 20002=AcidkoRTCP 20034=NetBus 2 ProTCP 20168=LovgateTCP 20203=Logged,ChupacabraTCP 20331=BlaTCP 20432=Shaft (DDoS)TCP 20808=Worm.LovGate.v.QQTCP 213 35=Tribal Flood Network,TrinooTCP 21544=Schwindler 1.82,GirlFriendTCP 21554=Schwindler 1.82,GirlFriend,Exloiter 1.0.1.2TCP 22222=Prosiak,RuXUploader2.0TCP 22784=Backdoor.IntruzzoTCP 23432=Asylum 0.1.3TCP 23444=⽹络公⽜TCP 23456=Evil FTP,Ugly FTP,WhackJobTCP 23476=Donald DickTCP 23477=Donald DickTCP 23777=INet SpyTCP 26274=DeltaTCP 26681=Spy VoiceTCP 27374=Sub Seven 2.0+,Backdoor.BasteTCP 27444=Tribal Flood Network,TrinooTCP 27665=Tribal Flood Network,TrinooTCP 29431=Hack AttackTCP 29432=Hack AttackTCP 29104=Host ControlTCP 29559=TROJ_LATINUS.SVRTCP 29891=The UnexplainedTCP 30001=Terr0r32TCP 30003=Death,Lamers DeathTCP 30029=AOL trojanTCP 30100=NetSphere 1.27a,NetSphere 1.31TCP 30101=NetSphere 1.31,NetSphere 1.27aTCP 30102=NetSphere 1.27a,NetSphere 1.31TCP 30103=NetSphere 1.31TCP 30303=Sockets de TroieTCP 30722=W32.Esbot.ATCP 30947=IntruseTCP 30999=Kuang2TCP 31336=Bo WhackTCP 31337=Baron Night,BO client,BO2,Bo Facil,BackFire,Back Orifice,DeepBO,Freak2k,NetSpy TCP 31338=NetSpy,Back Orifice,DeepBOTCP 31339=NetSpy DKTCP 31554=SchwindlerTCP 31666=BOWhackTCP 31778=Hack AttackTCP 31785=Hack AttackTCP 31787=Hack AttackTCP 31789=Hack AttackTCP 31791=Hack AttackTCP 31792=Hack AttackTCP 32100=PeanutBrittleTCP 32418=Acid BatteryTCP 33333=Prosiak,Blakharaz 1.0TCP 33577=Son Of PsychwardTCP 33777=Son Of PsychwardTCP 33911=Spirit 2001aTCP 34324=BigGluck,TN,Tiny Telnet Server TCP 34555=Trin00 (Windows) (DDoS)TCP 35555=Trin00 (Windows) (DDoS)TCP 36794=Worm.Bugbear-ATCP 37651=YATTCP 40412=The SpyTCP 40421=Agent 40421,Masters Paradise.96 TCP 40422=Masters ParadiseTCP 40423=Masters Paradise.97TCP 40425=Masters ParadiseTCP 40426=Masters Paradise 3.xTCP 41666=Remote BootTCP 43210=Schoolbus 1.6/2.0TCP 44444=Delta SourceTCP 44445=HappypigTCP 45576=未知代理TCP 47252=ProsiakTCP 47262=DeltaTCP 47878=BirdSpy2TCP 49301=Online KeyloggerTCP 50505=Sockets de TroieTCP 50766=Fore,SchwindlerTCP 51966=CafeIniTCP 53001=Remote Windows Shutdown TCP 53217=Acid Battery 2000TCP 54283=Back Door-G,Sub7TCP 54320=Back Orifice 2000,SheepTCP 54321=School Bus .69-1.11,Sheep,BO2K TCP 57341=NetRaiderTCP 58008=BackDoor.TronTCP 58009=BackDoor.TronTCP 58339=ButtFunnelTCP 59211=BackDoor.DuckToyTCP 60000=Deep ThroatTCP 60068=Xzip 6000068TCP 60411=ConnectionTCP 60606=TROJ_BCKDOR.G2.ATCP 61466=TelecommandoTCP 61603=Bunker-killTCP 63485=Bunker-killTCP 65000=Devil,DDoSTCP 65432=Th3tr41t0r,The TraitorTCP 65530=TROJ_WINMITE.10TCP 65535=RC,Adore Worm/LinuxUDP端⼝(静态端⼝)UDP 1=Sockets des TroieUDP 9=ChargenUDP 19=ChargenUDP 69=PasanaUDP 80=PenroxUDP 371=ClearCase版本管理软件UDP 445=公共Internet⽂件系统(CIFS)UDP 500=Internet密钥交换(IP安全性 ,IKE) UDP端⼝(动态端⼝)UDP 1025=Maverick’s Matrix 1.2 - 2.0UDP 1026=Remote Explorer 2000UDP 1027=UC聊天软件,Trojan.Huigezi.eUDP 1028=3721上⽹助⼿(⽤途不明,建议⽤户警惕!),KiLo,SubSARI UDP 1029=SubSARIUDP 1031=XotUDP 1032=Akosch4UDP 1104=RexxRaveUDP 1111=DaodanUDP 1116=LurkerUDP 1122=Last 2000,SingularityUDP 1183=Cyn,SweetHeartUDP 1200=NoBackOUDP 1201=NoBackOUDP 1342=BLA trojanUDP 1344=PtakksUDP 1349=BO dllUDP 1561=MuSka52UDP 1701=VPN⽹关(L2TP)UDP 1772=NetControleUDP 1978=SlapperUDP 1985=Black DiverUDP 2000=A-trojan,Fear,Force,GOTHIC Intruder,Last 2000,Real 2000 UDP 2001=ScalperUDP 2002=SlapperUDP 2015=raid-csUDP 2018=rellpackUDP 2130=Mini BackLashUDP 2140=Deep Throat,Foreplay,The InvasorUDP 2222=SweetHeart,WayUDP 2339=Voice SpyUDP 2702=Black DiverUDP 2989=RATUDP 3150=Deep ThroatUDP 3215=XHXUDP 3333=DaodanUDP 3801=EclypseUDP 3996=Remote AnythingUDP 4128=RedShadUDP 4156=SlapperUDP 4500=sae-urn/ (IP安全性,IKE NAT遍历)UDP 5419=DarkSkyUDP 5503=Remote Shell TrojanUDP 5555=DaodanUDP 5882=Y3K RATUDP 5888=Y3K RATUDP 6112=Battle .net GameUDP 6666=KiLoUDP 6667=KiLoUDP 6766=KiLoUDP 6767=KiLo,UandMeUDP 6838=Mstream Agent-handlerUDP 7028=未知⽊马UDP 7424=Host ControlUDP 7788=SingularityUDP 7983=MStream handler-agentUDP 8012=PtakksUDP 8090=Aphex’s Remote Packet SnifferUDP 8127=9_119,ChonkerUDP 8488=KiLoUDP 8489=KiLoUDP 8787=BackOrifice 2000UDP 8879=BackOrifice 2000UDP 9325=MStream Agent-handlerUDP 10000=XHXUDP 10067=Portal of DoomUDP 10084=SyphillisUDP 10100=SlapperUDP 10167=Portal of DoomUDP 10498=MstreamUDP 10666=AmbushUDP 11225=CynUDP 12321=ProtossUDP 12345=BlueIce 2000UDP12378=W32/Gibe@MMUDP 12623=ButtMan,DUN ControlUDP 15210=UDP remote shell backdoor serverUDP 15486=KiLoUDP 16514=KiLoUDP 16515=KiLoUDP 18753=Shaft handler to AgentUDP 20433=ShaftUDP 21554=GirlFriendUDP 22784=Backdoor.IntruzzoUDP 23476=Donald DickUDP 25123=MOTDUDP 26274=Delta SourceUDP 26374=Sub-7 2.1UDP 26444=Trin00/TFN2KUDP 26573=Sub-7 2.1UDP 27184=Alvgus trojan 2000UDP 27444=TrinooUDP 29589=KiLoUDP 29891=The UnexplainedUDP 30103=NetSphereUDP 31320=Little WitchUDP 31335=Trin00 DoS AttackUDP 31337=Baron Night,BO client,BO2,Bo Facil,BackFire,Back Orifice,DeepBO UDP 31338=Back Orifice,NetSpy DK,DeepBOUDP 31339=Little WitchUDP 31340=Little WitchUDP 31416=LithiumUDP 31787=Hack aTackUDP 31789=Hack aTackUDP 31790=Hack aTackUDP 31791=Hack aTackUDP 33390=未知⽊马UDP 34555=TrinooUDP 35555=TrinooUDP 43720=KiLoUDP 44014=IaniUDP 44767=School BusUDP 46666=TaskmanUDP 47262=Delta SourceUDP 47785=KiLoUDP 49301=OnLine keyLoggerUDP 49683=FensterUDP 49698=KiLoUDP 52901=OmegaUDP 54320=Back OrificeUDP 54321=Back Orifice 2000UDP 54341=NetRaider TrojanUDP 61746=KiLOUDP 61747=KiLOUDP 61748=KiLOUDP 65432=The Traitor。
tcp ip 端口
TCP 80=超文本服务器(Http),Executor,RingZero
TCP 81=Chubo,Worm.Bbeagle.q
TCP 82=Netsky-Z
TCP 88=Kerberos krb5服务
//TCP 1098=Rat
//TCP 1099=Rat
TCP 1109=Pop with Kerberos
TCP 1110=nfsd-keepalive
TCP 1111=Backdoor.AIMVision
TCP 1155=Network File Access
//TCP 1170=Psyber Stream Server,Streaming Audio trojan,Voice
TCP 139=微软Netbios Name服务(用于文件及打印机共享)
TCP 142=NetTaxi
TCP 143=IMAP
TCP 146=FC Infector,Infector
TCP 150=NetBIOS Session Service
TCP 156=SQL服务器
TCP 420=Breach
TCP 421=TCP Wrappers
TCP 443=安全服务
TCP 444=Simple Network Paging Protocol(SNPP)
TCP 445=Microsoft-DS
TCP 455=Fatal Connections
TCP 129=Password Generator Protocol
TCP 133=Infector 1.x
常见TCP端口号及用途大全
说明
161/UDP—SNMP
Simple Network Management Protocol (SNMP)是网络管理时所使用的协议。网管软件及网络接口设备与操作系统平台间透过SNMP协议来进行必要的网络管理讯息交换
162/UDP-SNMP Trap
使用SNMP做网络管理时,Trap可以使被管理的设备在系统发生紧急状况时通知网管系统
53/TCP、UDP
DNS服务器的名称查询
Port
说明
80/TCP--HTTP
World Wide Web Service
88/TCP、UDP--Kerberos
网络账号验证协议
110/TCP—POP3
收信软件(Client端)协议
119/TCP--NNTP
Usenet新闻讨论群组协议;即News服务器使用的网络通讯协议
WINS Server就是NetBIOS Name Server,透过WINS Server做名称解析得知网络主机的IP地址
Port
ห้องสมุดไป่ตู้说明
138/UDP—NetBIOS Datagram
是NetBIOS over TCP/IP的一部分,使用在网络登入(NetLogon)及网络浏览(Browsing)功能,例如网络上的芳邻的使用
Port
说明
135/RPC
网络上Windows平台计算机网络服务彼此间沟通用的协议,例如mail client连到Exchange Server时,先透过port 135建立RPC连结,接着再使用port 1024以上某个动态范围的port进行数据传输
137/TCP
UDP—NetBIOS Name Server
Port
TCP协议对应端口号
TCP端口就是为TCP协议通信提供服务的端口。
TCP (Transmission Control Protocol)传输控制协议,TCP是一种面向连接(连接导向)的、可靠的、基于字节流的运输层(Transport layer)通信协议,由IETF的RFC 793说明(specified)。
在计算机网络OSI模型中,它完成第四层传输层所指定的功能。
我们的电脑与网络连接的许多应用都是通过TCP端口实现的。
目录1TCP端口(静态端口)2TCP端口(动态端口)1TCP端口(静态端口)编辑TCP 0= ReservedTCP 1=TCP Port Service MultiplexerTCP 2=DeathTCP 5=Remote Job Entry,yoyoTCP 7=EchoTCP 11=SkunTCP 12=BomberTCP 16=SkunTCP 17=SkunTCP 18=消息传输协议,skunTCP 19=SkunTCP 20=FTP Data,AmandaTCP 21=文件传输,Back Construction,Blade Runner,Doly Trojan,Fore,FTP trojan,Invisible FTP,Larva, WebEx,WinCrashTCP 22=远程登录协议TCP 23=远程登录(Telnet),Tiny Telnet Server (= TTS)TCP 25=电子邮件(SMTP),Ajan,Antigen,Email Password Sender,Happy 99,Kuang2,ProMail trojan,Shtrilitz,Stealth,Tapiras,Terminator,WinPC,WinSpy,Haebu CocedaTCP 27=AssasinTCP 28=AmandaTCP 29=MSG ICPTCP 30=Agent 40421TCP 31=Agent 31,Hackers Paradise,Masters Paradise,Agent 40421TCP 37=Time,ADM wormTCP 39=SubSARITCP 41=DeepThroat,ForeplayTCP 42=Host Name ServerTCP 43=WHOISTCP 44=ArcticTCP 48=DRATTCP 49=主机登录协议TCP 50=DRATTCP 51=IMP Logical Address Maintenance,Fuck Lamers BackdoorTCP 52=MuSka52,SkunTCP 53=DNS,Bonk (DOS Exploit)TCP 54=MuSka52TCP 58=DMSetupTCP 59=DMSetupTCP 63=whois++TCP 64=Communications IntegratorTCP 65=TACACS-Database ServiceTCP 66=Oracle SQL*NET,AL-BarekiTCP 67=Bootstrap Protocol ServerTCP 68=Bootstrap Protocol ClientTCP 69=W32.Evala.Worm,BackGate Kit,Nimda,Pasana,Storm,Storm worm,Theef,Worm.Cycle.a TCP 70=Gopher服务,ADM wormTCP 79=用户查询(Finger),Firehotcker,ADM wormTCP 80=超文本服务器(Http),Executor,RingZeroTCP 81=Chubo,Worm.Bbeagle.qTCP 82=Netsky-ZTCP 88=Kerberos krb5服务TCP 99=Hidden PortTCP 102=消息传输代理TCP 108=SNA网关访问服务器TCP 109=Pop2TCP 110=电子邮件(Pop3),ProMailTCP 113=Kazimas, Auther IdnetTCP 115=简单文件传输协议TCP 118=SQL Services, Infector 1.4.2TCP 119=新闻组传输协议(Newsgroup(Nntp)), Happy 99TCP 121=JammerKiller, Bo jammerkillahUDP 123=网络时间协议(NTP),Net ControllerTCP 129=Password Generator ProtocolTCP 133=Infector 1.xTCP 135=微软DCE RPC end-point mapper服务TCP 137=微软Netbios Name服务(网上邻居传输文件使用)TCP 138=微软Netbios Name服务(网上邻居传输文件使用)TCP 139=微软Netbios Name服务(用于文件及打印机共享)TCP 142=NetTaxiTCP 143=IMAPTCP 146=FC Infector,InfectorTCP 150=NetBIOS Session ServiceTCP 156=SQL服务器TCP 161=SnmpTCP 162=Snmp-TrapTCP 170=A-TrojanTCP 177=X Display管理控制协议TCP 179=Border网关协议(BGP)TCP 190=网关访问控制协议(GACP)TCP 194=IrcTCP 197=目录定位服务(DLS)TCP 256=NirvanaTCP 315=The InvasorTCP 371=ClearCase版本管理软件TCP 389=Lightweight Directory Access Protocol (LDAP)TCP 396=Novell Netware over IPTCP 420=BreachTCP 421=TCP WrappersTCP 443=安全服务TCP 444=Simple Network Paging Protocol(SNPP)TCP 445=Microsoft-DSTCP 455=Fatal ConnectionsTCP 456=Hackers paradise,FuseSparkTCP 458=苹果公司QuickTimeTCP 513=GrloginTCP 514=RPC BackdoorTCP 520=EFS (UDP520=RIP)TCP 531=Rasmin,Net666TCP 544=kerberos kshellTCP 546=DHCP ClientTCP 547=DHCP ServerTCP 548=Macintosh文件服务TCP 555=Ini-Killer,Phase Zero,Stealth SpyTCP 569=MSNTCP 605=SecretServiceTCP 606=Noknok8TCP 660=DeepThroatTCP 661=Noknok8TCP 666=Attack FTP,Satanz Backdoor,Back Construction,Dark Connection Inside 1.2 TCP 667=Noknok7.2TCP 668=Noknok6TCP 669=DP trojanTCP 692=GayOLTCP 707=Welchia,nachiTCP 777=AIM SpyTCP 808=RemoteControl,WinHoleTCP 815=Everyone DarlingTCP 901=Backdoor.DevilTCP 911=Dark ShadowTCP 990=ssl加密TCP 993=IMAPTCP 999=DeepThroatTCP 1000=Der SpaeherTCP 1001=Silencer,WebEx,Der SpaeherTCP 1003=BackDoorTCP 1010=DolyTCP 1011=DolyTCP 1012=DolyTCP 1015=DolyTCP 1016=DolyTCP 1020=VampireTCP 1023=Worm.Sasser.eTCP 1024=NetSpy.698(YAI)2TCP端口(动态端口)编辑TCP 1059=nimregTCP 1025=NetSpy.698,Unused Windows Services BlockTCP 1026=Unused Windows Services BlockTCP 1027=Unused Windows Services BlockTCP 1028=Unused Windows Services BlockTCP 1029=Unused Windows Services BlockTCP 1030=Unused Windows Services BlockTCP 1033=NetspyTCP 1035=MultidropperTCP 1042=BlaTCP 1045=RasminTCP 1047=GateCrasherTCP 1050=MiniCommandTCP 1069=Backdoor.TheefServer.202TCP 1070=Voice,Psyber Stream Server,Streaming Audio Trojan TCP 1080=Wingate,Worm.BugBear.B,Worm.Novarg.BTCP 1090=Xtreme, VDOLiveTCP 1092=LoveGateTCP 1095=RatTCP 1097=RatTCP 1098=RatTCP 1099=RatTCP 1110=nfsd-keepaliveTCP 1111=Backdoor.AIMVisionTCP 1155=Network File AccessTCP 1170=Psyber Stream Server,Streaming Audio trojan,Voice TCP 1200=NoBackOTCP 1201=NoBackOTCP 1207=SoftwarTCP 1212=Nirvana,Visul KillerTCP 1234=UltorsTCP 1243=BackDoor-G, SubSeven, SubSeven Apocalypse TCP 1245=VooDoo DollTCP 1269=Mavericks MatrixTCP 1313=NirvanaTCP 1349=BioNetTCP 1433=Microsoft SQL服务TCP 1441=Remote StormTCP 1492=FTP99CMP(BackOriffice.FTP)TCP 1503=NetMeeting T.120TCP 1509=Psyber Streaming ServerTCP 1600=Shivka-BurkaTCP 1703=Exloiter 1.1TCP 1720=NetMeeting H.233 call SetupTCP 1731=NetMeeting音频调用控制TCP 1807=SpySenderTCP 1966=Fake FTP 2000TCP 1976=Custom portTCP 1981=ShockraveTCP 1990=stun-p1 cisco STUN Priority 1 portTCP 1990=stun-p1 cisco STUN Priority 1 portTCP 1991=stun-p2 cisco STUN Priority 2 portTCP 1992=stun-p3 cisco STUN Priority 3 port,ipsendmsg IPsendmsg TCP 1993=snmp-tcp-port cisco SNMP TCP portTCP 1994=stun-port cisco serial tunnel portTCP 1995=perf-port cisco perf portTCP 1996=tr-rsrb-port cisco Remote SRB portTCP 1997=gdp-port cisco Gateway Discovery ProtocolTCP 1998=x25-svc-port cisco X.25 service (XOT)TCP 1999=BackDoor, TransScoutTCP 2000=Der Spaeher,INsane NetworkTCP 2002=W32.Beagle. AX mmTCP 2001=Transmisson scoutTCP 2002=Transmisson scoutTCP 2003=Transmisson scoutTCP 2004=Transmisson scoutTCP 2005=TTransmisson scoutTCP 2011=cypressTCP 2015=raid-csTCP 2023=Ripper,Pass Ripper,Hack City Ripper ProTCP 2049=NFSTCP 2115=BugsTCP 2121=NirvanaTCP 2140=Deep Throat, The InvasorTCP 2155=NirvanaTCP 2208=RuXTCP 2255=Illusion MailerTCP 2283=HVL Rat5TCP 2300=PC ExplorerTCP 2311=Studio54TCP 2556=Worm.Bbeagle.qTCP 2565=StrikerTCP 2583=WinCrashTCP 2600=Digital RootBeerTCP 2716=Prayer TrojanTCP 2745=Worm.BBeagle.kTCP 2773=Backdoor,SubSevenTCP 2774=SubSeven2.1&2.2TCP 2801=Phineas PhuckerTCP 2989=RatTCP 3024=WinCrash trojanTCP 3127=Worm.NovargTCP 3128=RingZero,Worm.Novarg.BTCP 3129=Masters ParadiseTCP 3150=Deep Throat, The InvasorTCP 3198=Worm.NovargTCP 3210=SchoolBusTCP 3332=Worm.Cycle.aTCP 3333=ProsiakTCP 3389=超级终端TCP 3456=TerrorTCP 3459=Eclipse 2000TCP 3700=Portal of DoomTCP 3791=EclypseTCP 3801=EclypseTCP 3996=Portal of Doom,RemoteAnythingTCP 4000=腾讯QQ客户端TCP 4060=Portal of Doom,RemoteAnythingTCP 4092=WinCrashTCP 4242=VHMTCP 4267=SubSeven2.1&2.2TCP 4321=BoBoTCP 4444=Prosiak,Swift remoteTCP 4500=W32.HLLW.TufasTCP 4567=File NailTCP 4590=ICQTrojanTCP 4899=Remote Administrator服务器TCP 4950=ICQTrojanTCP 5000=WindowsXP服务器,Blazer 5,Bubbel,Back Door Setup,Sockets de Troie TCP 5001=Back Door Setup, Sockets de TroieTCP 5002=cd00r,ShaftTCP 5011=One of the Last Trojans (OOTLT)TCP 5025=WM Remote KeyLoggerTCP 5031=Firehotcker,Metropolitan,NetMetroTCP 5032=MetropolitanTCP 5037=Android Debug Bridge(ADB)TCP 5190=ICQ QueryTCP 5321=FirehotckerTCP 5333=Backage Trojan Box 3TCP 5343=WCratTCP 5400=Blade Runner, BackConstruction1.2TCP 5401=Blade Runner,Back ConstructionTCP 5402=Blade Runner,Back ConstructionTCP 5471=WinCrashTCP 5512=Illusion MailerTCP 5521=Illusion MailerTCP 5550=Xtcp,INsane NetworkTCP 5554=Worm.SasserTCP 5555=ServeMeTCP 5556=BO FacilTCP 5557=BO FacilTCP 5569=Robo-HackTCP 5598=BackDoor 2.03TCP 5631=PCAnyWhere dataTCP 5632=PCAnyWhereTCP 5637=PC CrasherTCP 5638=PC CrasherTCP 5698=BackDoorTCP 5714=Wincrash3TCP 5741=WinCrash3TCP 5742=WinCrashTCP 5760=Portmap Remote Root Linux ExploitTCP 5880=Y3K RATTCP 5881=Y3K RATTCP 5882=Y3K RATTCP 5888=Y3K RATTCP 5889=Y3K RATTCP 5900=WinVncTCP 6000=Backdoor.ABTCP 6006=Noknok8TCP 6129=Dameware Nt Utilities服务器TCP 6272=SecretServiceTCP 6267=广外女生TCP 6400=Backdoor.AB,The ThingTCP 6500=Devil 1.03TCP 6661=TemanTCP 6666=TCPshell.cTCP 6667=NT Remote Control,Wise 播放器接收端口TCP 6668=Wise Video广播端口TCP 6669=VampyreTCP 6670=DeepThroat,iPhoneTCP 6671=Deep Throat 3.0TCP 6711=SubSevenTCP 6712=SubSeven1.xTCP 6713=SubSevenTCP 6723=MstreamTCP 6767=NT Remote ControlTCP 6771=DeepThroatTCP 6776=BackDoor-G,SubSeven,2000 CracksTCP 6777=Worm.BBeagleTCP 6789=Doly TrojanTCP 6838=MstreamTCP 6883=DeltaSourceTCP 6912=Shit HeepTCP 6939=IndoctrinationTCP 6969=GateCrasher, Priority, IRC 3TCP 6970=RealAudio,GateCrasherTCP 7000=Remote Grab,NetMonitor,SubSeven1.xTCP 7001=Freak88TCP 7201=NetMonitorTCP 7215=BackDoor-G, SubSevenTCP 7001=Freak88,Freak2kTCP 7300=NetMonitorTCP 7301=NetMonitorTCP 7306=NetMonitor,NetSpy 1.0TCP 7307=NetMonitor, ProcSpyTCP 7308=NetMonitor, X SpyTCP 7323=Sygate服务器端TCP 7424=Host ControlTCP 7511=聪明基因TCP 7597=QazTCP 7609=Snid X2TCP 7626=冰河TCP 7777=The ThingTCP 7789=Back Door Setup, ICQKillerTCP 7983=MstreamTCP 8000=腾讯OICQ服务器端,XDMATCP 8010=Wingate,LogfileTCP 8011=WAY2.4TCP 8080=WWW 代理,Ring Zero,Chubo,Worm.Novarg.B TCP 8102=网络神偷TCP 8181=W32.Erkez.DmmTCP 8520=W32.Socay.WormTCP 8594=I-Worm/Bozori.aTCP 8787=BackOfrice 2000TCP 8888=WinvncTCP 8897=Hack Office,ArmageddonTCP 8989=ReconTCP 9000=NetministratorTCP 9325=MstreamTCP 9400=InCommand 1.0TCP 9401=InCommand 1.0TCP 9402=InCommand 1.0TCP 9872=Portal of DoomTCP 9873=Portal of DoomTCP 9874=Portal of DoomTCP 9875=Portal of DoomTCP 9876=Cyber AttackerTCP 9878=TransScoutTCP 9989=Ini-KillerTCP 9898=Worm.Win32.Dabber.aTCP 9999=Prayer TrojanTCP 10000=webmin管理端口TCP 10067=Portal of DoomTCP 10080=Worm.Novarg.BTCP 10084=SyphillisTCP 10085=SyphillisTCP 10086=SyphillisTCP 10101=BrainSpyTCP 10167=Portal Of DoomTCP 10168=Worm.Supnot.78858.c,Worm.LovGate.TTCP 10520=Acid ShiversTCP 10607=Coma trojanTCP 10666=AmbushTCP 11000=Senna SpyTCP 11050=Host ControlTCP 11051=Host ControlTCP 11223=Progenic,Hack ’99KeyLoggerTCP 11831=TROJ_LATINUS.SVRTCP 12076=Gjamer, MSH.104bTCP 12223=Hack’99 KeyLoggerTCP 12345=GabanBus, NetBus 1.6/1.7, Pie Bill Gates, X-bill TCP 12346=GabanBus, NetBus 1.6/1.7, X-billTCP 12349=BioNetTCP 12361=Whack-a-moleTCP 12362=Whack-a-moleTCP 12363=Whack-a-moleTCP 12378=W32/GibeMTCP 12456=NetBusTCP 12623=DUN ControlTCP 12624=ButtmanTCP 12631=WhackJob, WhackJob.NB1.7TCP 12701=Eclipse2000TCP 12754=MstreamTCP 13000=Senna SpyTCP 13010=Hacker BrazilTCP 13013=PsychwardTCP 13223=Tribal Voice的聊天程序PowWowTCP 13700=Kuang2 The VirusTCP 14456=SoleroTCP 14500=PC InvaderTCP 14501=PC InvaderTCP 14502=PC InvaderTCP 14503=PC InvaderTCP 15000=NetDaemon 1.0TCP 15092=Host ControlTCP 15104=MstreamTCP 16484=MosuckerTCP 16660=Stacheldraht (DDoS)TCP 16772=ICQ RevengeTCP 16959=PriorityTCP 16969=PriorityTCP 17027=提供广告服务的Conducent"adbot"共享软件TCP 17166=MosaicTCP 17300=Kuang2 The VirusTCP 17490=CrazyNetTCP 17500=CrazyNetTCP 17569=Infector 1.4.x + 1.6.xTCP 17777=NephronTCP 18753=Shaft (DDoS)TCP 19191=蓝色火焰TCP 19864=ICQ RevengeTCP 20000=Millennium II (GrilFriend)TCP 20001=Millennium II (GrilFriend)TCP 20002=AcidkoRTCP 20034=NetBus 2 ProTCP 20168=LovgateTCP 20203=Logged,ChupacabraTCP 20331=BlaTCP 20432=Shaft (DDoS)TCP 20808=Worm.LovGate.v.QQTCP 21335=Tribal Flood Network,TrinooTCP 21544=Schwindler 1.82,GirlFriendTCP 21554=Schwindler 1.82,GirlFriend,Exloiter 1.0.1.2TCP 22222=Prosiak,RuX Uploader 2.0TCP 22784=Backdoor.IntruzzoTCP 23432=Asylum 0.1.3TCP 23444=网络公牛TCP 23456=Evil FTP, Ugly FTP, WhackJobTCP 23476=Donald DickTCP 23477=Donald DickTCP 23777=INet SpyTCP 26274=DeltaTCP 26681=Spy VoiceTCP 27374=Sub Seven 2.0+, Backdoor.BasteTCP 27444=Tribal Flood Network,TrinooTCP 27665=Tribal Flood Network,TrinooTCP 29431=Hack AttackTCP 29432=Hack AttackTCP 29104=Host ControlTCP 29559=TROJ_LATINUS.SVRTCP 29891=The UnexplainedTCP 30001=Terr0r32TCP 30003=Death,Lamers DeathTCP 30029=AOL trojanTCP 30100=NetSphere 1.27a,NetSphere 1.31TCP 30101=NetSphere 1.31,NetSphere 1.27aTCP 30102=NetSphere 1.27a,NetSphere 1.31TCP 30103=NetSphere 1.31TCP 30303=Sockets de TroieTCP 30722=W32.Esbot.ATCP 30947=IntruseTCP 30999=Kuang2TCP 31336=Bo WhackTCP 31337=Baron Night,BO client,BO2,Bo Facil,BackFire,Back Orifice,DeepBO,Freak2k,NetSpy TCP 31338=NetSpy,Back Orifice,DeepBOTCP 31339=NetSpy DKTCP 31554=SchwindlerTCP 31666=BOWhackTCP 31778=Hack AttackTCP 31785=Hack AttackTCP 31787=Hack AttackTCP 31789=Hack AttackTCP 31791=Hack AttackTCP 31792=Hack AttackTCP 32100=PeanutBrittleTCP 32418=Acid BatteryTCP 33333=Prosiak,Blakharaz 1.0TCP 33577=Son Of PsychwardTCP 33777=Son Of PsychwardTCP 33911=Spirit 2001aTCP 34324=BigGluck,TN,Tiny Telnet Server TCP 34555=Trin00 (Windows) (DDoS)TCP 35555=Trin00 (Windows) (DDoS)TCP 36794=Worm.Bugbear-ATCP 37651=YATTCP 40412=The SpyTCP 40421=Agent 40421,Masters Paradise.96 TCP 40422=Masters ParadiseTCP 40423=Masters Paradise.97TCP 40425=Masters ParadiseTCP 40426=Masters Paradise 3.xTCP 41666=Remote BootTCP 43210=Schoolbus 1.6/2.0TCP 44444=Delta SourceTCP 44445=HappypigTCP 45576=未知代理TCP 47252=ProsiakTCP 47262=DeltaTCP 47878=BirdSpy2TCP 49301=Online KeyloggerTCP 50505=Sockets de TroieTCP 50766=Fore, SchwindlerTCP 51966=CafeIniTCP 53001=Remote Windows Shutdown TCP 53217=Acid Battery 2000TCP 54283=Back Door-G, Sub7TCP 54320=Back Orifice 2000,SheepTCP 54321=School Bus .69-1.11,Sheep, BO2K TCP 57341=NetRaiderTCP 58008=BackDoor.TronTCP 58009=BackDoor.TronTCP 58339=ButtFunnelTCP 59211=BackDoor.DuckToyTCP 60000=Deep ThroatTCP 60068=Xzip 6000068TCP 60411=ConnectionTCP 60606=TROJ_BCKDOR.G2.ATCP 61466=TelecommandoTCP 61603=Bunker-killTCP 63485=Bunker-killTCP 65000=Devil, DDoSTCP 65432=Th3tr41t0r, The Traitor TCP 65530=TROJ_WINMITE.10 TCP 65535=RC,Adore Worm/Linux TCP 69123=ShitHeepTCP 88798=Armageddon,Hack Office。
常见网络端口
端口:0 服务:Reserved 说明:通常用于分析操作系统。
这一方法能够工作是因为在一些系统中“0”是无效端口,当你试图使用通常的闭合端口连接它时将产生不同的结果。
一种典型的扫描,使用IP地址为0.0.0.0,设置ACK位并在以太网层广播。
端口:1 服务:tcpmux 说明:这显示有人在寻找SGI Irix机器。
Irix是实现tcpmux的主要提供者,默认情况下tcpmux在这种系统中被打开。
Irix机器在发布是含有几个默认的无密码的帐户,如:IP、GUEST UUCP、NUUCP、DEMOS 、TUTOR、DIAG、OUTOFBOX 等。
许多管理员在安装后忘记删除这些帐户。
因此HACKER在INTERNET上搜索tcpmux 并利用这些帐户。
端口:7服务:Echo 说明:能看到许多人搜索Fraggle放大器时,发送到X.X.X.0和X.X.X.255的信息。
端口:19 服务:Character Generator 说明:这是一种仅仅发送字符的服务。
UDP版本将会在收到UDP包后回应含有垃圾字符的包。
TCP连接时会发送含有垃圾字符的数据流直到连接关闭。
HACKER利用IP欺骗可以发动DoS攻击。
伪造两个chargen服务器之间的UDP 包。
同样Fraggle DoS攻击向目标地址的这个端口广播一个带有伪造受害者IP的数据包,受害者为了回应这些数据而过载。
端口:21服务:FTP 说明:FTP服务器所开放的端口,用于上传、下载。
最常见的攻击者用于寻找打开anonymous的FTP服务器的方法。
这些服务器带有可读写的目录。
木马Doly Trojan、Fore、Invisible FTP、WebEx、WinCrash和BladeRunner所开放的端口。
端口:22服务:Ssh 说明:PcAnywhere建立的TCP和这一端口的连接可能是为了寻找ssh。
这一服务有许多弱点,如果配置成特定的模式,许多使用RSAREF库的版本就会有不少的漏洞存在。
最新TCPIP端口表
T C P I P端口表0到1023号端口常用端口Ports 1024 to 49151IANA自己预留设定使用49152到65535号端口根据定义,该段端口属于“动态端口”范围,没有端口可以被正式地注册占用。
常用端口表1tcpmux TCP Port Service Multiplexer 传输控制协议端口服务多路开关选择器2compressnet Management Utility compressnet 管理实用程序3compressnet Compression Process压缩进程5rje Remote Job Entry远程作业登录7echo Echo回显9discard Discard丢弃11systat Active Users在线用户13daytime Daytime时间17qotd Quote of the Day每日引用18msp Message Send Protocol消息发送协议19chargen Character Generator字符发生器20ftp-data File Transfer [Default Data]文件传输协议(默认数据口)21ftp File Transfer [Control]文件传输协议(控制)22ssh SSH Remote Login Protocol SSH远程登录协议23telnet Telnet终端仿真协议24?any private mail system预留给个人用邮件系统25smtp Simple Mail Transfer简单邮件发送协议27nsw-fe NSW User System FE NSW 用户系统现场工程师29msg-icp MSG ICP MSG ICP31msg-auth MSG Authentication MSG验证33dsp Display Support Protocol显示支持协议35?any private printer server预留给个人打印机服务37time Time时间38rap Route Access Protocol路由访问协议39rlp Resource Location Protocol资源定位协议41graphics Graphics图形42nameserver WINS Host Name Server WINS 主机名服务43nicname Who Is"绰号" who is服务44mpm-flags MPM FLAGS Protocol MPM(消息处理模块)标志协议45mpm Message Processing Module [recv]消息处理模块46mpm-snd MPM [default send]消息处理模块(默认发送口) 47ni-ftp NI FTP NI FTP48auditd Digital Audit Daemon数码音频后台服务49tacacs Login Host Protocol (TACACS) TACACS登录主机协议50re-mail-ck Remote Mail Checking Protocol远程邮件检查协议51la-maint IMP Logical Address Maintenance IMP(接口信息处理机)逻辑地址维护52xns-time XNS Time Protocol施乐网络服务系统时间协议53domain Domain Name Server域名服务器54xns-ch XNS Clearinghouse施乐网络服务系统票据交换55isi-gl ISI Graphics Language ISI图形语言56xns-auth XNS Authentication施乐网络服务系统验证57?any private terminal access预留个人用终端访问58xns-mail XNS Mail施乐网络服务系统邮件59?any private file service预留个人文件服务60?Unassigned未定义61ni-mail NI MAIL NI邮件?62acas ACA Services异步通讯适配器服务63whois+ whois+ WHOIS+64covia Communications Integrator (CI)通讯接口65tacacs-ds TACACS-Database Service TACACS数据库服务66sql*net Oracle SQL*NET Oracle SQL*NET67bootps Bootstrap Protocol Server引导程序协议服务端68bootpc Bootstrap Protocol Client引导程序协议客户端69tftp Trivial File Transfer小型文件传输协议70gopher Gopher信息检索协议71netrjs-1Remote Job Service远程作业服务72netrjs-2Remote Job Service远程作业服务73netrjs-3Remote Job Service远程作业服务74netrjs-4Remote Job Service远程作业服务75?any private dial out service预留给个人拨出服务76deos Distributed External Object Store 分布式外部对象存储77?any private RJE service预留给个人远程作业输入服务78vettcp vettcp修正TCP?79finger Finger FINGER(查询远程主机在线用户等信息)80http World Wide Web HTTP全球信息网超文本传输协议81hosts2-ns HOSTS2 Name Server HOST2名称服务82xfer XFER Utility传输实用程序83mit-ml-dev MIT ML Device模块化智能终端ML设备84ctf Common Trace Facility公用追踪设备85mit-ml-dev MIT ML Device模块化智能终端ML设备86mfcobol Micro Focus Cobol Micro Focus Cobol编程语言87?any private terminal link预留给个人终端连接88kerberos Kerberos Kerberros安全认证系统89su-mit-tg SU/MIT Telnet Gateway SU/MIT终端仿真网关90dnsix DNSIX Securit Attribute Token Map DNSIX 安全属性标记图91mit-dov MIT Dover Spooler MIT Dover假脱机92npp Network Printing Protocol网络打印协议93dcp Device Control Protocol设备控制协议94objcall Tivoli Object Dispatcher Tivoli对象调度95supdup SUPDUP96dixie DIXIE Protocol Specification DIXIE协议规范97swift-rvf Swift Remote Virtural File Protocol快速远程虚拟文件协议98tacnews TAC News TAC(东京大学自动计算机?)新闻协议99metagram Metagram Relay101/tcp hostname NIC Host Name Server102/tcp iso-tsap ISO-TSAP Class 0103/tcp gppitnp Genesis Point-to-Point Trans Net104/tcp acr-nema ACR-NEMA Digital Imag. & Comm. 300105/tcp cso CCSO name server protocol105/tcp csnet-ns Mailbox Name Nameserver106/tcp 3com-tsmux 3COM-TSMUX107/tcp rtelnet Remote Telnet Service108/tcp snagas SNA Gateway Access Server109/tcp pop2 Post Office Protocol - Version 2110/tcp pop3 Post Office Protocol - Version 3111/tcp sunrpc SUN Remote Procedure Call112/tcp mcidas McIDAS Data Transmission Protocol113/tcp ident114/tcp audionews Audio News Multicast115/tcp sftp Simple File Transfer Protocol116/tcp ansanotify ANSA REX Notify117/tcp uucp-path UUCP Path Service118/tcp sqlserv SQL Services119/tcp nntp Network News Transfer Protocol120/tcp cfdptkt CFDPTKT121/tcp erpc Encore Expedited Remote Pro.Call122/tcp smakynet SMAKYNET123/tcp ntp Network Time Protocol124/tcp ansatrader ANSA REX Trader125/tcp locus-map Locus PC-Interface Net Map Ser126/tcp unitary Unisys Unitary Login127/tcp locus-con Locus PC-Interface Conn Server128/tcp gss-xlicen GSS X License Verification129/tcp pwdgen Password Generator Protocol130/tcp cisco-fna cisco FNATIVE131/tcp cisco-tna cisco TNATIVE132/tcp cisco-sys cisco SYSMAINT133/tcp statsrv Statistics Service134/tcp ingres-net INGRES-NET Service135/tcp epmap DCE endpoint resolution136/tcp profile PROFILE Naming System137/tcp netbios-ns NETBIOS Name Service138/tcp netbios-dgm NETBIOS Datagram Service139/tcp netbios-ssn NETBIOS Session Service140/tcp emfis-data EMFIS Data Service141/tcp emfis-cntl EMFIS Control Service142/tcp bl-idm Britton-Lee IDM143/tcp imap Internet Message Access Protocol144/tcp uma Universal Management Architecture145/tcp uaac UAAC Protocol146/tcp iso-tp0 ISO-IP0147/tcp iso-ip ISO-IP148/tcp jargon Jargon149/tcp aed-512 AED 512 Emulation Service150/tcp sql-net SQL-NET151/tcp hems HEMS152/tcp bftp Background File Transfer Program153/tcp sgmp SGMP154/tcp netsc-prod NETSC155/tcp netsc-dev NETSC156/tcp sqlsrv SQL Service157/tcp knet-cmp KNET/VM Command/Message Protocol 158/tcp pcmail-srv PCMail Server159/tcp nss-routing NSS-Routing160/tcp sgmp-traps SGMP-TRAPS161/tcp snmp SNMP162/tcp snmptrap SNMPTRAP163/tcp cmip-man CMIP/TCP Manager164/tcp cmip-agent CMIP/TCP Agent165/tcp xns-courier Xerox166/tcp s-net Sirius Systems167/tcp namp NAMP168/tcp rsvd RSVD169/tcp send SEND170/tcp print-srv Network PostScript171/tcp multiplex Network Innovations Multiplex172/tcp cl/1 Network Innovations CL/1173/tcp xyplex-mux Xyplex174/tcp mailq MAILQ175/tcp vmnet VMNET176/tcp genrad-mux GENRAD-MUX177/tcp xdmcp X Display Manager Control Protocol178/tcp nextstep NextStep Window Server179/tcp bgp Border Gateway Protocol180/tcp ris Intergraph181/tcp unify Unify182/tcp audit Unisys Audit SITP183/tcp ocbinder OCBinder184/tcp ocserver OCServer185/tcp remote-kis Remote-KIS186/tcp kis KIS Protocol187/tcp aci Application Communication Interface188/tcp mumps Plus Five‘s MUMPS189/tcp qft Queued File Transport190/tcp gacp Gateway Access Control Protocol191/tcp prospero Prospero Directory Service192/tcp osu-nms OSU Network Monitoring System193/tcp srmp Spider Remote Monitoring Protocol194/tcp irc Internet Relay Chat Protocol195/tcp dn6-nlm-aud DNSIX Network Level Module Audit 196/tcp dn6-smm-red DNSIX Session Mgt Module Audit Redir 197/tcp dls Directory Location Service198/tcp dls-mon Directory Location Service Monitor199/tcp smux SMUX200/tcp src IBM System Resource Controller201/tcp at-rtmp AppleTalk Routing Maintenance202/tcp at-nbp AppleTalk Name Binding203/tcp at-3 AppleTalk Unused204/tcp at-echo AppleTalk Echo205/tcp at-5 AppleTalk Unused206/tcp at-zis AppleTalk Zone Information207/tcp at-7 AppleTalk Unused208/tcp at-8 AppleTalk Unused209/tcp qmtp The Quick Mail Transfer Protocol210/tcp z39.50 ANSI Z39.50211/tcp 914c/g Texas Instruments 914C/G Terminal212/tcp anet ATEXSSTR214/tcp vmpwscs VM PWSCS215/tcp softpc Insignia Solutions216/tcp CAIlic Computer Associates Int‘l License Server217/tcp dbase dBASE Unix218/tcp mpp Netix Message Posting Protocol219/tcp uarps Unisys ARPs220/tcp imap3 Interactive Mail Access Protocol v3 221/tcp fln-spx Berkeley rlogind with SPX auth 222/tcp rsh-spx Berkeley rshd with SPX auth223/tcp cdc Certificate Distribution Center242/tcp direct Direct243/tcp sur-meas Survey Measurement244/tcp dayna Dayna245/tcp link LINK246/tcp dsp3270 Display Systems Protocol247/tcp subntbcst_tftp SUBNTBCST_TFTP248/tcp bhfhs bhfhs256/tcp rap RAP257/tcp set Secure Electronic Transaction258/tcp yak-chat Yak Winsock Personal Chat259/tcp esro-gen Efficient Short Remote Operations 260/tcp openport Openport263/tcp hdap HDAP264/tcp bgmp BGMP280/tcp http-mgmt http-mgmt309/tcp entrusttime EntrustTime310/tcp bhmds bhmds312/tcp vslmp VSLMP315/tcp dpsi DPSI316/tcp decauth decAuth317/tcp zannet Zannet321/tcp pip PIP344/tcp pdap Prospero Data Access Protocol345/tcp pawserv Perf Analysis Workbench346/tcp zserv Zebra server347/tcp fatserv Fatmen Server348/tcp csi-sgwp Cabletron Management Protocol 349/tcp mftp mftp351/tcp matip-type-b MATIP Type B351/tcp bhoetty bhoetty (added 5/21/97)353/tcp ndsauth NDSAUTH354/tcp bh611 bh611357/tcp bhevent bhevent362/tcp srssend SRS Send365/tcp dtk DTK366/tcp odmr ODMR368/tcp qbikgdp QbikGDP371/tcp clearcase Clearcase372/tcp ulistproc ListProcessor373/tcp legent-1 Legent Corporation374/tcp legent-2374/tcp legent-2 Legent Corporation375/tcp hassle Hassle376/tcp nip Amiga Envoy Network Inquiry Proto377/tcp tnETOS NEC Corporation378/tcp dsETOS NEC Corporation379/tcp is99c TIA/EIA/IS-99 modem client380/tcp is99s TIA/EIA/IS-99 modem server381/tcp hp-collector hp performance data collector383/tcp hp-alarm-mgr hp performance data alarm manager384/tcp arns A Remote Network Server System385/tcp ibm-app IBM Application386/tcp asa ASA Message Router Object Def.387/tcp aurp Appletalk Update-Based Routing Pro.388/tcp unidata-ldm Unidata LDM Version 4389/tcp ldap Lightweight Directory Access Protocol390/tcp uis UIS391/tcp synotics-relay SynOptics SNMP Relay Port393/tcp dis Data Interpretation System394/tcp embl-ndt EMBL Nucleic Data Transfer395/tcp netcp NETscout Control Protocol396/tcp netware-ip Novell Netware over IP397/tcp mptn Multi Protocol Trans. Net.398/tcp kryptolan Kryptolan399/tcp iso-tsap-c2 ISO Transport Class 2 Non-Control over TCP 400/tcp work-sol Workstation Solutions401/tcp ups Uninterruptible Power Supply402/tcp genie Genie Protocol403/tcp decap decap404/tcp nced nced405/tcp ncld ncld406/tcp imsp Interactive Mail Support Protocol407/tcp timbuktu Timbuktu408/tcp prm-sm Prospero Resource Manager Sys. Man.409/tcp prm-nm Prospero Resource Manager Node Man.410/tcp decladebug DECLadebug Remote Debug Protocol411/tcp rmt Remote MT Protocol412/tcp synoptics-trap Trap Convention Port413/tcp smsp SMSP414/tcp infoseek InfoSeek415/tcp bnet BNet416/tcp silverplatter Silverplatter417/tcp onmux Onmux418/tcp hyper-g Hyper-G419/tcp ariel1 Ariel420/tcp smpte SMPTE421/tcp ariel2 Ariel422/tcp ariel3 Ariel423/tcp opc-job-start IBM Operations Planning and Control Start 424/tcp opc-job-track IBM Operations Planning and Control Track 425/tcp icad-el ICAD426/tcp smartsdp smartsdp427/tcp svrloc Server Location428/tcp ocs_cmu OCS_CMU429/tcp ocs_amu OCS_AMU430/tcp utmpsd UTMPSD431/tcp utmpcd UTMPCD432/tcp iasd IASD433/tcp nnsp NNSP434/tcp mobileip-agent MobileIP-Agent435/tcp mobilip-mn MobilIP-MN436/tcp dna-cml DNA-CML437/tcp comscm comscm438/tcp dsfgw dsfgw439/tcp dasp dasp Thomas Obermair440/tcp sgcp sgcp441/tcp decvms-sysmgt decvms-sysmgt442/tcp cvc_hostd cvc_hostd443/tcp https http protocol over TLS/SSL444/tcp snpp Simple Network Paging Protocol445/tcp microsoft-ds Microsoft-DS446/tcp ddm-rdb DDM-RDB447/tcp ddm-dfm DDM-RFM448/tcp ddm-ssl DDM-SSL449/tcp as-servermap AS Server Mapper450/tcp tserver TServer451/tcp sfs-smp-net Cray Network Semaphore server453/tcp creativeserver CreativeServer454/tcp contentserver ContentServer455/tcp creativepartnr CreativePartnr456/tcp macon-tcp macon-tcp457/tcp scohelp scohelp458/tcp appleqtc apple quick time459/tcp ampr-rcmd ampr-rcmd460/tcp skronk skronk461/tcp datasurfsrv DataRampSrv462/tcp datasurfsrvsec DataRampSrvSec463/tcp alpes alpes464/tcp kpasswd kpasswd465/tcp smtps smtp protocol over TLS/SSL (was ssmtp)466/tcp digital-vrc digital-vrc467/tcp mylex-mapd mylex-mapd468/tcp photuris proturis469/tcp rcp Radio Control Protocol470/tcp scx-proxy scx-proxy471/tcp mondex Mondex472/tcp ljk-login ljk-login473/tcp hybrid-pop hybrid-pop474/tcp tn-tl-w1 tn-tl-w1475/tcp tcpnethaspsrv tcpnethaspsrv476/tcp tn-tl-fd1 tn-tl-fd1477/tcp ss7ns ss7ns478/tcp spsc spsc479/tcp iafserver iafserver480/tcp iafdbase iafdbase481/tcp ph Ph service482/tcp bgs-nsi bgs-nsi483/tcp ulpnet ulpnet484/tcp integra-sme Integra Software Management Environment 485/tcp powerburst Air Soft Power Burst486/tcp avian avian487/tcp saft saft Simple Asynchronous File Transfer488/tcp gss-http gss-http489/tcp nest-protocol nest-protocol490/tcp micom-pfs micom-pfs491/tcp go-login go-login492/tcp ticf-1 Transport Independent Convergence for FNA 493/tcp ticf-2 Transport Independent Convergence for FNA 494/tcp pov-ray POV-Ray495/tcp intecourier intecourier496/tcp pim-rp-disc PIM-RP-DISC497/tcp dantz dantz498/tcp siam siam499/tcp iso-ill ISO ILL Protocol500/tcp isakmp isakmp501/tcp stmf STMF502/tcp asa-appl-proto asa-appl-proto503/tcp intrinsa Intrinsa504/tcp citadel citadel505/tcp mailbox-lm mailbox-lm506/tcp ohimsrv ohimsrv507/tcp crs crs508/tcp xvttp xvttp509/tcp snare snare510/tcp fcp FirstClass Protocol511/tcp passgo PassGo512/tcp exec remote process execution;513/tcp login remote login a la telnet;514/tcp shell cmd515/tcp printer spooler516/tcp videotex videotex517/tcp talk like tenex link, but across518/tcp ntalk519/tcp utime unixtime520/tcp efs extended file name server521/tcp ripng ripng522/tcp ulp ULP523/tcp ibm-db2 IBM-DB2524/tcp ncp NCP525/tcp timed timeserver526/tcp tempo newdate527/tcp stx Stock IXChange528/tcp custix Customer IXChange529/tcp irc-serv IRC-SERV530/tcp courier rpc531/tcp conference chat532/tcp netnews readnews533/tcp netwall for emergency broadcasts534/tcp mm-admin MegaMedia Admin535/tcp iiop iiop536/tcp opalis-rdv opalis-rdv537/tcp nmsp Networked Media Streaming Protocol538/tcp gdomap gdomap539/tcp apertus-ldp Apertus Technologies Load Determination 540/tcp uucp uucpd541/tcp uucp-rlogin uucp-rlogin542/tcp commerce commerce543/tcp klogin544/tcp kshell krcmd545/tcp appleqtcsrvr appleqtcsrvr546/tcp dhcpv6-client DHCPv6 Client547/tcp dhcpv6-server DHCPv6 Server548/tcp afpovertcp AFP over TCP549/tcp idfp IDFP550/tcp new-rwho new-who551/tcp cybercash cybercash552/tcp deviceshare deviceshare553/tcp pirp pirp554/tcp rtsp Real Time Stream Control Protocol555/tcp dsf556/tcp remotefs rfs server557/tcp openvms-sysipc openvms-sysipc558/tcp sdnskmp SDNSKMP559/tcp teedtap TEEDTAP560/tcp rmonitor rmonitord561/tcp monitor562/tcp chshell chcmd563/tcp nntps nntp protocol over TLS/SSL (was snntp) 564/tcp 9pfs plan 9 file service565/tcp whoami whoami566/tcp streettalk streettalk567/tcp banyan-rpc banyan-rpc568/tcp ms-shuttle microsoft shuttle569/tcp ms-rome microsoft rome570/tcp meter demon571/tcp meter udemon572/tcp sonar sonar573/tcp banyan-vip banyan-vip574/tcp ftp-agent FTP Software Agent System575/tcp vemmi VEMMI576/tcp ipcd ipcd577/tcp vnas vnas578/tcp ipdd ipdd579/tcp decbsrv decbsrv581/tcp bdp Bundle Discovery Protocol588/tcp cal CAL589/tcp eyelink EyeLink590/tcp tns-cml TNS CML593/tcp http-rpc-epmap HTTP RPC Ep Map594/tcp tpip TPIP596/tcp smsd SMSD599/tcp acp Aeolon Core Protocol600/tcp ipcserver Sun IPC server606/tcp urm Cray Unified Resource Manager607/tcp nqs nqs608/tcp sift-uft Sender-Initiated/Unsolicited File Transfer 609/tcp npmp-trap npmp-trap610/tcp npmp-local npmp-local611/tcp npmp-gui npmp-gui613/tcp hmmp-op HMMP Operation620/tcp sco-websrvrmgr SCO WebServer Manager621/tcp escp-ip ESCP625/tcp dec_dlm DEC DLM626/tcp asia ASIA628/tcp qmqp QMQP630/tcp rda RDA631/tcp ipp IPP (Internet Printing Protocol)632/tcp bmpp bmpp634/tcp ginad ginad635/tcp rlzdbase RLZ DBase636/tcp ldaps ldap protocol over TLS/SSL (was sldap)637/tcp lanserver lanserver639/tcp msdp MSDP666/tcp doom doom Id Software667/tcp disclose campaign contribution disclosures - SDR Technologies 668/tcp mecomm MeComm669/tcp meregister MeRegister670/tcp vacdsm-sws VACDSM-SWS671/tcp vacdsm-app VACDSM-APP672/tcp vpps-qua VPPS-QUA673/tcp cimplex CIMPLEX674/tcp acap ACAP675/tcp dctp DCTP704/tcp elcsd errlog copy/server daemon705/tcp agentx AgentX709/tcp entrust-kmsh Entrust Key Management Service Handler710/tcp entrust-ash Entrust Administration Service Handler729/tcp netviewdm1 IBM NetView DM/6000 Server/Client730/tcp netviewdm2 IBM NetView DM/6000 send/tcp731/tcp netviewdm3 IBM NetView DM/6000 receive/tcp741/tcp netgw netGW742/tcp netrcs Network based Rev. Cont. Sys.744/tcp flexlm Flexible License Manager747/tcp fujitsu-dev Fujitsu Device Control748/tcp ris-cm Russell Info Sci Calendar Manager749/tcp kerberos-adm kerberos administration750/tcp rfile751/tcp pump752/tcp qrh753/tcp rrh754/tcp tell send758/tcp nlogin759/tcp con760/tcp ns761/tcp rxe762/tcp quotad763/tcp cycleserv764/tcp omserv765/tcp webster769/tcp vid770/tcp cadlock771/tcp rtip772/tcp cycleserv2773/tcp submit774/tcp rpasswd776/tcp wpages780/tcp wpgs786/tcp concert Concert787/tcp qsc QSC801/tcp device873/tcp rsync rsync886/tcp iclcnet-locate ICL coNETion locate server887/tcp iclcnet_svinfo ICL coNETion server info888/tcp accessbuilder AccessBuilder900/tcp omginitialrefs OMG Initial Refs911/tcp xact-backup xact-backup990/tcp ftps ftp protocol, control, over TLS/SSL991/tcp nas Netnews Administration System992/tcp telnets telnet protocol over TLS/SSL993/tcp imaps imap4 protocol over TLS/SSL994/tcp ircs irc protocol over TLS/SSL995/tcp pop3s pop3 protocol over TLS/SSL (was spop3) 996/tcp vsinet vsinet997/tcp maitrd998/tcp busboy999/tcp garcon1000/tcp cadlock1010/tcp surf surf1023/tcp Reserved Reserved1030/tcp iad1 BBN IAD1031/tcp iad2 BBN IAD1032/tcp iad3 BBN IAD1047/tcp neod1 Sun‘s NEO Object Request Broker 1048/tcp neod2 Sun‘s NEO Object Request Bro ker 1058/tcp nim nim1059/tcp nimreg nimreg1067/tcp instl_boots Installation Bootstrap Proto. Serv.1068/tcp instl_bootc Installation Bootstrap Proto. Cli.1080/tcp socks Socks1083/tcp ansoft-lm-1 Anasoft License Manager1084/tcp ansoft-lm-2 Anasoft License Manager1123/tcp murray Murray1155/tcp nfa Network File Access1212/tcp lupa lupa1222/tcp nerv SNI R&D network1239/tcp nmsd NMSD1248/tcp hermes1313/tcp bmc_patroldb BMC_PATROLDB1314/tcp pdps Photoscript Distributed Printing System1321/tcp pip PIP1345/tcp vpjp VPJP1346/tcp alta-ana-lm Alta Analytics License Manager1347/tcp bbn-mmc multi media conferencing1348/tcp bbn-mmx multi media conferencing1349/tcp sbook Registration Network Protocol1350/tcp editbench Registration Network Protocol1352/tcp lotusnote Lotus Note1353/tcp relief Relief Consulting1354/tcp rightbrain RightBrain Software1355/tcp intuitive-edge Intuitive Edge1356/tcp cuillamartin CuillaMartin Company1357/tcp pegboard Electronic PegBoard1358/tcp connlcli CONNLCLI1359/tcp ftsrv FTSRV1360/tcp mimer MIMER1361/tcp linx LinX1362/tcp timeflies TimeFlies1363/tcp ndm-requester Network DataMover Requester1364/tcp ndm-server Network DataMover Server1365/tcp adapt-sna Network Software Associates1366/tcp netware-csp Novell NetWare Comm Service Platform 1367/tcp dcs DCS1368/tcp screencast ScreenCast1369/tcp gv-us GlobalView to Unix Shell1370/tcp us-gv Unix Shell to GlobalView1371/tcp fc-cli Fujitsu Config Protocol1372/tcp fc-ser Fujitsu Config Protocol1373/tcp chromagrafx Chromagrafx1374/tcp molly EPI Software Systems1375/tcp bytex Bytex1376/tcp ibm-pps IBM Person to Person Software1377/tcp cichlid Cichlid License Manager1378/tcp elan Elan License Manager1379/tcp dbreporter Integrity Solutions1380/tcp telesis-licman Telesis Network License Manager 1381/tcp apple-licman Apple Network License Manager 1382/tcp udt_os1383/tcp gwha GW Hannaway Network License Manager 1384/tcp os-licman Objective Solutions License Manager 1385/tcp atex_elmd Atex Publishing License Manager 1386/tcp checksum CheckSum License Manager1387/tcp cadsi-lm Computer Aided Design Software Inc LM 1388/tcp objective-dbc Objective Solutions DataBase Cache 1389/tcp iclpv-dm Document Manager1390/tcp iclpv-sc Storage Controller1391/tcp iclpv-sas Storage Access Server1392/tcp iclpv-pm Print Manager1393/tcp iclpv-nls Network Log Server1394/tcp iclpv-nlc Network Log Client1395/tcp iclpv-wsm PC Workstation Manager software 1396/tcp dvl-activemail DVL Active Mail1399/tcp cadkey-licman Cadkey License Manager1400/tcp cadkey-tablet Cadkey Tablet Daemon1402/tcp prm-sm-np Prospero Resource Manager1403/tcp prm-nm-np Prospero Resource Manager1404/tcp igi-lm Infinite Graphics License Manager1405/tcp ibm-res IBM Remote Execution Starter1406/tcp netlabs-lm NetLabs License Manager1407/tcp dbsa-lm DBSA License Manager1408/tcp sophia-lm Sophia License Manager1409/tcp here-lm Here License Manager1410/tcp hiq HiQ License Manager1411/tcp af AudioFile1412/tcp innosys InnoSys1413/tcp innosys-acl Innosys-ACL1414/tcp ibm-mqseries IBM MQSeries1415/tcp dbstar DBStar1416/tcp novell-lu6.2 Novell LU6.21417/tcp timbuktu-srv1 Timbuktu Service 1 Port1418/tcp timbuktu-srv2 Timbuktu Service 2 Port1419/tcp timbuktu-srv3 Timbuktu Service 3 Port1420/tcp timbuktu-srv4 Timbuktu Service 4 Port1421/tcp gandalf-lm Gandalf License Manager1422/tcp autodesk-lm Autodesk License Manager1423/tcp essbase Essbase Arbor Software1424/tcp hybrid Hybrid Encryption Protocol1425/tcp zion-lm Zion Software License Manager1426/tcp sais Satellite-data Acquisition System 11427/tcp mloadd mloadd monitoring tool1428/tcp informatik-lm Informatik License Manager1429/tcp nms Hypercom NMS1430/tcp tpdu Hypercom TPDU1431/tcp rgtp Reverse Gossip Transport1432/tcp blueberry-lm Blueberry Software License Manager 1433/tcp ms-sql-s Microsoft-SQL-Server1434/tcp ms-sql-m Microsoft-SQL-Monitor1435/tcp ibm-cics IBM CICS1436/tcp saism Satellite-data Acquisition System 21437/tcp tabula Tabula1438/tcp eicon-server Eicon Security Agent/Server1439/tcp eicon-x25 Eicon X25/SNA Gateway1440/tcp eicon-slp Eicon Service Location Protocol1441/tcp cadis-1 Cadis License Management1442/tcp cadis-2 Cadis License Management1443/tcp ies-lm Integrated Engineering Software1444/tcp marcam-lm Marcam License Management1445/tcp proxima-lm Proxima License Manager1446/tcp ora-lm Optical Research Associates License Manager 1447/tcp apri-lm Applied Parallel Research LM1448/tcp oc-lm OpenConnect License Manager1449/tcp peport PEport1450/tcp dwf Tandem Distributed Workbench Facility1451/tcp infoman IBM Information Management1452/tcp gtegsc-lm GTE Government Systems License Man 1453/tcp genie-lm Genie License Manager1454/tcp interhdl_elmd interHDL License Manager1455/tcp esl-lm ESL License Manager1456/tcp dca DCA1457/tcp valisys-lm Valisys License Manager1458/tcp nrcabq-lm Nichols Research Corp.1459/tcp proshare1 Proshare Notebook Application1460/tcp proshare2 Proshare Notebook Application1461/tcp ibm_wrless_lan IBM Wireless LAN1462/tcp world-lm World License Manager1463/tcp nucleus Nucleus1464/tcp msl_lmd MSL License Manager1465/tcp pipes Pipes Platform1466/tcp oceansoft-lm Ocean Software License Manager 1467/tcp csdmbase CSDMBASE1468/tcp csdm CSDM1469/tcp aal-lm Active Analysis Limited License Manager 1470/tcp uaiact Universal Analytics1471/tcp csdmbase csdmbase1472/tcp csdm csdm1473/tcp openmath OpenMath1474/tcp telefinder Telefinder1475/tcp taligent-lm Taligent License Manager1476/tcp clvm-cfg clvm-cfg1477/tcp ms-sna-server ms-sna-server1478/tcp ms-sna-base ms-sna-base1479/tcp dberegister dberegister1480/tcp pacerforum PacerForum1481/tcp airs AIRS1482/tcp miteksys-lm Miteksys License Manager1483/tcp afs AFS License Manager1484/tcp confluent Confluent License Manager1485/tcp lansource LANSource1486/tcp nms_topo_serv nms_topo_serv1487/tcp localinfosrvr LocalInfoSrvr1488/tcp docstor DocStor1489/tcp dmdocbroker dmdocbroker1490/tcp insitu-conf insitu-conf1491/tcp anynetgateway anynetgateway1492/tcp stone-design-1 stone-design-11493/tcp netmap_lm netmap_lm1494/tcp ica ica1495/tcp cvc cvc1496/tcp liberty-lm liberty-lm1497/tcp rfx-lm rfx-lm1498/tcp sybase-sqlany Sybase SQL Any1499/tcp fhc Federico Heinz Consultora1500/tcp vlsi-lm VLSI License Manager1501/tcp saiscm Satellite-data Acquisition System 31502/tcp shivadiscovery Shiva1503/tcp imtc-mcs Databeam1504/tcp evb-elm EVB Software Engineering License Manager 1505/tcp funkproxy Funk Software, Inc.1506/tcp utcd Universal Time daemon (utcd)1507/tcp symplex symplex1508/tcp diagmond diagmond1509/tcp robcad-lm Robcad, Ltd. License Manager1510/tcp mvx-lm Midland Valley Exploration Ltd. Lic. Man. 1511/tcp 3l-l1 3l-l11512/tcp wins Microsoft‘s Windows Internet Name Service1513/tcp fujitsu-dtc Fujitsu Systems Business of America, Inc1514/tcp fujitsu-dtcns Fujitsu Systems Business of America, Inc 1515/tcp ifor-protocol ifor-protocol1516/tcp vpad Virtual Places Audio data1517/tcp vpac Virtual Places Audio control1518/tcp vpvd Virtual Places Video data1519/tcp vpvc Virtual Places Video control1520/tcp atm-zip-office atm zip office1521/tcp ncube-lm nCube License Manager1522/tcp ricardo-lm Ricardo North America License Manager1523/tcp cichild-lm cichild1525/tcp orasrv oracle1525/tcp prospero-np Prospero Directory Service non-priv1526/tcp pdap-np Prospero Data Access Prot non-priv1527/tcp tlisrv oracle1528/tcp mciautoreg micautoreg1529/tcp coauthor oracle1530/tcp rap-service rap-service1531/tcp rap-listen rap-listen1532/tcp miroconnect miroconnect1533/tcp virtual-places Virtual Places Software1534/tcp micromuse-lm micromuse-lm1535/tcp ampr-info ampr-info1536/tcp ampr-inter ampr-inter1537/tcp sdsc-lm isi-lm1538/tcp 3ds-lm 3ds-lm1539/tcp intellistor-lm Intellistor License Manager1540/tcp rds rds1541/tcp rds2 rds21542/tcp gridgen-elmd gridgen-elmd1543/tcp simba-cs simba-cs1544/tcp aspeclmd aspeclmd1545/tcp vistium-share vistium-share1546/tcp abbaccuray abbaccuray1547/tcp laplink laplink1548/tcp axon-lm Axon License Manager1549/tcp shivahose Shiva Hose1550/tcp 3m-image-lm Image Storage license manager 3M Company 1551/tcp hecmtl-db HECMTL-DB1552/tcp pciarray pciarray1553/tcp sna-cs sna-cs1554/tcp caci-lm CACI Products Company License Manager1555/tcp livelan livelan。
常见TCP和UDP端口列表
小于1024的端口通常运行一些网络服务,大于1024的端口用来与远程机器建立连接。
TCP端口7 = 回显9 = 丢弃11 = 在线用户13 = 时间服务15 = 网络状态17 = 每日引用18 = 消息发送19 = 字符发生器20 = ftp数据21 = 文件传输22 = SSH端口23 = 远程终端25 = 发送邮件31 = Masters Paradise木马37 = 时间39 = 资源定位协议41 = DeepThroat木马42 = WINS 主机名服务43 = WhoIs服务58 = DMSetup木马59 = 个人文件服务63 = WHOIS端口69 = TFTP服务70 = 信息检索79 = 查询在线用户80 = WEB网页88 = Kerberros5认证101 = 主机名102 = ISO107 = 远程登录终端109 = pop2邮件110 = pop3邮件111 = SUN远程控制113 = 身份验证117 = UUPC119 = nntp新闻组121 = JammerKillah木马135 = 本地服务138 = 隐形大盗139 = 文件共享143 = IMAP4邮件146 = FC-Infector木马158 = 邮件服务170 = 打印服务179 = BGP194 = IRC PORT213 = TCP OVER IPX220 = IMAP3邮件389 = 目录服务406 = IMSP PORT411 = DC++421 = TCP Wrappers443 = 安全WEB访问445 = SMB(交换服务器消息块) 456 = Hackers Paradise木马464 = Kerberros认证512 = 远程执行或卫星通讯513 = 远程登录与查询514 = SHELL/系统日志515 = 打印服务517 = Talk518 = 网络聊天520 = EFS525 = 时间服务526 = 日期更新530 = RPC531 = RASmin木马532 = 新闻阅读533 = 紧急广播540 = UUCP543 = Kerberos登录544 = 远程shell550 = who 554 = RTSP555 = Ini-Killer木马556 = 远程文件系统560 = 远程监控561 = 监控636 = 安全目录服务666 = Attack FTP木马749 = Kerberos管理750 = Kerberos V4 911 = Dark Shadow木马989 = FTPS990 = FTPS992 = TelnetS993 = IMAPS999 = DeepThroat木马1001 = Silencer木马1010 = Doly木马1011 = Doly木马1012 = Doly木马1015 = Doly木马1024 = NetSpy木马1042 = Bla木马1045 = RASmin木马1080 = SOCKS代理1090 = Extreme木马1095 = Rat木马1097 = Rat木马1098 = Rat木马1099 = Rat木马1109 = Kerberos POP1167 = 私用电话1170 = Psyber Stream Server 1214 = KAZAA下载1234 = Ultors/恶鹰木马1243 = Backdoor/SubSeven木马1245 = VooDoo Doll木马1349 = BO DLL木马1352 = Lotus Notes1433 = SQL SERVER1492 = FTP99CMP木马1494 = CITRIX1503 = Netmeeting1512 = WINS解析1524 = IngresLock后门1600 = Shivka-Burka木马1630 = 网易泡泡1701 = L2TP1720 = H3231723 = PPTP(虚拟专用网) 1731 = Netmeeting1755 = 流媒体服务1807 = SpySender木马1812 = Radius认证1813 = Radius评估1863 = MSN聊天1981 = ShockRave木马1999 = Backdoor木马2000 = TransScout-Remote-Explorer木马2001 = TransScout木马2002 = TransScout/恶鹰木马2003 = TransScout木马2004 = TransScout木马2005 = TransScout木马2023 = Ripper木马2049 = NFS服务器2053 = KNETD2115 = Bugs木马2140 = Deep Throat木马2401 = CVS2535 = 恶鹰2565 = Striker木马2583 = WinCrash木马2773 = Backdoor/SubSeven木马2774 = SubSeven木马2801 = Phineas Phucker木马2869 = UPNP(通用即插即用)3024 = WinCrash木马3050 = InterBase3128 = squid代理3129 = Masters Paradise木马3150 = DeepThroat木马3306 = MYSQL3389 = 远程桌面3544 = MSN语音3545 = MSN语音3546 = MSN语音3547 = MSN语音3548 = MSN语音3549 = MSN语音3550 = MSN语音3551 = MSN语音3552 = MSN语音3553 = MSN语音3554 = MSN语音3555 = MSN语音3556 = MSN语音3557 = MSN语音3558 = MSN语音3559 = MSN语音3560 = MSN语音3561 = MSN语音3562 = MSN语音3563 = MSN语音3564 = MSN语音3565 = MSN语音3566 = MSN语音3567 = MSN语音3568 = MSN语音3569 = MSN语音3570 = MSN语音3571 = MSN语音3572 = MSN语音3573 = MSN语音3574 = MSN语音3575 = MSN语音3576 = MSN语音3577 = MSN语音3578 = MSN语音3579 = MSN语音3700 = Portal of Doom木马4080 = WebAdmin4081 = WebAdmin+SSL4092 = WinCrash木马4267 = SubSeven木马4443 = AOL MSN4567 = File Nail木马4590 = ICQ木马4661 = 电驴下载4662 = 电驴下载4663 = 电驴下载4664 = 电驴下载4665 = 电驴下载4666 = 电驴下载4899 = Radmin木马5000 = Sokets-de木马5000 = UPnP(通用即插即用) 5001 = Back Door Setup木马5060 = SIP5168 = 高波蠕虫5190 = AOL MSN5321 = Firehotcker木马5333 = NetMonitor木马5400 = Blade Runner木马5401 = Blade Runner木马5402 = Blade Runner木马5550 = JAPAN xtcp木马5554 = 假警察蠕虫5555 = ServeMe木马5556 = BO Facil木马5557 = BO Facil木马5569 = Robo-Hack木马5631 = pcAnywhere5632 = pcAnywhere5742 = WinCrash木马5800 = VNC端口5801 = VNC端口5890 = VNC端口5891 = VNC端口5892 = VNC端口6267 = 广外女生6400 = The Thing木马6665 = IRC6666 = IRC SERVER PORT6667 = 小邮差6668 = IRC6669 = IRC6670 = DeepThroat木马6711 = SubSeven木马6771 = DeepThroat木马6776 = BackDoor-G木马6881 = BT下载6882 = BT下载6883 = BT下载6884 = BT下载6885 = BT下载6886 = BT下载6887 = BT下载6888 = BT下载6889 = BT下载6890 = BT下载6939 = Indoctrination木马6969 = GateCrasher/Priority木马6970 = GateCrasher木马7000 = Remote Grab木马7001 = Windows messager7070 = RealAudio控制口7215 = Backdoor/SubSeven木马7300 = 网络精灵木马7301 = 网络精灵木马7306 = 网络精灵木马7307 = 网络精灵木马7308 = 网络精灵木马7424 = Host Control Trojan7467 = Padobot7511 = 聪明基因7597 = QaZ木马7626 = 冰河木马7789 = Back Door Setup/ICKiller木马8011 = 无赖小子8102 = 网络神偷8181 = 灾飞9408 = 山泉木马9535 = 远程管理9872 = Portal of Doom木马9873 = Portal of Doom木马9874 = Portal of Doom木马9875 = Portal of Doom木马9898 = 假警察蠕虫9989 = iNi-Killer木马10066 = Ambush Trojan 10067 = Portal of Doom木马10167 = Portal of Doom木马10168 = 恶邮差10520 = Acid Shivers木马10607 = COMA木马11000 = Senna Spy木马11223 = Progenic木马11927 =12076 = GJammer木马12223 = Keylogger木马12345 = NetBus木马12346 = GabanBus木马12361 = Whack-a-mole木马12362 = Whack-a-mole木马12363 = Whack-a-Mole木马12631 = WhackJob木马13000 = Senna Spy木马13223 = PowWow聊天14500 = PC Invader木马14501 = PC Invader木马14502 = PC Invader木马14503 = PC Invader木马15000 = NetDemon木马15382 = SubZero木马16484 = Mosucker木马16772 = ICQ Revenge木马16969 = Priority木马17072 = Conducent广告17166 = Mosaic木马17300 = Kuang2 the virus Trojan 17449 = Kid Terror Trojan 17499 = CrazzyNet Trojan17500 = CrazzyNet Trojan17569 = Infector Trojan17593 = Audiodoor Trojan17777 = Nephron Trojan19191 = 蓝色火焰19864 = ICQ Revenge木马20001 = Millennium木马20002 = Acidkor Trojan20005 = Mosucker木马20023 = VP Killer Trojan20034 = NetBus 2 Pro木马20808 = QQ女友21544 = GirlFriend木马22222 = Proziack木马23005 = NetTrash木马23006 = NetTrash木马23023 = Logged木马23032 = Amanda木马23432 = Asylum木马23444 = 网络公牛23456 = Evil FTP木马23456 = EvilFTP-UglyFTP木马23476 = Donald-Dick木马23477 = Donald-Dick木马25685 = Moonpie木马25686 = Moonpie木马25836 = Trojan-Proxy25982 = Moonpie木马26274 = Delta Source木马27184 = Alvgus 2000 Trojan 29104 = NetTrojan木马29891 = The Unexplained木马30001 = ErrOr32木马30003 = Lamers Death木马30029 = AOL木马30100 = NetSphere木马30101 = NetSphere木马30102 = NetSphere木马30103 = NetSphere 木马30103 = NetSphere木马30133 = NetSphere木马30303 = Sockets de Troie 30947 = Intruse木马31336 = Butt Funnel木马31337 = Back-Orifice木马31338 = NetSpy DK 木马31339 = NetSpy DK 木马31666 = BOWhack木马31785 = Hack Attack木马31787 = Hack Attack木马31788 = Hack-A-Tack木马31789 = Hack Attack木马31791 = Hack Attack木马31792 = Hack-A-Tack木马32100 = Peanut Brittle木马32418 = Acid Battery木马33333 = Prosiak木马33577 = Son of PsychWard木马33777 = Son of PsychWard木马33911 = Spirit 2000/2001木马34324 = Big Gluck木马34555 = Trinoo木马35555 = Trinoo木马36549 = Trojan-Proxy37237 = Mantis Trojan40412 = The Spy木马40421 = Agent 40421木马40422 = Master-Paradise木马40423 = Master-Paradise木马40425 = Master-Paradise木马40426 = Master-Paradise木马41337 = Storm木马41666 = Remote Boot tool木马46147 =47262 = Delta Source木马49301 = Online KeyLogger木马50130 = Enterprise木马50505 = Sockets de Troie木马50766 = Fore木马51996 = Cafeini木马53001 = Remote Windows Shutdown木马54283 = Backdoor/SubSeven木马54320 = Back-Orifice木马54321 = Back-Orifice木马55165 = File Manager木马57341 = NetRaider木马58339 = Butt Funnel木马60000 = DeepThroat木马60411 = Connection木马61348 = Bunker-hill木马61466 = Telecommando木马61603 = Bunker-hill木马63485 = Bunker-hill木马65000 = Devil木马65390 = Eclypse木马65432 = The Traitor木马65535 = Rc1木马UDP端口31 = Masters Paradise木马41 = DeepThroat木马53 = 域名解析67 = 动态IP服务68 = 动态IP客户端135 = 本地服务137 = NETBIOS名称138 = NETBIOS DGM服务139 = 文件共享146 = FC-Infector木马161 = SNMP服务162 = SNMP查询445 = SMB(交换服务器消息块) 500 = VPN密钥协商666 = Bla木马999 = DeepThroat木马1027 = 灰鸽子1042 = Bla木马1561 = MuSka52木马1900 = UPNP(通用即插即用) 2140 = Deep Throat木马2989 = Rat木马3129 = Masters Paradise木马3150 = DeepThroat木马3700 = Portal of Doom木马4000 = QQ聊天4006 = 灰鸽子5168 = 高波蠕虫6670 = DeepThroat木马6771 = DeepThroat木马6970 = ReadAudio音频数据8000 = QQ聊天8099 = VC远程调试8225 = 灰鸽子9872 = Portal of Doom木马9873 = Portal of Doom木马9874 = Portal of Doom木马9875 = Portal of Doom木马10067 = Portal of Doom木马10167 = Portal of Doom木马22226 = 高波蠕虫26274 = Delta Source木马31337 = Back-Orifice木马31785 = Hack Attack木马31787 = Hack Attack木马31788 = Hack-A-Tack木马31789 = Hack Attack木马31791 = Hack Attack木马31792 = Hack-A-Tack木马34555 = Trin00 DDoS木马40422 = Master-Paradise木马40423 = Master-Paradise木马40425 = Master-Paradise木马40426 = Master-Paradise木马47262 = Delta Source木马54320 = Back-Orifice木马54321 = Back-Orifice木马60000 = DeepThroat木马。
TCPUDP 常用端口号
TCP/UDP 常用端口号TCP/UDP 常用端口号标签:tcp udp 端口it 分类:ccnaTCP 20=FTPTCP 21=FTP BACKTCP 23=TelnetTCP 25=SMTPTCP 53=DNSTCP 80=超文本服务器(Http)TCP 110=Pop3TCP 115=简单文件传输协议TCP/UDP端口大全//注意:由于一些应用软件占用了部分端口,因此此文件中的部分端口被注释掉了(注释的字符为://)。
TCP 1=TCP Port Service MultiplexerTCP 2=DeathTCP 5=Remote Job Entry,yoyoTCP 7=EchoTCP 11=SkunTCP 12=BomberTCP 16=SkunTCP 17=SkunTCP 18=消息传输协议,skunTCP 19=SkunTCP 20=FTP Data,AmandaTCP 21=文件传输,Back Construction,Blade Runner,Doly Trojan,Fore,FTP trojan,Invisible FTP,Larva, WebEx,WinCrashTCP 22=远程登录协议TCP 23=远程登录(Telnet),Tiny Telnet Server (= TTS)TCP 25=电子邮件(SMTP),Ajan,Antigen,Email Password Sender,Happy99,Kuang2,ProMailtrojan,Shtrilitz,Stealth,Tapiras,Terminator,WinPC,WinSpy,Haebu CocedaTCP 27=AssasinTCP 28=AmandaTCP 29=MSG ICPTCP 30=Agent 40421TCP 31=Agent 31,Hackers Paradise,Masters Paradise,Agent 40421TCP 37=Time,ADM wormTCP 39=SubSARITCP 41=DeepThroat,ForeplayTCP 42=Host Name ServerTCP 43=WHOISTCP 44=ArcticTCP 48=DRATTCP 49=主机登录协议TCP 50=DRATTCP 51=Fuck Lamers BackdoorTCP 52=MuSka52,SkunTCP 53=DNS,Bonk (DOS Exploit)TCP 54=MuSka52TCP 58=DMSetupTCP 59=DMSetupTCP 66=AL-BarekiTCP 69=W32.a.Worm,BackGate Kit,Nimda,Pasana,Storm,Storm worm,Theef TCP 70=Gopher服务,ADM wormTCP 79=用户查询(Finger),Firehotcker,ADM wormTCP 80=超文本服务器(Http),Executor,RingZeroTCP 81=ChuboTCP 99=Hidden PortTCP 108=SNA网关访问服务器TCP 109=Pop2TCP 110=电子邮件(Pop3),ProMailTCP 113=Kazimas, Auther IdnetTCP 115=简单文件传输协议TCP 118=SQL Services, Infector 1.4.2TCP 119=Newsgroup(Nntp), Happy 99TCP 121=JammerKiller, Bo jammerkillahTCP 129=Password Generator ProtocolTCP 123=Net ControllerTCP 133=Infector 1.x//TCP 135=Netbios Remote procedure call//TCP 137=Netbios name (DoS attacks)//TCP 138=Netbios datagram//TCP 139=Netbios session (DoS attacks)TCP 143=IMAPTCP 146=FC Infector,InfectorTCP 150=NetBIOS Session ServiceTCP 156=SQL服务器TCP 161=SnmpTCP 162=Snmp-TrapTCP 170=A-TrojanTCP 179=Border网关协议(BGP)TCP 190=网关访问控制协议(GACP)TCP 194=IrcTCP 197=目录定位服务(DLS)TCP 256=NirvanaTCP 315=The InvasorTCP 389=Lightweight Directory Access Protocol (LDAP) TCP 396=Novell Netware over IPTCP 420=BreachTCP 421=TCP WrappersTCP 443=安全服务TCP 444=Simple Network Paging Protocol(SNPP)TCP 445=Microsoft-DSTCP 456=Hackers paradise,FuseSparkTCP 458=苹果公司QuickTimeTCP 531=RasminTCP 546=DHCP ClientTCP 547=DHCP ServerTCP 555=Ini-Killer,Phase Zero,Stealth SpyTCP 569=MSNTCP 605=SecretServiceTCP 606=Noknok8TCP 661=Noknok8TCP 666=Attack FTP,Satanz Backdoor,Back Construction,Dark Connection Inside 1.2TCP 667=Noknok7.2TCP 668=Noknok6TCP 692=GayOLTCP 777=AIM SpyTCP 808=RemoteControl,WinHoleTCP 815=Everyone DarlingTCP 901=Backdoor.DevilTCP 911=Dark ShadowTCP 999=DeepThroatTCP 1000=Der SpaeherTCP 1001=Silencer,WebEx,Der SpaeherTCP 1003=BackDoorTCP 1010=DolyTCP 1011=DolyTCP 1012=DolyTCP 1015=DolyTCP 1020=VampireTCP 1024=NetSpy.698(YAI)//TCP 1025=NetSpy.698//TCP 1033=Netspy//TCP 1042=Bla//TCP 1045=Rasmin//TCP 1047=GateCrasher//TCP 1050=MiniCommandTCP 1080=Wingate//TCP 1090=Xtreme, VDOLive//TCP 1095=Rat//TCP 1097=Rat//TCP 1098=Rat//TCP 1099=RatTCP 1111=Backdoor.AIMVision//TCP 1170=Psyber Stream Server,Streaming Audio trojan,Voice //TCP 1200=NoBackO//TCP 1201=NoBackO//TCP 1207=Softwar//TCP 1212=Nirvana,Visul Killer//TCP 1234=Ultors//TCP 1243=BackDoor-G, SubSeven, SubSeven Apocalypse//TCP 1245=VooDoo Doll//TCP 1269=Mavericks Matrix//TCP 1313=Nirvana//TCP 1349=BioNet//TCP 1441=Remote Storm//TCP 1492=FTP99CMP(BackOriffice.FTP)//TCP 1509=Psyber Streaming Server//TCP 1600=Shivka-Burka//TCP 1703=Exloiter 1.1//TCP 1807=SpySender//TCP 1966=Fake FTP 2000//TCP 1976=Custom port//TCP 1981=Shockrave//TCP 1999=BackDoor, TransScout//TCP 2000=Der Spaeher,INsane Network//TCP 2001=Transmisson scout//TCP 2002=Transmisson scout//TCP 2019=Transmisson scout//TCP 2019=Transmisson scout//TCP 2019=TTransmisson scout//TCP 2023=Ripper,Pass Ripper,Hack City Ripper Pro //TCP 2115=Bugs//TCP 2121=Nirvana//TCP 2140=Deep Throat, The Invasor//TCP 2155=Nirvana//TCP 2208=RuX//TCP 2255=Illusion Mailer//TCP 2283=HVL Rat5//TCP 2300=PC Explorer//TCP 2311=Studio54//TCP 2565=Striker//TCP 2583=WinCrash//TCP 2600=Digital RootBeer//TCP 2716=Prayer Trojan//TCP 2801=Phineas Phucker//TCP 2989=Rat//TCP 3024=WinCrash trojan//TCP 3128=RingZero//TCP 3129=Masters Paradise//TCP 3150=Deep Throat, The Invasor//TCP 3210=SchoolBus//TCP 3456=Terror//TCP 3459=Eclipse 2000//TCP 3700=Portal of Doom//TCP 3791=Eclypse//TCP 3801=EclypseTCP 4000=腾讯QQ客户端TCP 4092=WinCrashTCP 4242=VHMTCP 4321=BoBoTCP 4444=Prosiak,Swift remoteTCP 4500=W32.HLLW.TufasTCP 4567=File NailTCP 4590=ICQTrojanTCP 4950=ICQTrojanTCP 5000=WindowsXP服务器,Blazer 5,Bubbel,Back Door Setup,Sockets de Troie TCP 5001=Back Door Setup, Sockets de TroieTCP 5011=One of the Last Trojans (OOTLT) TCP 5031=Firehotcker,Metropolitan,NetMetro TCP 5032=MetropolitanTCP 5190=ICQ QueryTCP 5321=FirehotckerTCP 5333=Backage Trojan Box 3TCP 5343=WCratTCP 5400=Blade Runner, BackConstruction1.2 TCP 5401=Blade Runner,Back ConstructionTCP 5402=Blade Runner,Back ConstructionTCP 5471=WinCrashTCP 5521=Illusion MailerTCP 5550=Xtcp,INsane NetworkTCP 5555=ServeMeTCP 5556=BO FacilTCP 5557=BO FacilTCP 5569=Robo-HackTCP 5598=BackDoor 2.03TCP 5631=PCAnyWhere dataTCP 5637=PC CrasherTCP 5638=PC CrasherTCP 5698=BackDoorTCP 5714=Wincrash3TCP 5741=WinCrash3TCP 5742=WinCrashTCP 5881=Y3K RATTCP 5882=Y3K RATTCP 5888=Y3K RATTCP 5889=Y3K RATTCP 5900=WinVnc,华讯VGA广播服务器TCP 6000=Backdoor.ABTCP 6006=Noknok8TCP 6272=SecretServiceTCP 6267=广外女生TCP 6400=Backdoor.AB,The ThingTCP 6500=Devil 1.03TCP 6661=TemanTCP 6666=TCPshell.cTCP 6667=NT Remote Control,华讯视频接收端口 TCP 6668=华讯视频广播服务器TCP 6669=VampyreTCP 6670=DeepThroatTCP 6711=SubSevenTCP 6712=SubSeven1.xTCP 6713=SubSevenTCP 6723=MstreamTCP 6767=NT Remote ControlTCP 6771=DeepThroatTCP 6776=BackDoor-G,SubSeven,2000 CracksTCP 6789=Doly TrojanTCP 6883=DeltaSourceTCP 6912=Shit HeepTCP 6939=IndoctrinationTCP 6969=GateCrasher, Priority, IRC 3TCP 6970=GateCrasherTCP 7000=Remote Grab,NetMonitor,SubSeven1.x TCP 7001=Freak88TCP 7201=NetMonitorTCP 7215=BackDoor-G, SubSevenTCP 7001=Freak88,Freak2kTCP 7300=NetMonitorTCP 7301=NetMonitorTCP 7306=NetMonitorTCP 7307=NetMonitor, ProcSpyTCP 7308=NetMonitor, X SpyTCP 7323=Sygate服务器端TCP 7424=Host ControlTCP 7597=QazTCP 7609=Snid X2TCP 7626=冰河TCP 7777=The ThingTCP 7789=Back Door Setup, ICQKillerTCP 7983=MstreamTCP 8000=XDMA, 腾讯OICQ服务器端TCP 8080=WWW 代理,Ring Zero,Chubo TCP 8520=W32.Socay.WormTCP 8787=BackOfrice 2000TCP 8897=Hack Office,Armageddon TCP 8989=ReconTCP 9000=NetministratorTCP 9325=MstreamTCP 9400=InCommandTCP 9401=InCommandTCP 9402=InCommandTCP 9872=Portal of DoomTCP 9873=Portal of DoomTCP 9874=Portal of DoomTCP 9875=Portal of DoomTCP 9876=Cyber AttackerTCP 9878=TransScoutTCP 9989=Ini-KillerTCP 9999=Prayer TrojanTCP 10067=Portal of DoomTCP 10084=SyphillisTCP 10085=SyphillisTCP 10086=SyphillisTCP 10101=BrainSpyTCP 10167=Portal Of DoomTCP 10520=Acid ShiversTCP 10607=Coma trojanTCP 10666=AmbushTCP 11000=Senna SpyTCP 11050=Host ControlTCP 11051=Host ControlTCP 11223=Progenic,Hack '99KeyLoggerTCP 11831=TROJ_LATINUS.SVRTCP 12076=Gjamer, MSH.104bTCP 12223=Hack?9 KeyLoggerTCP 12345=GabanBus, NetBus, Pie Bill Gates, X-bill TCP 12346=GabanBus, NetBus, X-billTCP 12349=BioNetTCP 12361=Whack-a-moleTCP 12362=Whack-a-moleTCP 12378=W32/Gibe@MMTCP 12456=NetBusTCP 12623=DUN ControlTCP 12624=ButtmanTCP 12631=WhackJob, WhackJob.NB1.7TCP 12701=Eclipse2000TCP 12754=MstreamTCP 13000=Senna SpyTCP 13010=Hacker BrazilTCP 13013=PsychwardTCP 13700=Kuang2 The VirusTCP 14456=SoleroTCP 14500=PC InvaderTCP 14501=PC InvaderTCP 14502=PC InvaderTCP 14503=PC InvaderTCP 15000=NetDaemon 1.0TCP 15092=Host ControlTCP 15104=MstreamTCP 16484=MosuckerTCP 16660=Stacheldraht (DDoS)TCP 16772=ICQ RevengeTCP 16969=PriorityTCP 17166=MosaicTCP 17300=Kuang2 The VirusTCP 17490=CrazyNetTCP 17500=CrazyNetTCP 17569=Infector 1.4.x + 1.6.xTCP 17777=NephronTCP 18753=Shaft (DDoS)TCP 19864=ICQ RevengeTCP 20000=Millennium II (GrilFriend) TCP 20001=Millennium II (GrilFriend) TCP 20002=AcidkoRTCP 20194=NetBus 2 ProTCP 20203=Logged,ChupacabraTCP 20331=BlaTCP 20432=Shaft (DDoS)TCP 21544=Schwindler 1.82,GirlFriendTCP 21554=Schwindler 1.82,GirlFriend,Exloiter 1.0.1.2 TCP 22222=Prosiak,RuX Uploader 2.0TCP 22784=Backdoor.IntruzzoTCP 23432=Asylum 0.1.3TCP 23456=Evil FTP, Ugly FTP, WhackJobTCP 23476=Donald DickTCP 23477=Donald DickTCP 23777=INet SpyTCP 26274=DeltaTCP 26681=Spy VoiceTCP 27374=Sub Seven 2.0+, Backdoor.BasteTCP 27444=Tribal Flood Network,TrinooTCP 27665=Tribal Flood Network,TrinooTCP 29431=Hack AttackTCP 29432=Hack AttackTCP 29104=Host ControlTCP 29559=TROJ_LATINUS.SVRTCP 29891=The UnexplainedTCP 30001=Terr0r32TCP 30003=Death,Lamers DeathTCP 30029=AOL trojanTCP 30100=NetSphere 1.27a,NetSphere 1.31TCP 30101=NetSphere 1.31,NetSphere 1.27aTCP 30102=NetSphere 1.27a,NetSphere 1.31TCP 30103=NetSphere 1.31TCP NetSphere FinalTCP 30303=Sockets de TroieTCP 30947=IntruseTCP 30999=Kuang2TCP 21335=Tribal Flood Network,TrinooTCP 31336=Bo WhackTCP 31337=Baron Night,BO client,BO2,Bo Facil,BackFire,Back Orifice,DeepBO,Freak2k,NetSpyTCP 31338=NetSpy,Back Orifice,DeepBOTCP 31339=NetSpy DKTCP 31554=SchwindlerTCP 31666=BOWhackTCP 31778=Hack AttackTCP 31785=Hack AttackTCP 31787=Hack AttackTCP 31789=Hack AttackTCP 31791=Hack AttackTCP 31792=Hack AttackTCP 32100=PeanutBrittleTCP 32418=Acid BatteryTCP 33333=Prosiak,Blakharaz 1.0TCP 33577=Son Of PsychwardTCP 33777=Son Of PsychwardTCP 33911=Spirit 2001aTCP 34324=BigGluck,TN,Tiny Telnet Server TCP 34555=Trin00 (Windows) (DDoS)TCP 35555=Trin00 (Windows) (DDoS)TCP 36794=Worm.Bugbear-ATCP 37651=YATTCP 40412=The SpyTCP 40421=Agent 40421,Masters Paradise.96 TCP 40422=Masters ParadiseTCP 40423=Masters Paradise.97TCP 40425=Masters ParadiseTCP 40426=Masters Paradise 3.xTCP 41666=Remote BootTCP 43210=Schoolbus 1.6/2.0TCP 44444=Delta SourceTCP 47252=ProsiakTCP 47262=DeltaTCP 47878=BirdSpy2TCP 49301=Online KeyloggerTCP 50505=Sockets de TroieTCP 50766=Fore, SchwindlerTCP 51966=CafeIniTCP 53001=Remote Windows ShutdownTCP 53217=Acid Battery 2000TCP 54283=Back Door-G, Sub7TCP 54320=Back Orifice 2000,SheepTCP 54321=School Bus .69-1.11,Sheep, BO2K TCP 57341=NetRaiderTCP 58008=BackDoor.TronTCP 58009=BackDoor.TronTCP 58339=ButtFunnelTCP 59211=BackDoor.DuckToyTCP 60000=Deep ThroatTCP 60068=Xzip 6000068TCP 60411=ConnectionTCP 60606=TROJ_BCKDOR.G2.ATCP 61466=TelecommandoTCP 61603=Bunker-killTCP 63485=Bunker-killTCP 65000=Devil, DDoSTCP 65432=Th3tr41t0r, The TraitorTCP 65530=TROJ_WINMITE.10TCP 65535=RC,Adore Worm/LinuxTCP 69123=ShitHeepTCP 88798=Armageddon,Hack OfficeUDP 1=Sockets des TroieUDP 9=ChargenUDP 19=ChargenUDP 69=PasanaUDP 80=Penrox//UDP 135=Netbios Remote procedure call //UDP 137=Netbios name (DoS attacks)//UDP 138=Netbios datagram//UDP 139=Netbios session (DoS attacks) UDP 146=InfectorUDP 1025=Maverick's Matrix 1.2 - 2.0UDP 1026=Remote Explorer 2000UDP 1027=Trojan.Huigezi.eUDP 1028=KiLo,SubSARIUDP 1029=SubSARIUDP 1031=XotUDP 1032=Akosch4UDP 1104=RexxRaveUDP 1111=DaodanUDP 1116=LurkerUDP 1122=Last 2000,SingularityUDP 1183=Cyn,SweetHeartUDP 1200=NoBackOUDP 1201=NoBackOUDP 1342=BLA trojanUDP 1344=PtakksUDP 1349=BO dllUDP 1561=MuSka52UDP 1772=NetControleUDP 1978=SlapperUDP 1985=Black DiverUDP 2000=A-trojan,Fear,Force,GOTHIC Intruder,Last 2000,Real 2000 UDP 2001=ScalperUDP 2002=SlapperUDP 2130=Mini BackLashUDP 2140=Deep Throat,Foreplay,The InvasorUDP 2222=SweetHeart, WayUDP 2339=Voice SpyUDP 2702=Black DiverUDP 2989=RATUDP 3150=Deep ThroatUDP 3215=XHXUDP 3333=DaodanUDP 3801=EclypseUDP 3996=Remote AnythingUDP 4128=RedShadUDP 4156=SlapperUDP 5419=DarkSkyUDP 5503=Remote Shell TrojanUDP 5555=DaodanUDP 5882=Y3K RATUDP 5888=Y3K RATUDP 6112= GameUDP 6666=KiLoUDP 6667=KiLoUDP 6766=KiLoUDP 6767=KiLo,UandMeUDP 6838=Mstream Agent-handlerUDP 7028=未知木马UDP 7424=Host ControlUDP 7788=SingularityUDP 7983=MStream handler-agentUDP 8012=PtakksUDP 8090=Aphex's Remote Packet Sniffer UDP 8127=9_119,ChonkerUDP 8488=KiLoUDP 8489=KiLoUDP 8787=BackOrifice 2000UDP 8879=BackOrifice 2000UDP 9325=MStream Agent-handlerUDP 10000=XHXUDP 10067=Portal of DoomUDP 10084=SyphillisUDP 10100=SlapperUDP 10167=Portal of DoomUDP 10498=MstreamUDP 10666=AmbushUDP 11225=CynUDP 12321=ProtossUDP 12345=BlueIce 2000UDP 12378=W32/Gibe@MMUDP 12623=ButtMan,DUN ControlUDP 15210=UDP remote shell backdoor server UDP 15486=KiLoUDP 16514=KiLoUDP 16515=KiLoUDP 18753=Shaft handler to AgentUDP 20433=ShaftUDP 21554=GirlFriendUDP 22784=Backdoor.IntruzzoUDP 23476=Donald DickUDP 25123=MOTDUDP 26274=Delta SourceUDP 26374=Sub-7 2.1UDP 26444=Trin00/TFN2KUDP 26573=Sub-7 2.1UDP 27184=Alvgus trojan 2000UDP 27444=TrinooUDP 29589=KiLoUDP 29891=The UnexplainedUDP 30103=NetSphereUDP 31320=Little WitchUDP 31335=Trin00 DoS AttackUDP 31337=Baron Night, BO client, BO2, Bo Facil, BackFire, Back Orifice, DeepBOUDP 31338=Back Orifice, NetSpy DK, DeepBOUDP 31339=Little WitchUDP 31340=Little WitchUDP 31416=LithiumUDP 31787=Hack aTackUDP 31789=Hack aTackUDP 31790=Hack aTackUDP 31791=Hack aTackUDP 33390=未知木马UDP 34555=TrinooUDP 35555=TrinooUDP 43720=KiLoUDP 44014=IaniUDP 44767=School BusUDP 46666=TaskmanUDP 47262=Delta SourceUDP 47785=KiLoUDP 49301=OnLine keyLoggerUDP 49683=FensterUDP 49698=KiLoUDP 52901=OmegaUDP 54320=Back OrificeUDP 54321=Back Orifice 2000UDP 54341=NetRaider Trojan UDP 61746=KiLOUDP 61747=KiLOUDP 61748=KiLOUDP 65432=The Traito。
TCP端口大全
TCP端口(静态端口)TCP 0= ReservedTCP 1=TCP Port Service MultiplexerTCP 2=DeathTCP 5=Remote Job Entry,yoyoTCP 7=EchoTCP 11=SkunTCP 12=BomberTCP 16=SkunTCP 17=SkunTCP 18=消息传输协议,skunTCP 19=SkunTCP 20=FTP Data,AmandaTCP 21=文件传输,Back Construction,Blade Runner,DolyTrojan,Fore,FTP trojan,Invisible FTP,Larva, WebEx,WinCrashTCP 22=远程登录协议TCP 23=远程登录(Telnet),Tiny Telnet Server (= TTS)TCP 25=电子邮件(SMTP),Ajan,Antigen,Email PasswordSender,Happy 99,Kuang2,ProMailtrojan,Shtrilitz,Stealth,Tapiras,Terminator,WinPC,WinSpy,Haebu Coceda TCP 27=AssasinTCP 28=AmandaTCP 29=MSG ICPTCP 30=Agent 40421TCP 31=Agent 31,Hackers Paradise,Masters Paradise,Agent 40421TCP 37=Time,ADM wormTCP 39=SubSARITCP 41=DeepThroat,ForeplayTCP 42=Host Name ServerTCP 43=WHOISTCP 44=ArcticTCP 48=DRATTCP 49=主机登录协议TCP 50=DRATTCP 51=IMP Logical Address Maintenance,Fuck Lamers BackdoorTCP 52=MuSka52,SkunTCP 53=DNS,Bonk (DOS Exploit)TCP 54=MuSka52TCP 58=DMSetupTCP 59=DMSetupTCP 63=whois++TCP 64=Communications IntegratorTCP 65=TACACS-Database ServiceTCP 66=Oracle SQL*NET,AL-BarekiTCP 67=Bootstrap Protocol ServerTCP 68=Bootstrap Protocol ClientTCP 69=W32.Evala.Worm,BackGate Kit,Nimda,Pasana,Storm,Storm worm,Theef,Worm.Cycle.aTCP 70=Gopher服务,ADM wormTCP 79=用户查询(Finger),Firehotcker,ADM wormTCP 80=超文本服务器(Http),Executor,RingZeroTCP 81=Chubo,Worm.Bbeagle.qTCP 82=Netsky-ZTCP 88=Kerberos krb5服务TCP 99=Hidden PortTCP 102=消息传输代理TCP 108=SNA网关访问服务器TCP 109=Pop2TCP 110=电子邮件(Pop3),ProMailTCP 113=Kazimas, Auther IdnetTCP 115=简单文件传输协议TCP 118=SQL Services, Infector 1.4.2TCP 119=新闻组传输协议(Newsgroup(Nntp)), Happy 99 TCP 121=JammerKiller, Bo jammerkillahTCP 123=网络时间协议(NTP),Net ControllerTCP 129=Password Generator ProtocolTCP 133=Infector 1.xTCP 135=微软DCE RPC end-point mapper服务TCP 137=微软Netbios Name服务(网上邻居传输文件使用) TCP 138=微软Netbios Name服务(网上邻居传输文件使用) TCP 139=微软Netbios Name服务(用于文件及打印机共享) TCP 142=NetTaxiTCP 143=IMAPTCP 146=FC Infector,InfectorTCP 150=NetBIOS Session ServiceTCP 156=SQL服务器TCP 161=SnmpTCP 162=Snmp-TrapTCP 170=A-TrojanTCP 177=X Display管理控制协议TCP 179=Border网关协议(BGP)TCP 190=网关访问控制协议(GACP)TCP 194=IrcTCP 197=目录定位服务(DLS)TCP 256=NirvanaTCP 315=The InvasorTCP 371=ClearCase版本管理软件TCP 389=Lightweight Directory Access Protocol (LDAP) TCP 396=Novell Netware over IPTCP 420=BreachTCP 421=TCP WrappersTCP 443=安全服务TCP 444=Simple Network Paging Protocol(SNPP)TCP 445=Microsoft-DSTCP 455=Fatal ConnectionsTCP 456=Hackers paradise,FuseSparkTCP 458=苹果公司QuickTimeTCP 513=GrloginTCP 514=RPC BackdoorTCP 520=RipTCP 531=Rasmin,Net666TCP 544=kerberos kshellTCP 546=DHCP ClientTCP 547=DHCP ServerTCP 548=Macintosh文件服务TCP 555=Ini-Killer,Phase Zero,Stealth SpyTCP 569=MSNTCP 605=SecretServiceTCP 606=Noknok8TCP 660=DeepThroatTCP 661=Noknok8TCP 666=Attack FTP,Satanz Backdoor,Back Construction,Dark Connection Inside 1.2TCP 667=Noknok7.2TCP 668=Noknok6TCP 669=DP trojanTCP 692=GayOLTCP 707=Welchia,nachiTCP 777=AIM SpyTCP 808=RemoteControl,WinHoleTCP 815=Everyone DarlingTCP 901=Backdoor.DevilTCP 911=Dark ShadowTCP 990=ssl加密TCP 993=IMAPTCP 999=DeepThroatTCP 1000=Der SpaeherTCP 1001=Silencer,WebEx,Der SpaeherTCP 1003=BackDoorTCP 1010=DolyTCP 1011=DolyTCP 1012=DolyTCP 1015=DolyTCP 1016=DolyTCP 1020=VampireTCP 1023=Worm.Sasser.eTCP 1024=NetSpy.698(YAI)TCP端口(动态端口)TCP 1059=nimregTCP 1025=NetSpy.698,Unused Windows Services Block TCP 1026=Unused Windows Services BlockTCP 1027=Unused Windows Services BlockTCP 1028=Unused Windows Services BlockTCP 1029=Unused Windows Services BlockTCP 1030=Unused Windows Services BlockTCP 1033=NetspyTCP 1035=MultidropperTCP 1042=BlaTCP 1045=RasminTCP 1047=GateCrasherTCP 1050=MiniCommandTCP 1069=Backdoor.TheefServer.202TCP 1070=Voice,Psyber Stream Server,Streaming Audio Trojan TCP 1080=Wingate,Worm.BugBear.B,Worm.Novarg.BTCP 1090=Xtreme, VDOLiveTCP 1092=LoveGateTCP 1095=RatTCP 1097=RatTCP 1098=RatTCP 1099=RatTCP 1110=nfsd-keepaliveTCP 1111=Backdoor.AIMVisionTCP 1155=Network File AccessTCP 1170=Psyber Stream Server,Streaming Audio trojan,Voice TCP 1200=NoBackOTCP 1201=NoBackOTCP 1207=SoftwarTCP 1212=Nirvana,Visul KillerTCP 1234=UltorsTCP 1243=BackDoor-G, SubSeven, SubSeven Apocalypse TCP 1245=VooDoo DollTCP 1269=Mavericks MatrixTCP 1313=NirvanaTCP 1349=BioNetTCP 1433=Microsoft SQL服务TCP 1441=Remote StormTCP 1492=FTP99CMP(BackOriffice.FTP)TCP 1503=NetMeeting T.120TCP 1509=Psyber Streaming ServerTCP 1600=Shivka-BurkaTCP 1703=Exloiter 1.1TCP 1720=NetMeeting H.233 call SetupTCP 1731=NetMeeting音频调用控制TCP 1807=SpySenderTCP 1966=Fake FTP 2000TCP 1976=Custom portTCP 1981=ShockraveTCP 1990=stun-p1 cisco STUN Priority 1 portTCP 1990=stun-p1 cisco STUN Priority 1 portTCP 1991=stun-p2 cisco STUN Priority 2 portTCP 1992=stun-p3 cisco STUN Priority 3 port,ipsendmsg IPsendmsg TCP 1993=snmp-tcp-port cisco SNMP TCP portTCP 1994=stun-port cisco serial tunnel portTCP 1995=perf-port cisco perf portTCP 1996=tr-rsrb-port cisco Remote SRB portTCP 1997=gdp-port cisco Gateway Discovery ProtocolTCP 1998=x25-svc-port cisco X.25 service (XOT)TCP 1999=BackDoor, TransScoutTCP 2000=Der Spaeher,INsane NetworkTCP 2002=W32.Beagle. AX mmTCP 2001=Transmisson scoutTCP 2002=Transmisson scoutTCP 2003=Transmisson scoutTCP 2004=Transmisson scoutTCP 2005=TTransmisson scoutTCP 2011=cypressTCP 2015=raid-csTCP 2023=Ripper,Pass Ripper,Hack City Ripper ProTCP 2049=NFSTCP 2115=BugsTCP 2121=NirvanaTCP 2140=Deep Throat, The Invasor TCP 2155=NirvanaTCP 2208=RuXTCP 2255=Illusion MailerTCP 2283=HVL Rat5TCP 2300=PC ExplorerTCP 2311=Studio54TCP 2556=Worm.Bbeagle.qTCP 2565=StrikerTCP 2583=WinCrashTCP 2600=Digital RootBeerTCP 2716=Prayer TrojanTCP 2745=Worm.BBeagle.kTCP 2773=Backdoor,SubSevenTCP 2774=SubSeven2.1&2.2TCP 2801=Phineas PhuckerTCP 2989=RatTCP 3024=WinCrash trojanTCP 3127=Worm.NovargTCP 3128=RingZero,Worm.Novarg.B TCP 3129=Masters ParadiseTCP 3150=Deep Throat, The Invasor TCP 3198=Worm.NovargTCP 3210=SchoolBusTCP 3332=Worm.Cycle.aTCP 3333=ProsiakTCP 3389=超级终端TCP 3456=TerrorTCP 3459=Eclipse 2000TCP 3700=Portal of DoomTCP 3791=EclypseTCP 3801=EclypseTCP 3996=Portal of Doom,RemoteAnythingTCP 4000=腾讯QQ客户端TCP 4060=Portal of Doom,RemoteAnythingTCP 4092=WinCrashTCP 4242=VHMTCP 4267=SubSeven2.1&2.2TCP 4321=BoBoTCP 4444=Prosiak,Swift remoteTCP 4500=W32.HLLW.TufasTCP 4567=File NailTCP 4590=ICQTrojanTCP 4899=Remote Administrator服务器TCP 4950=ICQTrojanTCP 5000=WindowsXP服务器,Blazer 5,Bubbel,Back Door Setup,Sockets de TroieTCP 5001=Back Door Setup, Sockets de TroieTCP 5002=cd00r,ShaftTCP 5011=One of the Last Trojans (OOTLT)TCP 5025=WM Remote KeyLoggerTCP 5031=Firehotcker,Metropolitan,NetMetroTCP 5032=MetropolitanTCP 5190=ICQ QueryTCP 5321=FirehotckerTCP 5333=Backage Trojan Box 3TCP 5343=WCratTCP 5400=Blade Runner, BackConstruction1.2TCP 5401=Blade Runner,Back ConstructionTCP 5402=Blade Runner,Back Construction TCP 5471=WinCrashTCP 5512=Illusion MailerTCP 5521=Illusion MailerTCP 5550=Xtcp,INsane NetworkTCP 5554=Worm.SasserTCP 5555=ServeMeTCP 5556=BO FacilTCP 5557=BO FacilTCP 5569=Robo-HackTCP 5598=BackDoor 2.03TCP 5631=PCAnyWhere dataTCP 5632=PCAnyWhereTCP 5637=PC CrasherTCP 5638=PC CrasherTCP 5698=BackDoorTCP 5714=Wincrash3TCP 5741=WinCrash3TCP 5742=WinCrashTCP 5760=Portmap Remote Root Linux Exploit TCP 5880=Y3K RATTCP 5881=Y3K RATTCP 5882=Y3K RATTCP 5888=Y3K RATTCP 5889=Y3K RATTCP 5900=WinVncTCP 6000=Backdoor.ABTCP 6006=Noknok8TCP 6129=Dameware Nt Utilities服务器TCP 6272=SecretServiceTCP 6267=广外女生TCP 6400=Backdoor.AB,The ThingTCP 6500=Devil 1.03TCP 6661=TemanTCP 6666=TCPshell.cTCP 6667=NT Remote Control,Wise 播放器接收端口TCP 6668=Wise Video广播端口TCP 6669=VampyreTCP 6670=DeepThroat,iPhoneTCP 6671=Deep Throat 3.0TCP 6711=SubSevenTCP 6712=SubSeven1.xTCP 6713=SubSevenTCP 6723=MstreamTCP 6767=NT Remote ControlTCP 6771=DeepThroatTCP 6776=BackDoor-G,SubSeven,2000 Cracks TCP 6777=Worm.BBeagleTCP 6789=Doly TrojanTCP 6838=MstreamTCP 6883=DeltaSourceTCP 6912=Shit HeepTCP 6939=IndoctrinationTCP 6969=GateCrasher, Priority, IRC 3TCP 6970=RealAudio,GateCrasherTCP 7000=Remote Grab,NetMonitor,SubSeven1.x TCP 7001=Freak88TCP 7201=NetMonitorTCP 7215=BackDoor-G, SubSevenTCP 7001=Freak88,Freak2kTCP 7300=NetMonitorTCP 7301=NetMonitorTCP 7306=NetMonitor,NetSpy 1.0TCP 7307=NetMonitor, ProcSpyTCP 7308=NetMonitor, X SpyTCP 7323=Sygate服务器端TCP 7424=Host ControlTCP 7511=聪明基因TCP 7597=QazTCP 7609=Snid X2TCP 7626=冰河TCP 7777=The ThingTCP 7789=Back Door Setup, ICQKillerTCP 7983=MstreamTCP 8000=腾讯OICQ服务器端,XDMATCP 8010=Wingate,LogfileTCP 8011=WAY2.4TCP 8080=WWW 代理,Ring Zero,Chubo,Worm.Novarg.B TCP 8102=网络神偷TCP 8181=W32.Erkez.DmmTCP 8520=W32.Socay.WormTCP 8594=I-Worm/Bozori.aTCP 8787=BackOfrice 2000TCP 8888=WinvncTCP 8897=Hack Office,ArmageddonTCP 8989=ReconTCP 9000=NetministratorTCP 9325=MstreamTCP 9400=InCommand 1.0TCP 9401=InCommand 1.0TCP 9402=InCommand 1.0TCP 9872=Portal of DoomTCP 9873=Portal of DoomTCP 9874=Portal of DoomTCP 9875=Portal of DoomTCP 9876=Cyber AttackerTCP 9878=TransScoutTCP 9989=Ini-KillerTCP 9898=Worm.Win32.Dabber.aTCP 9999=Prayer TrojanTCP 10067=Portal of DoomTCP 10080=Worm.Novarg.BTCP 10084=SyphillisTCP 10085=SyphillisTCP 10086=SyphillisTCP 10101=BrainSpyTCP 10167=Portal Of DoomTCP 10168=Worm.Supnot.78858.c,Worm.LovGate.TTCP 10520=Acid ShiversTCP 10607=Coma trojanTCP 10666=AmbushTCP 11000=Senna SpyTCP 11050=Host ControlTCP 11051=Host ControlTCP 11223=Progenic,Hack ’99KeyLoggerTCP 11831=TROJ_LATINUS.SVRTCP 12076=Gjamer, MSH.104bTCP 12223=Hack’99 KeyLoggerTCP 12345=GabanBus, NetBus 1.6/1.7, Pie Bill Gates, X-bill TCP 12346=GabanBus, NetBus 1.6/1.7, X-billTCP 12349=BioNetTCP 12361=Whack-a-moleTCP 12362=Whack-a-moleTCP 12363=Whack-a-moleTCP 12378=W32/GibeMTCP 12456=NetBusTCP 12623=DUN ControlTCP 12624=ButtmanTCP 12631=WhackJob, WhackJob.NB1.7 TCP 12701=Eclipse2000TCP 12754=MstreamTCP 13000=Senna SpyTCP 13010=Hacker BrazilTCP 13013=PsychwardTCP 13223=Tribal Voice的聊天程序PowWow TCP 13700=Kuang2 The VirusTCP 14456=SoleroTCP 14500=PC InvaderTCP 14501=PC InvaderTCP 14502=PC InvaderTCP 14503=PC InvaderTCP 15000=NetDaemon 1.0TCP 15092=Host ControlTCP 15104=MstreamTCP 16484=MosuckerTCP 16660=Stacheldraht (DDoS)TCP 16772=ICQ RevengeTCP 16959=PriorityTCP 16969=PriorityTCP 17027=提供广告服务的Conducent"adbot"共享软件TCP 17166=MosaicTCP 17300=Kuang2 The VirusTCP 17490=CrazyNetTCP 17500=CrazyNetTCP 17569=Infector 1.4.x + 1.6.xTCP 17777=NephronTCP 18753=Shaft (DDoS)TCP 19191=蓝色火焰TCP 19864=ICQ RevengeTCP 20000=Millennium II (GrilFriend)TCP 20001=Millennium II (GrilFriend)TCP 20002=AcidkoRTCP 20034=NetBus 2 ProTCP 20168=LovgateTCP 20203=Logged,ChupacabraTCP 20331=BlaTCP 20432=Shaft (DDoS)TCP 20808=Worm.LovGate.v.QQTCP 21335=Tribal Flood Network,TrinooTCP 21544=Schwindler 1.82,GirlFriendTCP 21554=Schwindler 1.82,GirlFriend,Exloiter 1.0.1.2 TCP 22222=Prosiak,RuX Uploader 2.0TCP 22784=Backdoor.IntruzzoTCP 23432=Asylum 0.1.3TCP 23444=网络公牛TCP 23456=Evil FTP, Ugly FTP, WhackJobTCP 23476=Donald DickTCP 23477=Donald DickTCP 23777=INet SpyTCP 26274=DeltaTCP 26681=Spy VoiceTCP 27374=Sub Seven 2.0+, Backdoor.BasteTCP 27444=Tribal Flood Network,TrinooTCP 27665=Tribal Flood Network,TrinooTCP 29431=Hack AttackTCP 29432=Hack AttackTCP 29104=Host ControlTCP 29559=TROJ_LATINUS.SVRTCP 29891=The UnexplainedTCP 30001=Terr0r32TCP 30003=Death,Lamers DeathTCP 30029=AOL trojanTCP 30100=NetSphere 1.27a,NetSphere 1.31TCP 30101=NetSphere 1.31,NetSphere 1.27aTCP 30102=NetSphere 1.27a,NetSphere 1.31TCP 30103=NetSphere 1.31TCP 30303=Sockets de TroieTCP 30722=W32.Esbot.ATCP 30947=IntruseTCP 30999=Kuang2TCP 31336=Bo WhackTCP 31337=Baron Night,BO client,BO2,Bo Facil,BackFire,Back Orifice,DeepBO,Freak2k,NetSpyTCP 31338=NetSpy,Back Orifice,DeepBOTCP 31339=NetSpy DKTCP 31554=SchwindlerTCP 31666=BOWhackTCP 31778=Hack AttackTCP 31785=Hack AttackTCP 31787=Hack AttackTCP 31789=Hack AttackTCP 31791=Hack AttackTCP 31792=Hack AttackTCP 32100=PeanutBrittleTCP 32418=Acid BatteryTCP 33333=Prosiak,Blakharaz 1.0TCP 33577=Son Of PsychwardTCP 33777=Son Of PsychwardTCP 33911=Spirit 2001aTCP 34324=BigGluck,TN,Tiny Telnet Server TCP 34555=Trin00 (Windows) (DDoS)TCP 35555=Trin00 (Windows) (DDoS)TCP 36794=Worm.Bugbear-ATCP 37651=YATTCP 40412=The SpyTCP 40421=Agent 40421,Masters Paradise.96 TCP 40422=Masters ParadiseTCP 40423=Masters Paradise.97TCP 40425=Masters ParadiseTCP 40426=Masters Paradise 3.xTCP 41666=Remote BootTCP 43210=Schoolbus 1.6/2.0TCP 44444=Delta SourceTCP 44445=HappypigTCP 45576=未知代理TCP 47252=ProsiakTCP 47262=DeltaTCP 47878=BirdSpy2TCP 49301=Online KeyloggerTCP 50505=Sockets de TroieTCP 50766=Fore, SchwindlerTCP 51966=CafeIniTCP 53001=Remote Windows ShutdownTCP 53217=Acid Battery 2000TCP 54283=Back Door-G, Sub7TCP 54320=Back Orifice 2000,SheepTCP 54321=School Bus .69-1.11,Sheep, BO2K TCP 57341=NetRaiderTCP 58008=BackDoor.TronTCP 58009=BackDoor.TronTCP 58339=ButtFunnelTCP 59211=BackDoor.DuckToyTCP 60000=Deep ThroatTCP 60068=Xzip 6000068TCP 60411=ConnectionTCP 60606=TROJ_BCKDOR.G2.ATCP 61466=TelecommandoTCP 61603=Bunker-killTCP 63485=Bunker-killTCP 65000=Devil, DDoSTCP 65432=Th3tr41t0r, The TraitorTCP 65530=TROJ_WINMITE.10TCP 65535=RC,Adore Worm/LinuxTCP 69123=ShitHeepTCP 88798=Armageddon,Hack Office。
TCP常见端口列表
端口服务说明0Reserved 通常用于分析操作系统。
这一方法能够工作是因为在一些系统中“0”是无效端口,当你试图使用通常的闭合端口连接它时将产生不同的结果。
一种典型的扫描,使用IP地址为0.0.0.0,设置ACK位并在以太网层广播。
1tcpmux 这显示有人在寻找SGI Irix机器。
Irix是实现tcpmux的主要提供者,默认情况下tcpmux在这种系统中被打开。
Irix机器在发布是含有几个默认的无密码的帐户,如:7Echo能看到许多人搜索Fraggle放大器时,发送到X.X.X.0和X.X.X.255的信息。
19Character Generator 这是一种仅仅发送字符的服务。
UDP版本将会在收到UDP包后回应含有垃圾字符的包。
TCP连接时会发送含有垃圾字符的数据流直到连接关闭。
HACKER利用IP 欺骗可以发动DoS攻击。
伪造两个chargen服务器之间的UDP包。
同样Fraggle DoS攻击向目标地址的这个端口广播一个带有伪造受害者IP的数据包,受害者为了回应这些数据而过载。
21FTP FTP服务器所开放的端口,用于上传、下载。
最常见的攻击者用于寻找打开anonymous的FTP服务器的方法。
这些服务器带有可读写的目录。
木马Doly Trojan 、Fore、Invisible FTP、WebEx、WinCrash和Blade Runner所开放的端口。
22Ssh PcAnywhere建立的TCP和这一端口的连接可能是为了寻找ssh。
这一服务有许多弱点,如果配置成特定的模式,许多使用RSAREF库的版本就会有不少的漏洞存在。
23Telnet 远程登录,入侵者在搜索远程登录UNIX的服务。
大多数情况下扫描这一端口是为了找到机器运行的操作系统。
还有使用其他技术,入侵者也会找到密码。
木马Tiny Telnet Server就开放这个端口。
25SMTP SMTP服务器所开放的端口,用于发送邮件。
常用网络端口大全修订稿
常用网络端口大全集团标准化工作小组 [Q8QX9QT-X8QQB8Q8-NQ8QJ8-M8QMN]常用协议端口号(2009-10-1020:55:49)转载标签:杂谈分类:技术交流1813端口使用UDP传输3306端口使用TCP传输Tracert默认使用UDP数据包来探测路由路径,端口为33434TCP协议支持协议名称TCP端口号协议名称解释ACAP674AIM5190BEEP10288CAST4224CMP829COPS3288PKTCABLE_COPS2126PKTCABLE_MM_COPS3918DAAP3689DHCPFO519DIAMETER3868DISTCC3632DLSW2065NP20000NS53DNS5353DSI548FTPDATA20FTP21GIFT1213CS1720HTTP80PROXY_HTTP3128PROXY_ADMIN_HTTP3132HKP11371DAAP3689SSDP1900IB3050ICAP1344IMAP143IRC6667ISAKMP500JABBER5222KERBEROS88LAPLINK1547LDAP389GLOBALCAT_LDAP3268LDP646PRINTER515MBTCP502MSNMS1863MSRP0MySQL3306NBSS139CIFS445NCP524NDMP100001/tcp tcpmux TCP Port Service Multiplexer2/tcp compressnet Management Utility3/tcp compressnet Compression Process5/tcp rje Remote Job Entry7/tcp echo Echo9/tcp discard Discard11/tcp systat Active Users13/tcp daytime Daytime (RFC 867)17/tcp qotd Quote of the Day18/tcp msp Message Send Protocol19/tcp chargen Character Generator20/tcp ftp-data File Transfer [Default Data]21/tcp ftp File Transfer [Control]22/tcp ssh SSH Remote Login Protocol23/tcp telnet Telnet24/tcp any private mail system any private mail system25/tcp smtp Simple Mail Transfer27/tcp nsw-fe NSW User System FE29/tcp msg-icp MSG ICP31/tcp msg-auth MSG Authentication33/tcp dsp Display Support Protocol35/tcp any private printer server any private printer server37/tcp time Time38/tcp rap Route Access Protocol39/tcp rlp Resource Location Protocol41/tcp graphics Graphics42/tcp nameserver Host Name Server43/tcp nicname Who Is44/tcp mpm-flags MPM FLAGS Protocol45/tcp mpm Message Processing Module [recv]46/tcp mpm-snd MPM [default send]47/tcp ni-ftp NI FTP48/tcp auditd Digital Audit Daemon49/tcp tacacs Login Host Protocol (TACACS)50/tcp re-mail-ck Remote Mail Checking Protocol51/tcp la-maint IMP Logical Address Maintenance52/tcp xns-time XNS Time Protocol53/tcp domain Domain Name Server54/tcp xns-ch XNS Clearinghouse55/tcp isi-gl ISI Graphics Language56/tcp xns-auth XNS Authentication57/tcp any private terminal access any private terminal access 58/tcp xns-mail XNS Mail59/tcp any private file service any private file service60/tcp Unassigned Unassigned61/tcp ni-mail NI MAIL62/tcp acas ACA Services63/tcp whois++ whois++64/tcp covia Communications Integrator (CI)65/tcp tacacs-ds TACACS-Database Service66/tcp sql*net Oracle SQL*NET67/tcp bootps Bootstrap Protocol Server68/tcp bootpc Bootstrap Protocol Client69/tcp tftp Trivial File Transfer70/tcp gopher Gopher71/tcp netrjs-1 Remote Job Service72/tcp netrjs-2 Remote Job Service73/tcp netrjs-3 Remote Job Service74/tcp netrjs-4 Remote Job Service75/tcp any private dial out service any private dial out service 76/tcp deos Distributed External Object Store77/tcp any private RJE service any private RJE service78/tcp vettcp vettcp79/tcp finger Finger80/tcp http-www World Wide Web HTTP81/tcp hosts2-ns HOSTS2 Name Server82/tcp xfer XFER Utility83/tcp mit-ml-dev MIT ML Device84/tcp ctf Common Trace Facility85/tcp mit-ml-dev MIT ML Device86/tcp mfcobol Micro Focus Cobol87/tcp any private terminal link any private terminal link 88/tcp kerberos Kerberos89/tcp su-mit-tg SU/MIT Telnet Gateway90/tcp dnsix DNSIX Securit Attribute Token Map91/tcp mit-dov MIT Dover Spooler92/tcp npp Network Printing Protocol93/tcp dcp Device Control Protocol94/tcp objcall Tivoli Object Dispatcher95/tcp supdup SUPDUP96/tcp dixie DIXIE Protocol Specification97/tcp swift-rvf Swift Remote Virtural File Protocol98/tcp tacnews TAC News99/tcp metagram Metagram Relay101/tcp hostname NIC Host Name Server102/tcp iso-tsap ISO-TSAP Class 0103/tcp gppitnp Genesis Point-to-Point Trans Net104/tcp acr-nema ACR-NEMA Digital Imag. & Comm. 300105/tcp cso CCSO name server protocol105/tcp csnet-ns Mailbox Name Nameserver106/tcp 3com-tsmux 3COM-TSMUX107/tcp rtelnet Remote Telnet Service108/tcp snagas SNA Gateway Access Server109/tcp pop2 Post Office Protocol - Version 2110/tcp pop3 Post Office Protocol - Version 3111/tcp sunrpc SUN Remote Procedure Call112/tcp mcidas McIDAS Data Transmission Protocol113/tcp ident114/tcp audionews Audio News Multicast115/tcp sftp Simple File Transfer Protocol116/tcp ansanotify ANSA REX Notify117/tcp uucp-path UUCP Path Service118/tcp sqlserv SQL Services119/tcp nntp Network News Transfer Protocol120/tcp cfdptkt CFDPTKT121/tcp erpc Encore Expedited Remote Pro.Call122/tcp smakynet SMAKYNET123/tcp ntp Network Time Protocol124/tcp ansatrader ANSA REX Trader125/tcp locus-map Locus PC-Interface Net Map Ser126/tcp unitary Unisys Unitary Login127/tcp locus-con Locus PC-Interface Conn Server 128/tcp gss-xlicen GSS X License Verification129/tcp pwdgen Password Generator Protocol130/tcp cisco-fna cisco FNATIVE131/tcp cisco-tna cisco TNATIVE132/tcp cisco-sys cisco SYSMAINT133/tcp statsrv Statistics Service134/tcp ingres-net INGRES-NET Service135/tcp epmap DCE endpoint resolution136/tcp profile PROFILE Naming System137/tcp netbios-ns NETBIOS Name Service138/tcp netbios-dgm NETBIOS Datagram Service139/tcp netbios-ssn NETBIOS Session Service140/tcp emfis-data EMFIS Data Service141/tcp emfis-cntl EMFIS Control Service142/tcp bl-idm Britton-Lee IDM143/tcp imap Internet Message Access Protocol144/tcp uma Universal Management Architecture145/tcp uaac UAAC Protocol146/tcp iso-tp0 ISO-IP0147/tcp iso-ip ISO-IP148/tcp jargon Jargon149/tcp aed-512 AED 512 Emulation Service150/tcp sql-net SQL-NET151/tcp hems HEMS152/tcp bftp Background File Transfer Program153/tcp sgmp SGMP154/tcp netsc-prod NETSC155/tcp netsc-dev NETSC156/tcp sqlsrv SQL Service157/tcp knet-cmp KNET/VM Command/Message Protocol 158/tcp pcmail-srv PCMail Server159/tcp nss-routing NSS-Routing160/tcp sgmp-traps SGMP-TRAPS161/tcp snmp SNMP162/tcp snmptrap SNMPTRAP163/tcp cmip-man CMIP/TCP Manager164/tcp cmip-agent CMIP/TCP Agent165/tcp xns-courier Xerox166/tcp s-net Sirius Systems167/tcp namp NAMP168/tcp rsvd RSVD169/tcp send SEND170/tcp print-srv Network PostScript171/tcp multiplex Network Innovations Multiplex172/tcp cl/1 Network Innovations CL/1173/tcp xyplex-mux Xyplex174/tcp mailq MAILQ175/tcp vmnet VMNET176/tcp genrad-mux GENRAD-MUX177/tcp xdmcp X Display Manager Control Protocol178/tcp nextstep NextStep Window Server179/tcp bgp Border Gateway Protocol180/tcp ris Intergraph181/tcp unify Unify182/tcp audit Unisys Audit SITP183/tcp ocbinder OCBinder184/tcp ocserver OCServer185/tcp remote-kis Remote-KIS186/tcp kis KIS Protocol187/tcp aci Application Communication Interface188/tcp mumps Plus Five's MUMPS189/tcp qft Queued File Transport190/tcp gacp Gateway Access Control Protocol191/tcp prospero Prospero Directory Service192/tcp osu-nms OSU Network Monitoring System193/tcp srmp Spider Remote Monitoring Protocol194/tcp irc Internet Relay Chat Protocol195/tcp dn6-nlm-aud DNSIX Network Level Module Audit196/tcp dn6-smm-red DNSIX Session Mgt Module Audit Redir 197/tcp dls Directory Location Service198/tcp dls-mon Directory Location Service Monitor199/tcp smux SMUX200/tcp src IBM System Resource Controller201/tcp at-rtmp AppleTalk Routing Maintenance202/tcp at-nbp AppleTalk Name Binding203/tcp at-3 AppleTalk Unused204/tcp at-echo AppleTalk Echo205/tcp at-5 AppleTalk Unused206/tcp at-zis AppleTalk Zone Information207/tcp at-7 AppleTalk Unused208/tcp at-8 AppleTalk Unused209/tcp qmtp The Quick Mail Transfer Protocol210/tcp z39.50 ANSI Z39.50211/tcp 914c/g Texas Instruments 914C/G Terminal212/tcp anet ATEXSSTR214/tcp vmpwscs VM PWSCS215/tcp softpc Insignia Solutions216/tcp CAIlic Computer Associates Int'l License Server 217/tcp dbase dBASE Unix218/tcp mpp Netix Message Posting Protocol219/tcp uarps Unisys ARPs220/tcp imap3 Interactive Mail Access Protocol v3221/tcp fln-spx Berkeley rlogind with SPX auth222/tcp rsh-spx Berkeley rshd with SPX auth223/tcp cdc Certificate Distribution Center242/tcp direct Direct243/tcp sur-meas Survey Measurement244/tcp dayna Dayna245/tcp link LINK246/tcp dsp3270 Display Systems Protocol247/tcp subntbcst_tftp SUBNTBCST_TFTP248/tcp bhfhs bhfhs256/tcp rap RAP257/tcp set Secure Electronic Transaction258/tcp yak-chat Yak Winsock Personal Chat259/tcp esro-gen Efficient Short Remote Operations260/tcp openport Openport263/tcp hdap HDAP264/tcp bgmp BGMP280/tcp http-mgmt http-mgmt309/tcp entrusttime EntrustTime310/tcp bhmds bhmds312/tcp vslmp VSLMP315/tcp dpsi DPSI316/tcp decauth decAuth317/tcp zannet Zannet321/tcp pip PIP344/tcp pdap Prospero Data Access Protocol345/tcp pawserv Perf Analysis Workbench346/tcp zserv Zebra server347/tcp fatserv Fatmen Server348/tcp csi-sgwp Cabletron Management Protocol349/tcp mftp mftp351/tcp matip-type-b MATIP Type B351/tcp bhoetty bhoetty (added 5/21/97)353/tcp ndsauth NDSAUTH354/tcp bh611 bh611357/tcp bhevent bhevent362/tcp srssend SRS Send365/tcp dtk DTK366/tcp odmr ODMR368/tcp qbikgdp QbikGDP371/tcp clearcase Clearcase372/tcp ulistproc ListProcessor373/tcp legent-1 Legent Corporation374/tcp legent-2 Legent Corporation375/tcp hassle Hassle376/tcp nip Amiga Envoy Network Inquiry Proto377/tcp tnETOS NEC Corporation378/tcp dsETOS NEC Corporation379/tcp is99c TIA/EIA/IS-99 modem client380/tcp is99s TIA/EIA/IS-99 modem server381/tcp hp-collector hp performance data collector383/tcp hp-alarm-mgr hp performance data alarm manager384/tcp arns A Remote Network Server System385/tcp ibm-app IBM Application386/tcp asa ASA Message Router Object Def.387/tcp aurp Appletalk Update-Based Routing Pro.388/tcp unidata-ldm Unidata LDM Version 4389/tcp ldap Lightweight Directory Access Protocol390/tcp uis UIS391/tcp synotics-relay SynOptics SNMP Relay Port393/tcp dis Data Interpretation System394/tcp embl-ndt EMBL Nucleic Data Transfer395/tcp netcp NETscout Control Protocol396/tcp netware-ip Novell Netware over IP397/tcp mptn Multi Protocol Trans. Net.398/tcp kryptolan Kryptolan399/tcp iso-tsap-c2 ISO Transport Class 2 Non-Control over TCP 400/tcp work-sol Workstation Solutions401/tcp ups Uninterruptible Power Supply402/tcp genie Genie Protocol403/tcp decap decap404/tcp nced nced405/tcp ncld ncld406/tcp imsp Interactive Mail Support Protocol407/tcp timbuktu Timbuktu408/tcp prm-sm Prospero Resource Manager Sys. Man.409/tcp prm-nm Prospero Resource Manager Node Man.410/tcp decladebug DECLadebug Remote Debug Protocol411/tcp rmt Remote MT Protocol412/tcp synoptics-trap Trap Convention Port413/tcp smsp SMSP414/tcp infoseek InfoSeek415/tcp bnet BNet416/tcp silverplatter Silverplatter417/tcp onmux Onmux418/tcp hyper-g Hyper-G419/tcp ariel1 Ariel420/tcp smpte SMPTE421/tcp ariel2 Ariel422/tcp ariel3 Ariel423/tcp opc-job-start IBM Operations Planning and Control Start 424/tcp opc-job-track IBM Operations Planning and Control Track 425/tcp icad-el ICAD426/tcp smartsdp smartsdp427/tcp svrloc Server Location428/tcp ocs_cmu OCS_CMU429/tcp ocs_amu OCS_AMU430/tcp utmpsd UTMPSD431/tcp utmpcd UTMPCD432/tcp iasd IASD433/tcp nnsp NNSP434/tcp mobileip-agent MobileIP-Agent435/tcp mobilip-mn MobilIP-MN436/tcp dna-cml DNA-CML437/tcp comscm comscm438/tcp dsfgw dsfgw439/tcp dasp dasp Thomas Obermair440/tcp sgcp sgcp441/tcp decvms-sysmgt decvms-sysmgt442/tcp cvc_hostd cvc_hostd443/tcp https http protocol over TLS/SSL444/tcp snpp Simple Network Paging Protocol445/tcp microsoft-ds Microsoft-DS446/tcp ddm-rdb DDM-RDB447/tcp ddm-dfm DDM-RFM448/tcp ddm-ssl DDM-SSL449/tcp as-servermap AS Server Mapper450/tcp tserver TServer451/tcp sfs-smp-net Cray Network Semaphore server453/tcp creativeserver CreativeServer454/tcp contentserver ContentServer455/tcp creativepartnr CreativePartnr456/tcp macon-tcp macon-tcp457/tcp scohelp scohelp458/tcp appleqtc apple quick time459/tcp ampr-rcmd ampr-rcmd460/tcp skronk skronk461/tcp datasurfsrv DataRampSrv462/tcp datasurfsrvsec DataRampSrvSec463/tcp alpes alpes464/tcp kpasswd kpasswd465/tcp smtps smtp protocol over TLS/SSL (was ssmtp)466/tcp digital-vrc digital-vrc467/tcp mylex-mapd mylex-mapd468/tcp photuris proturis469/tcp rcp Radio Control Protocol470/tcp scx-proxy scx-proxy471/tcp mondex Mondex472/tcp ljk-login ljk-login473/tcp hybrid-pop hybrid-pop474/tcp tn-tl-w1 tn-tl-w1475/tcp tcpnethaspsrv tcpnethaspsrv476/tcp tn-tl-fd1 tn-tl-fd1477/tcp ss7ns ss7ns478/tcp spsc spsc479/tcp iafserver iafserver480/tcp iafdbase iafdbase481/tcp ph Ph service482/tcp bgs-nsi bgs-nsi483/tcp ulpnet ulpnet484/tcp integra-sme Integra Software Management Environment 485/tcp powerburst Air Soft Power Burst486/tcp avian avian487/tcp saft saft Simple Asynchronous File Transfer488/tcp gss-http gss-http489/tcp nest-protocol nest-protocol490/tcp micom-pfs micom-pfs491/tcp go-login go-login492/tcp ticf-1 Transport Independent Convergence for FNA 493/tcp ticf-2 Transport Independent Convergence for FNA 494/tcp pov-ray POV-Ray495/tcp intecourier intecourier496/tcp pim-rp-disc PIM-RP-DISC497/tcp dantz dantz498/tcp siam siam499/tcp iso-ill ISO ILL Protocol500/tcp isakmp isakmp501/tcp stmf STMF502/tcp asa-appl-proto asa-appl-proto503/tcp intrinsa Intrinsa504/tcp citadel citadel505/tcp mailbox-lm mailbox-lm506/tcp ohimsrv ohimsrv507/tcp crs crs508/tcp xvttp xvttp509/tcp snare snare510/tcp fcp FirstClass Protocol511/tcp passgo PassGo512/tcp exec remote process execution;513/tcp login remote login a la telnet;514/tcp shell cmd515/tcp printer spooler516/tcp videotex videotex517/tcp talk like tenex link, but across518/tcp ntalk519/tcp utime unixtime520/tcp efs extended file name server521/tcp ripng ripng522/tcp ulp ULP523/tcp ibm-db2 IBM-DB2524/tcp ncp NCP525/tcp timed timeserver526/tcp tempo newdate527/tcp stx Stock IXChange528/tcp custix Customer IXChange529/tcp irc-serv IRC-SERV530/tcp courier rpc531/tcp conference chat532/tcp netnews readnews533/tcp netwall for emergency broadcasts534/tcp mm-admin MegaMedia Admin535/tcp iiop iiop536/tcp opalis-rdv opalis-rdv537/tcp nmsp Networked Media Streaming Protocol538/tcp gdomap gdomap539/tcp apertus-ldp Apertus Technologies Load Determination 540/tcp uucp uucpd541/tcp uucp-rlogin uucp-rlogin542/tcp commerce commerce543/tcp klogin544/tcp kshell krcmd545/tcp appleqtcsrvr appleqtcsrvr546/tcp dhcpv6-client DHCPv6 Client547/tcp dhcpv6-server DHCPv6 Server548/tcp afpovertcp AFP over TCP549/tcp idfp IDFP550/tcp new-rwho new-who551/tcp cybercash cybercash552/tcp deviceshare deviceshare553/tcp pirp pirp554/tcp rtsp Real Time Stream Control Protocol555/tcp dsf556/tcp remotefs rfs server557/tcp openvms-sysipc openvms-sysipc558/tcp sdnskmp SDNSKMP559/tcp teedtap TEEDTAP560/tcp rmonitor rmonitord561/tcp monitor562/tcp chshell chcmd563/tcp nntps nntp protocol over TLS/SSL (was snntp)564/tcp 9pfs plan 9 file service565/tcp whoami whoami566/tcp streettalk streettalk567/tcp banyan-rpc banyan-rpc568/tcp ms-shuttle microsoft shuttle569/tcp ms-rome microsoft rome570/tcp meter demon571/tcp meter udemon572/tcp sonar sonar573/tcp banyan-vip banyan-vip574/tcp ftp-agent FTP Software Agent System575/tcp vemmi VEMMI576/tcp ipcd ipcd577/tcp vnas vnas578/tcp ipdd ipdd579/tcp decbsrv decbsrv581/tcp bdp Bundle Discovery Protocol588/tcp cal CAL589/tcp eyelink EyeLink590/tcp tns-cml TNS CML593/tcp http-rpc-epmap HTTP RPC Ep Map594/tcp tpip TPIP596/tcp smsd SMSD599/tcp acp Aeolon Core Protocol600/tcp ipcserver Sun IPC server606/tcp urm Cray Unified Resource Manager607/tcp nqs nqs608/tcp sift-uft Sender-Initiated/Unsolicited File Transfer609/tcp npmp-trap npmp-trap610/tcp npmp-local npmp-local611/tcp npmp-gui npmp-gui613/tcp hmmp-op HMMP Operation620/tcp sco-websrvrmgr SCO WebServer Manager621/tcp escp-ip ESCP625/tcp dec_dlm DEC DLM626/tcp asia ASIA628/tcp qmqp QMQP630/tcp rda RDA631/tcp ipp IPP (Internet Printing Protocol)632/tcp bmpp bmpp634/tcp ginad ginad635/tcp rlzdbase RLZ DBase636/tcp ldaps ldap protocol over TLS/SSL (was sldap)637/tcp lanserver lanserver639/tcp msdp MSDP666/tcp doom doom Id Software667/tcp disclose campaign contribution disclosures - SDR Technologies 668/tcp mecomm MeComm669/tcp meregister MeRegister670/tcp vacdsm-sws VACDSM-SWS671/tcp vacdsm-app VACDSM-APP672/tcp vpps-qua VPPS-QUA673/tcp cimplex CIMPLEX674/tcp acap ACAP675/tcp dctp DCTP704/tcp elcsd errlog copy/server daemon705/tcp agentx AgentX709/tcp entrust-kmsh Entrust Key Management Service Handler710/tcp entrust-ash Entrust Administration Service Handler729/tcp netviewdm1 IBM NetView DM/6000 Server/Client730/tcp netviewdm2 IBM NetView DM/6000 send/tcp731/tcp netviewdm3 IBM NetView DM/6000 receive/tcp741/tcp netgw netGW742/tcp netrcs Network based Rev. Cont. Sys.744/tcp flexlm Flexible License Manager747/tcp fujitsu-dev Fujitsu Device Control748/tcp ris-cm Russell Info Sci Calendar Manager749/tcp kerberos-adm kerberos administration750/tcp rfile751/tcp pump752/tcp qrh753/tcp rrh758/tcp nlogin759/tcp con760/tcp ns761/tcp rxe762/tcp quotad763/tcp cycleserv764/tcp omserv765/tcp webster769/tcp vid770/tcp cadlock771/tcp rtip772/tcp cycleserv2773/tcp submit774/tcp rpasswd776/tcp wpages780/tcp wpgs786/tcp concert Concert787/tcp qsc QSC801/tcp device873/tcp rsync rsync886/tcp iclcnet-locate ICL coNETion locate server 887/tcp iclcnet_svinfo ICL coNETion server info888/tcp accessbuilder AccessBuilder900/tcp omginitialrefs OMG Initial Refs911/tcp xact-backup xact-backup990/tcp ftps ftp protocol, control, over TLS/SSL991/tcp nas Netnews Administration System992/tcp telnets telnet protocol over TLS/SSL993/tcp imaps imap4 protocol over TLS/SSL994/tcp ircs irc protocol over TLS/SSL995/tcp pop3s pop3 protocol over TLS/SSL (was spop3) 996/tcp vsinet vsinet997/tcp maitrd998/tcp busboy999/tcp garcon1000/tcp cadlock1010/tcp surf surf1023/tcp Reserved Reserved1030/tcp iad1 BBN IAD1031/tcp iad2 BBN IAD1032/tcp iad3 BBN IAD1047/tcp neod1 Sun's NEO Object Request Broker1048/tcp neod2 Sun's NEO Object Request Broker1059/tcp nimreg nimreg1067/tcp instl_boots Installation Bootstrap Proto. Serv. 1068/tcp instl_bootc Installation Bootstrap Proto. Cli. 1080/tcp socks Socks1083/tcp ansoft-lm-1 Anasoft License Manager1084/tcp ansoft-lm-2 Anasoft License Manager1123/tcp murray Murray1155/tcp nfa Network File Access1212/tcp lupa lupa1222/tcp nerv SNI R&D network1239/tcp nmsd NMSD1248/tcp hermes1313/tcp bmc_patroldb BMC_PATROLDB1314/tcp pdps Photoscript Distributed Printing System 1321/tcp pip PIP1345/tcp vpjp VPJP1346/tcp alta-ana-lm Alta Analytics License Manager1347/tcp bbn-mmc multi media conferencing1348/tcp bbn-mmx multi media conferencing1349/tcp sbook Registration Network Protocol1350/tcp editbench Registration Network Protocol1352/tcp lotusnote Lotus Note1353/tcp relief Relief Consulting1354/tcp rightbrain RightBrain Software1355/tcp intuitive-edge Intuitive Edge1356/tcp cuillamartin CuillaMartin Company1357/tcp pegboard Electronic PegBoard1358/tcp connlcli CONNLCLI1359/tcp ftsrv FTSRV1360/tcp mimer MIMER1361/tcp linx LinX1362/tcp timeflies TimeFlies1363/tcp ndm-requester Network DataMover Requester1364/tcp ndm-server Network DataMover Server1365/tcp adapt-sna Network Software Associates1366/tcp netware-csp Novell NetWare Comm Service Platform 1367/tcp dcs DCS1368/tcp screencast ScreenCast1369/tcp gv-us GlobalView to Unix Shell1370/tcp us-gv Unix Shell to GlobalView1371/tcp fc-cli Fujitsu Config Protocol1372/tcp fc-ser Fujitsu Config Protocol1373/tcp chromagrafx Chromagrafx1374/tcp molly EPI Software Systems1375/tcp bytex Bytex1376/tcp ibm-pps IBM Person to Person Software1377/tcp cichlid Cichlid License Manager1378/tcp elan Elan License Manager1379/tcp dbreporter Integrity Solutions1380/tcp telesis-licman Telesis Network License Manager 1381/tcp apple-licman Apple Network License Manager1382/tcp udt_os1383/tcp gwha GW Hannaway Network License Manager1384/tcp os-licman Objective Solutions License Manager 1385/tcp atex_elmd Atex Publishing License Manager1386/tcp checksum CheckSum License Manager1387/tcp cadsi-lm Computer Aided Design Software Inc LM 1388/tcp objective-dbc Objective Solutions DataBase Cache 1389/tcp iclpv-dm document.nbsp;Manager1390/tcp iclpv-sc Storage Controller1391/tcp iclpv-sas Storage Access Server1392/tcp iclpv-pm Print Manager1393/tcp iclpv-nls Network Log Server1394/tcp iclpv-nlc Network Log Client1395/tcp iclpv-wsm PC Workstation Manager software1396/tcp dvl-activemail DVL Active Mail1399/tcp cadkey-licman Cadkey License Manager1400/tcp cadkey-tablet Cadkey Tablet Daemon1402/tcp prm-sm-np Prospero Resource Manager1403/tcp prm-nm-np Prospero Resource Manager1404/tcp igi-lm Infinite Graphics License Manager1405/tcp ibm-res IBM Remote Execution Starter1406/tcp netlabs-lm NetLabs License Manager1407/tcp dbsa-lm DBSA License Manager1408/tcp sophia-lm Sophia License Manager1409/tcp here-lm Here License Manager1410/tcp hiq HiQ License Manager1411/tcp af AudioFile1412/tcp innosys InnoSys1413/tcp innosys-acl Innosys-ACL1414/tcp ibm-mqseries IBM MQSeries1415/tcp dbstar DBStar1416/tcp novell-lu6.2 Novell LU6.21417/tcp timbuktu-srv1 Timbuktu Service 1 Port1418/tcp timbuktu-srv2 Timbuktu Service 2 Port1419/tcp timbuktu-srv3 Timbuktu Service 3 Port1420/tcp timbuktu-srv4 Timbuktu Service 4 Port1421/tcp gandalf-lm Gandalf License Manager1422/tcp autodesk-lm Autodesk License Manager1423/tcp essbase Essbase Arbor Software1424/tcp hybrid Hybrid Encryption Protocol1425/tcp zion-lm Zion Software License Manager1426/tcp sais Satellite-data Acquisition System 11427/tcp mloadd mloadd monitoring tool1428/tcp informatik-lm Informatik License Manager1429/tcp nms Hypercom NMS1430/tcp tpdu Hypercom TPDU1431/tcp rgtp Reverse Gossip Transport1432/tcp blueberry-lm Blueberry Software License Manager 1433/tcp ms-sql-s Microsoft-SQL-Server1434/tcp ms-sql-m Microsoft-SQL-Monitor1435/tcp ibm-cics IBM CICS1436/tcp saism Satellite-data Acquisition System 21437/tcp tabula Tabula1438/tcp eicon-server Eicon Security Agent/Server1439/tcp eicon-x25 Eicon X25/SNA Gateway1440/tcp eicon-slp Eicon Service Location Protocol1441/tcp cadis-1 Cadis License Management1442/tcp cadis-2 Cadis License Management1443/tcp ies-lm Integrated Engineering Software1444/tcp marcam-lm Marcam License Management1445/tcp proxima-lm Proxima License Manager1446/tcp ora-lm Optical Research Associates License Manager 1447/tcp apri-lm Applied Parallel Research LM1448/tcp oc-lm OpenConnect License Manager1449/tcp peport PEport1450/tcp dwf Tandem Distributed Workbench Facility1451/tcp infoman IBM Information Management1452/tcp gtegsc-lm GTE Government Systems License Man1453/tcp genie-lm Genie License Manager1454/tcp interhdl_elmd interHDL License Manager1455/tcp esl-lm ESL License Manager1456/tcp dca DCA1457/tcp valisys-lm Valisys License Manager1458/tcp nrcabq-lm Nichols Research Corp.1459/tcp proshare1 Proshare Notebook Application1460/tcp proshare2 Proshare Notebook Application1461/tcp ibm_wrless_lan IBM Wireless LAN1462/tcp world-lm World License Manager1463/tcp nucleus Nucleus1464/tcp msl_lmd MSL License Manager1465/tcp pipes Pipes Platform1466/tcp oceansoft-lm Ocean Software License Manager 1467/tcp csdmbase CSDMBASE1468/tcp csdm CSDM1469/tcp aal-lm Active Analysis Limited License Manager 1470/tcp uaiact Universal Analytics1471/tcp csdmbase csdmbase1472/tcp csdm csdm1473/tcp openmath OpenMath1474/tcp telefinder Telefinder1475/tcp taligent-lm Taligent License Manager1476/tcp clvm-cfg clvm-cfg1477/tcp ms-sna-server ms-sna-server1478/tcp ms-sna-base ms-sna-base1479/tcp dberegister dberegister1480/tcp pacerforum PacerForum1481/tcp airs AIRS1482/tcp miteksys-lm Miteksys License Manager1483/tcp afs AFS License Manager1484/tcp confluent Confluent License Manager1485/tcp lansource LANSource1486/tcp nms_topo_serv nms_topo_serv1487/tcp localinfosrvr LocalInfoSrvr1488/tcp docstor DocStor1489/tcp dmdocbroker dmdocbroker1490/tcp insitu-conf insitu-conf1491/tcp anynetgateway anynetgateway1492/tcp stone-design-1 stone-design-11493/tcp netmap_lm netmap_lm1494/tcp ica ica1495/tcp cvc cvc1496/tcp liberty-lm liberty-lm1497/tcp rfx-lm rfx-lm1498/tcp sybase-sqlany Sybase SQL Any1499/tcp fhc Federico Heinz Consultora1500/tcp vlsi-lm VLSI License Manager1501/tcp saiscm Satellite-data Acquisition System 31502/tcp shivadiscovery Shiva1503/tcp imtc-mcs Databeam1504/tcp evb-elm EVB Software Engineering License Manager 1505/tcp funkproxy Funk Software, Inc.1506/tcp utcd Universal Time daemon (utcd)1507/tcp symplex symplex1508/tcp diagmond diagmond1509/tcp robcad-lm Robcad, Ltd. License Manager1510/tcp mvx-lm Midland Valley Exploration Ltd. Lic. Man.1511/tcp 3l-l1 3l-l11512/tcp wins Microsoft's Windows Internet Name Service1513/tcp fujitsu-dtc Fujitsu Systems Business of America, Inc 1514/tcp fujitsu-dtcns Fujitsu Systems Business of America, Inc 1515/tcp ifor-protocol ifor-protocol1516/tcp vpad Virtual Places Audio data1517/tcp vpac Virtual Places Audio control1518/tcp vpvd Virtual Places Video data1519/tcp vpvc Virtual Places Video control1520/tcp atm-zip-office atm zip office1521/tcp ncube-lm nCube License Manager1522/tcp ricardo-lm Ricardo North America License Manager1523/tcp cichild-lm cichild1525/tcp orasrv oracle1525/tcp prospero-np Prospero Directory Service non-priv1526/tcp pdap-np Prospero Data Access Prot non-priv1527/tcp tlisrv oracle1528/tcp mciautoreg micautoreg1529/tcp coauthor oracle1530/tcp rap-service rap-service1531/tcp rap-listen rap-listen1532/tcp miroconnect miroconnect1533/tcp virtual-places Virtual Places Software1534/tcp micromuse-lm micromuse-lm1535/tcp ampr-info ampr-info1536/tcp ampr-inter ampr-inter1537/tcp sdsc-lm isi-lm1538/tcp 3ds-lm 3ds-lm1539/tcp intellistor-lm Intellistor License Manager1540/tcp rds rds1541/tcp rds2 rds21542/tcp gridgen-elmd gridgen-elmd1543/tcp simba-cs simba-cs1544/tcp aspeclmd aspeclmd1545/tcp vistium-share vistium-share1546/tcp abbaccuray abbaccuray1547/tcp laplink laplink1548/tcp axon-lm Axon License Manager1549/tcp shivahose Shiva Hose1550/tcp 3m-image-lm Image Storage license manager 3M Company 1551/tcp hecmtl-db HECMTL-DB1552/tcp pciarray pciarray。
TCP所有端口号
TCP所有端口号——值得收藏!!!1 tcpmux TCP 端口服务多路复用5 rje 远程作业入口7 echo Echo 服务9 discard 用于连接测试的空服务11 systat 用于列举连接了的端口的系统状态13 daytime 给请求主机发送日期和时间17 qotd 给连接了的主机发送每日格言18 msp 消息发送协议19 chargen 字符生成服务;发送无止境的字符流20 ftp-data FTP 数据端口21 ftp 文件传输协议(FTP)端口;有时被文件服务协议(FSP)使用22 ssh 安全Shell(SSH)服务23 telnet Telnet 服务25 smtp 简单邮件传输协议(SMTP)37 time 时间协议39 rlp 资源定位协议42 nameserver 互联网名称服务43 nicname WHOIS 目录服务49 tacacs 用于基于TCP/IP 验证和访问的终端访问控制器访问控制系统50 re-mail-ck 远程邮件检查协议53 domain 域名服务(如BIND)63 whois++ WHOIS++,被扩展了的WHOIS 服务67 bootps 引导协议(BOOTP)服务;还被动态主机配置协议(DHCP)服务使用68 bootpc Bootstrap(BOOTP)客户;还被动态主机配置协议(DHCP)客户使用69 tftp 小文件传输协议(TFTP)70 gopher Gopher 互联网文档搜寻和检索71 netrjs-1 远程作业服务72 netrjs-2 远程作业服务73 netrjs-3 远程作业服务73 netrjs-4 远程作业服务79 finger 用于用户联系信息的Finger 服务80 http 用于万维网(WWW)服务的超文本传输协议(HTTP)88 kerberos Kerberos 网络验证系统95 supdup Telnet 协议扩展101 hostname SRI-NIC 机器上的主机名服务102 iso-tsap ISO 开发环境(ISODE)网络应用105 csnet-ns 邮箱名称服务器;也被CSO 名称服务器使用107 rtelnet 远程Telnet109 pop2 邮局协议版本2110 pop3 邮局协议版本3111 sunrpc 用于远程命令执行的远程过程调用(RPC)协议,被网络文件系统(NFS)使用113 auth 验证和身份识别协议115 sftp 安全文件传输协议(SFTP)服务117 uucp-path Unix 到Unix 复制协议(UUCP)路径服务119 nntp 用于USENET 讨论系统的网络新闻传输协议(NNTP)123 ntp 网络时间协议(NTP)137 netbios-ns 在红帽企业Linux 中被Samba 使用的NETBIOS 名称服务138 netbios-dgm 在红帽企业Linux 中被Samba 使用的NETBIOS 数据报服务139 netbios-ssn 在红帽企业Linux 中被Samba 使用的NET BIOS 会话服务143 imap 互联网消息存取协议(IMAP)161 snmp 简单网络管理协议(SNMP)162 snmptrap SNMP 的陷阱163 cmip-man 通用管理信息协议(CMIP)164 cmip-agent 通用管理信息协议(CMIP)174 mailq MAILQ177 xdmcp X 显示管理器控制协议178 nextstep NeXTStep 窗口服务器179 bgp 边界网络协议191 prospero Cliffod Neuman 的Prospero 服务194 irc 互联网中继聊天(IRC)199 smux SNMP UNIX 多路复用201 at-rtmp AppleTalk 选路202 at-nbp AppleTalk 名称绑定204 at-echo AppleTalk echo 服务206 at-zis AppleTalk 区块信息209 qmtp 快速邮件传输协议(QMTP)210 z39.50 NISO Z39.50 数据库213 ipx 互联网络分组交换协议(IPX),被Novell Netware 环境常用的数据报协议220 imap3 互联网消息存取协议版本3245 link LINK347 fatserv Fatmen 服务器363 rsvp_tunnel RSVP 隧道369 rpc2portmap Coda 文件系统端口映射器370 codaauth2 Coda 文件系统验证服务372 ulistproc UNIX Listserv389 ldap 轻型目录存取协议(LDAP)427 svrloc 服务位置协议(SLP)434 mobileip-agent 可移互联网协议(IP)代理435 mobilip-mn 可移互联网协议(IP)管理器443 https 安全超文本传输协议(HTTP)444 snpp 小型网络分页协议445 microsoft-ds 通过TCP/IP 的服务器消息块(SMB)464 kpasswd Kerberos 口令和钥匙改换服务468 photuris Photuris 会话钥匙管理协议487 saft 简单不对称文件传输(SAFT)协议488 gss-http 用于HTTP 的通用安全服务(GSS)496 pim-rp-disc 用于协议独立的多址传播(PIM)服务的会合点发现(RP-DISC)500 isakmp 互联网安全关联和钥匙管理协议(ISAKMP)535 iiop 互联网内部对象请求代理协议(IIOP)538 gdomap GNUstep 分布式对象映射器(GDOMAP)546 dhcpv6-client 动态主机配置协议(DHCP)版本6客户547 dhcpv6-server 动态主机配置协议(DHCP)版本6服务554 rtsp 实时流播协议(RTSP)563 nntps 通过安全套接字层的网络新闻传输协议(NNTPS)565 whoami whoami587 submission 邮件消息提交代理(MSA)610 npmp-local 网络外设管理协议(NPMP)本地/ 分布式排队系统(DQS)611 npmp-gui 网络外设管理协议(NPMP)GUI / 分布式排队系统(DQS)612 hmmp-ind HMMP 指示/ DQS631 ipp 互联网打印协议(IPP)636 ldaps 通过安全套接字层的轻型目录访问协议(LDAPS)674 acap 应用程序配置存取协议(ACAP)694 ha-cluster 用于带有高可用性的群集的心跳服务749 kerberos-adm Kerberos 版本5(v5)的“kadmin”数据库管理750 kerberos-iv Kerberos 版本4(v4)服务765 webster 网络词典767 phonebook 网络电话簿873 rsync rsync 文件传输服务992 telnets 通过安全套接字层的Telnet(TelnetS)993 imaps 通过安全套接字层的互联网消息存取协议(IMAPS)994 ircs 通过安全套接字层的互联网中继聊天(IRCS)995 pop3s 通过安全套接字层的邮局协议版本3(POPS3)表C-1. 著名端口以下端口是UNIX 特有的,涉及了从电子邮件到验证不等的服务。
常见TCP和UDP端口列表
常见T C P和U D P端口列表(总10页)-CAL-FENGHAI.-(YICAI)-Company One1-CAL-本页仅作为文档封面,使用请直接删除小于1024的端口通常运行一些网络服务,大于1024的端口用来与远程机器建立连接。
TCP端口7 = 回显9 = 丢弃11 = 在线用户13 = 时间服务15 = 网络状态17 = 每日引用18 = 消息发送19 = 字符发生器20 = ftp数据21 = 文件传输22 = SSH端口23 = 远程终端25 = 发送邮件31 = Masters Paradise木马37 = 时间3 9 = 资源定位协议41 = DeepThroat木马42 = WINS 主机名服务43 = WhoIs服务58 = DM Setup木马59 = 个人文件服务63 = WHOIS 端口69 = TFTP服务70 = 信息检索79 = 查询在线用户80 = WEB网页88 = Kerberros5认证101 = 主机名102 = ISO107 = 远程登录终端109 = pop2邮件110 = pop3邮件111 = SUN远程控制113 = 身份验证117 = UUPC1 19 = nntp新闻组121 = JammerKillah木马1 35 = 本地服务138 = 隐形大盗139 = 文件共享143 = IMAP4邮件146 = FC-Infector木马158 = 邮件服务170 = 打印服务179 = BGP19 4 = IRC PORT213 = TCP OVER IPX220 = IMAP3邮件389 = 目录服务406 = IMSP PORT411 = DC++421 = TCP Wrappers443 = 安全WEB访问445 = SMB(交换服务器消息块)456 = Hack ers Paradise木马464 = Kerberros认证512 =远程执行或卫星通讯513 = 远程登录与查询514 = SHELL/系统日志515 = 打印服务51 7 = Talk518 = 网络聊天520 = EFS525 = 时间服务526 = 日期更新530 = RPC531 = RASmin 木马532 = 新闻阅读533 = 紧急广播540 = UUCP543 = Kerberos登录544 = 远程shell55 0 = who554 = RTSP555 = Ini-Killer木马556 = 远程文件系统560 = 远程监控561 = 监控63 6 = 安全目录服务666 = Attack FTP木马749 = Kerberos管理750 = Kerberos V4911 = Dark Shadow木马989 = FTPS990 = FTPS992 = Tel netS993 = IMAPS999 = DeepThroat木马100 1 = Silencer木马1010 = Doly木马1011 = Do ly木马1012 = Doly木马1015 = Doly木马1 024 = NetSpy木马1042 = Bla木马1045 = RA Smin木马1080 = SOCKS代理1090 = Extrem e木马1095 = Rat木马1097 = Rat木马1098 = Rat木马1099 = Rat木马1109 = Kerberos POP1167 = 私用电话1170 = Psyber Stream S erver1214 = KAZAA下载1234 = Ultors/恶鹰木马1243 = Backdoor/SubSeven木马1245 = VooDoo Doll木马1349 = BO DLL木马1352 = Lotus Notes1433 = SQL SERVER1492 = FTP9 9CMP木马1494 = CITRIX1503 = Netmeeting1512 = WINS解析1524 = IngresLock后门1600 = Shivka-Burka木马1630 = 网易泡泡1701 = L2TP1720 = H3231723 = PPTP(虚拟专用网)1731 = Netmeeting1755 = 流媒体服务18 07 = SpySender木马1812 = Radius认证1813 = Radius评估1863 = MSN聊天1981 = Sho ckRave木马1999 = Backdoor木马2000 = Tr ansScout-Remote-Explorer木马2001 = Trans Scout木马2002 = TransScout/恶鹰木马200 3 = TransScout木马2004 = TransScout木马2005 = TransScout木马2023 = Ripper木马2 049 = NFS服务器2053 = KNETD2115 = Bugs 木马2140 = Deep Throat木马2401 = CVS25 35 = 恶鹰2565 = Striker木马2583 = WinCras h木马2773 = Backdoor/SubSeven木马2774 = SubSeven木马2801 = Phineas Phucker木马2869 = UPNP(通用即插即用)3024 = WinCr ash木马3050 = InterBase3128 = squid代理3129 = Masters Paradise木马3150 = DeepTh roat木马3306 = MYSQL3389 = 远程桌面35 44 = MSN语音3545 = MSN语音3546 = MS N语音3547 = MSN语音3548 = MSN语音3 549 = MSN语音3550 = MSN语音3551 = MS N语音3552 = MSN语音3553 = MSN语音3 554 = MSN语音3555 = MSN语音3556 = MS N语音3557 = MSN语音3558 = MSN语音3559 = MSN语音3560 = MSN语音3561 = MS N语音3562 = MSN语音3563 = MSN语音3 564 = MSN语音3565 = MSN语音3566 = MS N语音3567 = MSN语音3568 = MSN语音3 569 = MSN语音3570 = MSN语音3571 = MS N语音3572 = MSN语音3573 = MSN语音3 574 = MSN语音3575 = MSN语音3576 = MS N语音3577 = MSN语音3578 = MSN语音3 579 = MSN语音3700 = Portal of Doom木马4080 = WebAdmin4081 = WebAdmin+SSL409 2 = WinCrash木马4267 = SubSeven木马44 43 = AOL MSN4567 = File Nail木马4590 = IC Q木马4661 = 电驴下载4662 = 电驴下载46 63 = 电驴下载4664 = 电驴下载4665 = 电驴下载4666 = 电驴下载4899 = Radmin木马5 000 = Sokets-de木马5000 = UPnP(通用即插即用)5001 = Back Door Setup木马5060 = SIP 5168 = 高波蠕虫5190 = AOL MSN5321 = Fire hotcker木马5333 = NetMonitor木马5400 = Blade Runner木马5401 = Blade Runner木马5402 = Blade Runner木马5550 = JAPAN x tcp木马5554 = 假警察蠕虫5555 = ServeMe 木马5556 = BO Facil木马5557 = BO Facil木马5569 = Robo-Hack木马5631 = pcAnywher e5632 = pcAnywhere5742 = WinCrash木马5 800 = VNC端口5801 = VNC端口5890 = VNC端口5891 = VNC端口5892 = VNC端口6267 = 广外女生6400 = The Thing木马6665 = IR C6666 = IRC SERVER PORT6667 = 小邮差666 8 = IRC6669 = IRC6670 = DeepThroat木马67 11 = SubSeven木马6771 = DeepThroat木马6776 = BackDoor-G木马6881 = BT下载688 2 = BT下载6883 = BT下载6884 = BT下载6 885 = BT下载6886 = BT下载6887 = BT下载6888 = BT下载6889 = BT下载6890 = BT 下载6939 = Indoctrination木马6969 = Gate Crasher/Priority木马6970 = GateCrasher木马7000 = Remote Grab木马7001 = Window s messager7070 = RealAudio控制口7215 = B ackdoor/SubSeven木马7300 = 网络精灵木马7301 = 网络精灵木马7306 = 网络精灵木马7307 = 网络精灵木马7308 = 网络精灵木马7424 = Host Control Trojan7467 = Padobot 7511 = 聪明基因7597 = QaZ木马7626 = 冰河木马7789 = Back Door Setup/ICKiller木马8011 = 无赖小子8102 = 网络神偷8181 = 灾飞9408 = 山泉木马9535 = 远程管理9872 = Portal of Doom木马9873 = Portal of Doom 木马9874 = Portal of Doom木马9875 = Port al of Doom木马9898 = 假警察蠕虫9989 = i Ni-Killer木马10066 = Ambush Trojan10067 = Portal of Doom木马10167 = Portal of Doom 木马10168 = 恶邮差10520 = Acid Shivers木马10607 = COMA木马11000 = Senna Spy木马11223 = Progenic木马11927 = 12076 = GJammer木马12223 = Keylogger木马1234 5 = NetBus木马12346 = GabanBus木马123 61 = Whack-a-mole木马12362 = Whack-a-m ole木马12363 = Whack-a-Mole木马12631 = WhackJob木马13000 = Senna Spy木马13 223 = PowWow聊天14500 = PC Invader木马14501 = PC Invader木马14502 = PC Invad er木马14503 = PC Invader木马15000 = Net Demon木马15382 = SubZero木马16484 = Mosucker木马16772 = ICQ Revenge木马16 969 = Priority木马17072 = Conducent广告17166 = Mosaic木马17300 = Kuang2 the vir us Trojan17449 = Kid Terror Trojan17499 = Cr azzyNet Trojan17500 = CrazzyNet Trojan1756 9 = Infector Trojan17593 = Audiodoor Trojan1 7777 = Nephron Trojan19191 = 蓝色火焰198 64 = ICQ Revenge木马20001 = Millennium 木马20002 = Acidkor Trojan20005 = Mosuck er木马20023 = VP Killer Trojan20034 = NetB us 2 Pro木马20808 = QQ女友21544 = GirlF riend木马22222 = Proziack木马23005 = Ne tTrash木马23006 = NetTrash木马23023 = L ogged木马23032 = Amanda木马23432 = Asylum木马23444 = 网络公牛23456 = Evil FT P木马23456 = EvilFTP-UglyFTP木马23476 = Donald-Dick木马23477 = Donald-Dick木马25685 = Moonpie木马25686 = Moonpie木马25836 = Trojan-Proxy25982 = Moonpie木马26274 = Delta Source木马27184 = Alvgus 2000 Trojan29104 = NetTrojan木马29891 = The Unexplained木马30001 = ErrOr32木马30003 = Lamers Death木马30029 = AOL木马 30100 = NetSphere木马30101 = NetSphe re木马30102 = NetSphere木马30103 = Net Sphere 木马30103 = NetSphere木马30133 = NetSphere木马30303 = Sockets de Troie30 947 = Intruse木马31336 = Butt Funnel木马31337 = Back-Orifice木马31338 = NetSpy DK 木马31339 = NetSpy DK 木马31666 = BOW hack木马31785 = Hack Attack木马31787 = Hack Attack木马31788 = Hack-A-Tack木马31789 = Hack Attack木马31791 = Hack Attac k木马31792 = Hack-A-Tack木马32100 = Pe anut Brittle木马32418 = Acid Battery木马3 3333 = Prosiak木马33577 = Son of PsychWar d木马33777 = Son of PsychWard木马3391 1 = Spirit 2000/2001木马34324 = Big Gluck 木马34555 = Trinoo木马35555 = Trinoo木马36549 = Trojan-Proxy37237 = Mantis Troja n40412 = The Spy木马40421 = Agent 40421木马40422 = Master-Paradise木马40423 = Master-Paradise木马40425 = Master-Paradi se木马40426 = Master-Paradise木马41337 = Storm木马41666 = Remote Boot tool木马46147 = 47262 = Delta Source木马49301 = Online KeyLogger木马50130 = Enterprise 木马50505 = Sockets de Troie木马50766 = Fore木马51996 = Cafeini木马53001 = Rem ote Windows Shutdown木马54283 = Backdo or/SubSeven木马54320 = Back-Orifice木马54321 = Back-Orifice木马55165 = File Mana ger木马57341 = NetRaider木马58339 = Bu tt Funnel木马60000 = DeepThroat木马604 11 = Connection木马61348 = Bunker-hill木马61466 = Telecommando木马61603 = Bun ker-hill木马63485 = Bunker-hill木马65000 = Devil木马65390 = Eclypse木马65432 = Th e Traitor木马65535 = Rc1木马UDP端口31 = Masters Paradise木马41 = DeepThroat 木马53 = 域名解析67 = 动态IP服务68 = 动态IP客户端135 = 本地服务137 = NETBI OS名称138 = NETBIOS DGM服务139 = 文件共享146 = FC-Infector木马161 = SNMP服务162 = SNMP查询445 = SMB(交换服务器消息块)500 = VPN密钥协商666 = Bla木马999 = DeepThroat木马1027 = 灰鸽子10 42 = Bla木马1561 = MuSka52木马1900 = U PNP(通用即插即用)2140 = Deep Throat木马2989 = Rat木马3129 = Masters Paradise木马3150 = DeepThroat木马3700 = Portal of Doom木马4000 = QQ聊天4006 = 灰鸽子5 168 = 高波蠕虫6670 = DeepThroat木马677 1 = DeepThroat木马6970 = ReadAudio音频数据8000 = QQ聊天8099 = VC远程调试82 25 = 灰鸽子9872 = Portal of Doom木马987 3 = Portal of Doom木马9874 = Portal of Doo m木马9875 = Portal of Doom木马10067 = Portal of Doom木马10167 = Portal of Doom 木马22226 = 高波蠕虫26274 = Delta Source 木马31337 = Back-Orifice木马31785 = Hack Attack木马31787 = Hack Attack木马31788 = Hack-A-Tack木马31789 = Hack Attack木马31791 = Hack Attack木马31792 = Hack-A-Tack木马34555 = Trin00 DDoS木马40422 = Master-Paradise木马40423 = Master-Paradi se木马40425 = Master-Paradise木马40426 = Master-Paradise木马47262 = Delta Sourc e木马54320 = Back-Orifice木马54321 = Ba ck-Orifice木马60000 = DeepThroat木马。
TCP常用网络端口对照表
【开始-运行- CMD ,输入netstat -an 然后回车就可以查看端口】端口:0服务:Reserved说明:通常用于分析操作系统。
这一方法能够工作是因为在一些系统中“0”是无效端口,当你试图使用通常的闭合端口连接它时将产生不同的结果。
一种典型的扫描,使用IP地址为0.0.0.0,设置ACK位并在以太网层广播。
端口:1服务:tcpmux说明:这显示有人在寻找SGI Irix机器。
Irix是实现tcpmux的主要提供者,默认情况下tcpmux 在这种系统中被打开。
Irix机器在发布是含有几个默认的无密码的帐户,如:IP、GUEST UUCP、NUUCP、DEMOS 、TUTOR、DIAG、OUTOFBOX等。
许多管理员在安装后忘记删除这些帐户。
因此HACKER在INTERNET上搜索tcpmux并利用这些帐户。
端口:7服务:Echo说明:能看到许多人搜索Fraggle放大器时,发送到X.X.X.0和X.X.X.255的信息。
端口:19服务:Character Generator说明:这是一种仅仅发送字符的服务。
UDP版本将会在收到UDP包后回应含有垃圾字符的包。
TCP连接时会发送含有垃圾字符的数据流直到连接关闭。
HACKER利用IP欺骗可以发动DoS攻击。
伪造两个chargen服务器之间的UDP包。
同样Fraggle DoS攻击向目标地址的这个端口广播一个带有伪造受害者IP的数据包,受害者为了回应这些数据而过载。
端口:21服务:FTP说明:FTP服务器所开放的端口,用于上传、下载。
最常见的攻击者用于寻找打开anonymous 的FTP服务器的方法。
这些服务器带有可读写的目录。
木马Doly Trojan、Fore、Invisible FTP、WebEx、WinCrash和Blade Runner所开放的端口。
端口:22服务:Ssh说明:PcAnywhere建立的TCP和这一端口的连接可能是为了寻找ssh。
- 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
- 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
- 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。
TCP常用网络和木马使用端口对照表【开始-运行- CMD ,输入netstat -an 然后回车就可以查看端口】端口:0服务:Reserved说明:通常用于分析操作系统。
这一方法能够工作是因为在一些系统中“0”是无效端口,当你试图使用通常的闭合端口连接它时将产生不同的结果。
一种典型的扫描,使用IP地址为0.0.0.0,设置ACK位并在以太网层广播。
端口:1服务:tcpmux说明:这显示有人在寻找SGI Irix机器。
Irix是实现tcpmux的主要提供者,默认情况下tcpmux 在这种系统中被打开。
Irix机器在发布是含有几个默认的无密码的帐户,如:IP、GUEST UUCP、NUUCP、DEMOS 、TUTOR、DIAG、OUTOFBOX等。
许多管理员在安装后忘记删除这些帐户。
因此HACKER在INTERNET上搜索tcpmux并利用这些帐户。
端口:7服务:Echo说明:能看到许多人搜索Fraggle放大器时,发送到X.X.X.0和X.X.X.255的信息。
端口:19服务:Character Generator说明:这是一种仅仅发送字符的服务。
UDP版本将会在收到UDP包后回应含有垃圾字符的包。
TCP连接时会发送含有垃圾字符的数据流直到连接关闭。
HACKER利用IP欺骗可以发动DoS攻击。
伪造两个chargen服务器之间的UDP包。
同样Fraggle DoS攻击向目标地址的这个端口广播一个带有伪造受害者IP的数据包,受害者为了回应这些数据而过载。
端口:21服务:FTP说明:FTP服务器所开放的端口,用于上传、下载。
最常见的攻击者用于寻找打开anonymous 的FTP服务器的方法。
这些服务器带有可读写的目录。
木马Doly Trojan、Fore、Invisible FTP、WebEx、WinCrash和Blade Runner所开放的端口。
端口:22服务:Ssh说明:PcAnywhere建立的TCP和这一端口的连接可能是为了寻找ssh。
这一服务有许多弱点,如果配置成特定的模式,许多使用RSAREF库的版本就会有不少的漏洞存在。
端口:23服务:Telnet说明:远程登录,入侵者在搜索远程登录UNIX的服务。
大多数情况下扫描这一端口是为了找到机器运行的操作系统。
还有使用其他技术,入侵者也会找到密码。
木马Tiny Telnet Server 就开放这个端口。
端口:25服务:SMTP说明:SMTP服务器所开放的端口,用于发送邮件。
入侵者寻找SMTP服务器是为了传递他们的SPAM。
入侵者的帐户被关闭,他们需要连接到高带宽的E-MAIL服务器上,将简单的信息传递到不同的地址。
木马Antigen、Email Password Sender、Haebu Coceda、Shtrilitz Stealth、WinPC、WinSpy都开放这个端口。
端口:31服务:MSG Authentication说明:木马Master Paradise、Hackers Paradise开放此端口。
端口:42服务:WINS Replication说明:WINS复制端口:53服务:Domain Name Server(DNS)说明:DNS服务器所开放的端口,入侵者可能是试图进行区域传递(TCP),欺骗DNS(UDP)或隐藏其他的通信。
因此防火墙常常过滤或记录此端口。
端口:67服务:Bootstrap Protocol Server说明:通过DSL和Cable modem的防火墙常会看见大量发送到广播地址255.255.255.255的数据。
这些机器在向DHCP服务器请求一个地址。
HACKER常进入它们,分配一个地址把自己作为局部路由器而发起大量中间人(man-in-middle)攻击。
客户端向68端口广播请求配置,服务器向67端口广播回应请求。
这种回应使用广播是因为客户端还不知道可以发送的IP地址。
端口:69服务:Trival File Transfer说明:许多服务器与bootp一起提供这项服务,便于从系统下载启动代码。
但是它们常常由于错误配置而使入侵者能从系统中窃取任何文件。
它们也可用于系统写入文件。
端口:79服务:Finger Server说明:入侵者用于获得用户信息,查询操作系统,探测已知的缓冲区溢出错误,回应从自己机器到其他机器Finger扫描。
端口:80服务:HTTP说明:用于网页浏览。
木马Executor开放此端口。
端口:99服务:metagram Relay说明:后门程序ncx99开放此端口。
端口:102服务:Message transfer agent(MTA)-X.400 over TCP/IP说明:消息传输代理。
端口:109服务:Post Office Protocol -Version3说明:POP3服务器开放此端口,用于接收邮件,客户端访问服务器端的邮件服务。
POP3服务有许多公认的弱点。
关于用户名和密码交换缓冲区溢出的弱点至少有20个,这意味着入侵者可以在真正登陆前进入系统。
成功登陆后还有其他缓冲区溢出错误。
端口:110服务:SUN公司的RPC服务所有端口说明:常见RPC服务有rpc.mountd、NFS、rpc.statd、rpc.csmd、rpc.ttybd、amd等端口:113服务:Authentication Service说明:这是一个许多计算机上运行的协议,用于鉴别TCP连接的用户。
使用标准的这种服务可以获得许多计算机的信息。
但是它可作为许多服务的记录器,尤其是FTP、POP、IMAP、SMTP和IRC等服务。
通常如果有许多客户通过防火墙访问这些服务,将会看到许多这个端口的连接请求。
记住,如果阻断这个端口客户端会感觉到在防火墙另一边与E-MAIL服务器的缓慢连接。
许多防火墙支持TCP连接的阻断过程中发回RST。
这将会停止缓慢的连接。
端口:119服务:Network News Transfer Protocol说明:NEWS新闻组传输协议,承载USENET通信。
这个端口的连接通常是人们在寻找USENET服务器。
多数ISP限制,只有他们的客户才能访问他们的新闻组服务器。
打开新闻组服务器将允许发/读任何人的帖子,访问被限制的新闻组服务器,匿名发帖或发送SPAM。
端口:135服务:Location Service说明:Microsoft在这个端口运行DCE RPC end-point mapper为它的DCOM服务。
这与UNIX 111端口的功能很相似。
使用DCOM和RPC的服务利用计算机上的end-point mapper注册它们的位置。
远端客户连接到计算机时,它们查找end-point mapper找到服务的位置。
HACKER扫描计算机的这个端口是为了找到这个计算机上运行Exchange Server吗?什么版本?还有些DOS攻击直接针对这个端口。
端口:137、138、139服务:NETBIOS Name Service说明:其中137、138是UDP端口,当通过网上邻居传输文件时用这个端口。
而139端口:通过这个端口进入的连接试图获得NetBIOS/SMB服务。
这个协议被用于windows文件和打印机共享和SAMBA。
还有WINS Regisrtation也用它。
端口:143服务:Interim Mail Access Protocol v2说明:和POP3的安全问题一样,许多IMAP服务器存在有缓冲区溢出漏洞。
记住:一种LINUX蠕虫(admv0rm)会通过这个端口繁殖,因此许多这个端口的扫描来自不知情的已经被感染的用户。
当REDHA T在他们的LINUX发布版本中默认允许IMAP后,这些漏洞变的很流行。
这一端口还被用于IMAP2,但并不流行。
端口:161服务:SNMP说明:SNMP允许远程管理设备。
所有配置和运行信息的储存在数据库中,通过SNMP可获得这些信息。
许多管理员的错误配置将被暴露在Internet。
Cackers将试图使用默认的密码public、private访问系统。
他们可能会试验所有可能的组合。
SNMP包可能会被错误的指向用户的网络。
端口:177服务:X Display Manager Control Protocol说明:许多入侵者通过它访问X-windows操作台,它同时需要打开6000端口。
端口:389服务:LDAP、ILS说明:轻型目录访问协议和NetMeeting Internet Locator Server共用这一端口。
端口:443服务:Https说明:网页浏览端口,能提供加密和通过安全端口传输的另一种HTTP。
端口:456服务:[NULL]说明:木马HACKERS PARADISE开放此端口。
端口:513服务:Login,remote login说明:是从使用cable modem或DSL登陆到子网中的UNIX计算机发出的广播。
这些人为入侵者进入他们的系统提供了信息。
端口:544服务:[NULL]说明:kerberos kshell端口:548服务:Macintosh,File Services(AFP/IP)说明:Macintosh,文件服务。
端口:553服务:CORBA IIOP (UDP)说明:使用cable modem、DSL或VLAN将会看到这个端口的广播。
CORBA是一种面向对象的RPC系统。
入侵者可以利用这些信息进入系统。
端口:555服务:DSF说明:木马PhAse1.0、Stealth Spy、IniKiller开放此端口。
端口:568服务:Membership DPA说明:成员资格DPA。
端口:569服务:Membership MSN说明:成员资格MSN。
端口:635服务:mountd说明:Linux的mountd Bug。
这是扫描的一个流行BUG。
大多数对这个端口的扫描是基于UDP的,但是基于TCP的mountd有所增加(mountd同时运行于两个端口)。
记住mountd 可运行于任何端口(到底是哪个端口,需要在端口111做portmap查询),只是Linux默认端口是635,就像NFS通常运行于2049端口。
端口:636服务:LDAP说明:SSL(Secure Sockets layer)端口:666服务:Doom Id Software说明:木马Attack FTP、Satanz Backdoor开放此端口端口:993服务:IMAP说明:SSL(Secure Sockets layer)端口:1001、1011服务:[NULL]说明:木马Silencer、WebEx开放1001端口。
木马Doly Trojan开放1011端口。
端口:1024服务:Reserved说明:它是动态端口的开始,许多程序并不在乎用哪个端口连接网络,它们请求系统为它们分配下一个闲置端口。