Les ports :
|
Les
ports dits "sensibles"
|
|
20 et 21 |
FTP
|
23 |
Telnet
|
137 - 139 |
Netbios
|
53 |
Dns
|
67 |
Dhcp
|
119 |
News
|
80 et 8080 |
Webs servers
|
110 |
Pop mail
|
143 |
Imap mail
|
Préconisations
de surveillance et fermeture
|
|
30100 |
Netsphère
|
1033 |
Netspy
|
2023 |
Pass riper
|
2801 |
Phinéas
|
9872/5 |
Portalof doom
|
16969 |
Priotitry
|
11223 |
Progenic
|
22222 |
Prosiac
|
1509 |
Psyber
|
53001 |
Remotewin
|
5569 |
Robohack
|
11000 |
Sennaspy
|
69123 |
Shitheep
|
1600 |
Shiva burka
|
1981 |
Shockrave
|
1001 |
Silencer
|
5000 |
Socket 23
|
30303 |
Socket 25
|
1807 |
Spysender
|
555 |
Stealth spy
|
1170 |
Streaming
|
2565 |
Striker
|
1243 - 6776 |
Sub seven
|
61466 |
Telecomando
|
40412 |
The spy
|
2140 |
Invasor
|
6400 |
The thing
|
29891 |
Unexplained
|
34324 |
Tiny telnet
|
3791 |
Total eclypse
|
2001 |
Trojans cow
|
33911 |
Trojan Spirit
|
23456 |
Ugly ftp
|
6669 |
Vampire
|
1245 |
Vodoo
|
1001 |
Web ex
|
2583 |
Wincrash2
|
5742 |
Wincrash
|
1080 |
Wingate
|
Préconisations
de surveillance et fermeture
|
|
30029
|
Aol trojans
|
666
|
Attack FTP
|
5400
|
Back const.
|
1999
|
Backdoor
|
31337
|
Backorifice
|
34324
|
Biggluck
|
5400
|
Blade runner
|
1042
|
Bla1.1
|
20331
|
Bla
|
121
|
Jammerkila
|
10008 |
Cheese
Worm
|
10607
|
Coma danny
|
6670
|
Deep Throath
|
6883
|
Dark star
|
65000
|
Devil
|
23456 |
Evil
Ftp
|
1010- 1015
|
Dolly trojan
|
4567
|
File nail
|
50766
|
Fore
|
1492
|
FTP99CMP
|
6969
|
Gatecrasher
|
21554
|
Girlfriend
|
12076
|
Gjamer
|
456
|
Hackers paradise
|
31787
|
Hack a tack
|
12223
|
Hack99key
|
2283
|
Hvl rat 5
|
7789
|
Ic killer
|
4950
|
Icq trojan
|
6939
|
Indoctrination
|
9989
|
InIkiler
|
30999
|
Kuang
|
31-40423
|
Masterparadise
|
1269
|
Maverick matrix
|
20000/1338
|
Millenium
|
20034
|
NetBus Pro
|
12345/6
|
NetBus 1.x
|
7306
|
Netmonitor
|
Et
voici pour infos les diffentes applications liees aux ports ci-dessous.
Nous sommes preneur de precisions supplementaires si
vous en avez.
|
1
-Tcpmux
|
117-Uucp
|
521-Ripng
|
1646-Radius
Accounting
|
4333-mSQL
|
5-Rje
|
119-Nntp
|
522-Uls
|
1680-Carbon
copy
|
4827-HTCP
|
7-Echo
|
120-Cfdp
|
531-Irc
|
1701-L2tp/
Lsf
|
5004/5-RTP
|
9-Discard
|
123-Ntp
|
543-Klogin/appleshare
|
1717-Convoy
|
5010-Yahoo!
Messenger
|
11-Systat
|
124-SecureID
|
545-Quicktime
|
1720-H.323/
Q.931
|
5060-SIP
|
13-Daytime
|
129-wdgen
|
548-Afp
|
1723-PPTP
control port
|
5190-AIM
|
15-Netstat
|
133-Statsrv
|
554-Reat
streaming
|
1755-Windows
media
|
5500-securid
|
17-Quotd
|
135-Loc-srv/emap
|
555-Phase
zero
|
1758-Tftp
multicast
|
5501-securidprop
|
18-Send/Rwp
|
144-News
|
563-Nntp
over ssl
|
1812-Raduis
server
|
5423-Apple
VirtualUser
|
19-chargen
|
152-Bftp
|
575-Vemmi
|
1813-Radius
Accounting
|
5631/2-PCAnywhere
|
22-Ssh/
Pcanywere
|
153-Sgmp
|
581-Bundle
discovery
|
1818-ETFTP
|
5801/0VNC
|
25-Smtp
|
161-Snmp
|
593-Ms-rpc
|
1973-DCAP/DRAP
|
5900/1-VNC
|
27-Etrn
|
175-Vmnet
|
608-sift
/uft
|
1985-HSRP
|
6000-X
Windows
|
29-Msg
icp
|
177-Xdmcp
|
626-Apple
asia
|
1999-Cisco
AUTH
|
6502-Netscape
Conf.
|
31-Msg-auth
|
178-Win server
|
631-Ipp
|
2001-glimpse
|
6112-BattleNet
|
33-Dsp
|
179-Bgp
|
635-Mount
d
|
2049-NFS
|
6667-IRC
|
37-Time
|
180-Sl
mail admin
|
636-Sldap
|
2064-distributed.net
|
6699-napster
|
38-Rap
|
199-Smux
|
642-Emsd
|
2065/6-DLSw
|
6670-DeepThroat
|
39-Rlp
|
210-Z39.50
|
648-RRp
nsi registry
|
2106-MZAP
|
6970-RTP
|
42-Name
serv/ Wins
|
218-Mpp
|
655-Tink
|
2140-DeepThroat
|
7007-Windows
Media encoder
|
43-Whois
nick name
|
220-Imap
3
|
660-Apple
admin server
|
2031-Compaq
Manage.
|
7070-RealServer
|
49-Tacacs
login host
|
259-Esro
|
674-Acap
|
2336-Apple
UG Control
|
7648/9-CU-SeeMe
|
50-Rmcp
re-mail-ck
|
264-Fw1-topo
|
687-Appleshare
ip
|
2427-MGCP
gateway
|
7728-Unreal
|
57-Mtp
|
311-Apple
web admin
|
700-Buddyphone
|
2504-WLBS
|
8010WinGate
2.1
|
59-Nfile
|
350-Matip
type A
|
705-Agent
X for SMP
|
2535-MADCAP
|
8081-HTTP
|
63-Whois
++
|
351Matip
type B
|
901-Swat/
Realsecure
|
2543-sip
|
8383-IMail
WWW
|
66-Sql
net
|
363-Rsvp
tunnel
|
993-S-imap
|
2592-netrek
|
8875/88-napster
|
67-Bootps
|
366-ODMR
|
995-S-pop
|
2628-DICT
|
11371PGP
5 Keyserver
|
68-bootpd
/Dhcp
|
387-Appletalk
udpdate
|
1062-Veracity
|
2727-MGCP
call agent
|
13223/4-PowWow
|
69-Tftp
|
389-Ldap
|
1080-Socks
|
2998-ISS
Real Secure
|
14327/8-Palm
|
70-Gopher
|
407-Timbuktu
|
1085Webobjects
|
3000-Firstclass
|
18888-LiquidAudio
|
79-Finger
|
434-Mobile
IP
|
1227-Dns2go
|
3031-Apple
AgentVU
|
21157-Activision
|
88-Kerberos
|
443-Ssl
|
1352-Lotus
notes
|
3128-squid
|
23213/4-PowWow
|
95-Supdup
|
444-network
paging
|
1381-Apple
manager
|
3130-ICP
|
26000-Quake
|
96-Dixie
|
445-Smb
|
1417/9-Timbuktu
|
3150-DeepThroat
|
27010/15-Half-Life
|
98-Linuxconf
|
458-Quicktime
|
1433-Microsot
Sql server
|
3264-ccmail
|
27960-QuakeIII
|
101-Hostname
|
468-Photuris
|
1434-Sql
monitor
|
3283-Apple
NetAssitant
|
30029-AOL
Admin
|
102-Iso
X400 Itot
|
500-IsakMp/
pluto
|
1494-Citrix
/ Ms server
|
3288-COPS
|
32777-rpc.walld
|
105-cso
|
512-Biff
/ Rexec
|
1503-T.120
|
3305-ODETTE
|
40193-Novell
|
106-Poppassd
|
513-Who/
rlogin
|
1521-Oracle
sql
|
3306-mySQL
|
41524-arcservediscovery
|
109-Pop2
|
514-Syslog/
rsh
|
1525/6-Prospero
|
3389-NT
Terminal Serve
|
45000-Cisco
NetRanger
|
111-Sun
rpc portmap.
|
515-Lp/
lpr/ line printer
|
1527-Tlisrv
|
3521-netrek
|
65301-ICMP
Type hidden
|
113-Identd/auth
|
517-Talk
|
1604-Citrix
/ Ms server
|
4000-icq
|
2327-Netscape
Conf.
|
115-Sftp
|
520-Rip
|
1645-Radius
authentific.
|
4321-Universal
plug and play
|
5000/1900
udp -universal p.play
|