| Portas
Usadas |
Proto-
colo |
Nome
do Trojan |
Onde
ele altera o Registro * |
Nome
do Server do Trojan |
| 20001 |
TCP |
Millenium |
HKLM\S\M\W\CV\Run |
spy.exe
(48128Kb) ou modem.exe (48128Kb) |
| 20034 |
TCP |
NetBus
Pro |
HKLM\S\M\W\CV\
RunServices |
NBSvr.exe
(612864Kb) |
| 20203 |
TCP |
Chupacabra |
n.d. |
n.d. |
| 20203 |
TCP |
Logged |
n.d. |
n.d. |
| 20331 |
TCP |
Bla |
n.d. |
n.d. |
| 21554 |
TCP |
GirlFriend |
HKLM\S\M\W\CV\Run |
windll.exe
(344064Kb) |
| 21554 |
TCP |
Schwindler |
n.d. |
n.d. |
| 22222 |
TCP |
Prosiak |
HKLM\S\M\W\CV\
RunServices |
prosiak.exe
(238592Kb) |
| 22311 |
TCP |
Backdoor.Simali |
HKLM\S\M\Active
Setup \Install |
Loader.exe (257758Kb)
ou main.exe, ou lass.exe ou msmsg.exe |
| 23456 |
TCP |
Ugly
FTP |
n.d. |
UglyFTP.exe
(22208Kb) |
| 23456 |
TCP |
Evil
FTP |
n.d. |
n.d. |
| 23456 |
TCP |
WhackJob |
n.d. |
n.d. |
| 23476 |
TCP |
Donald
Dick |
n.d. |
n.d. |
| 23477 |
TCP |
Donald
Dick |
n.d. |
n.d. |
| 26274 |
UDP |
Delta
Source |
n.d. |
Server.exe
(24064Kb) |
| 27374 |
TCP |
SubSeven |
HKLM\S\M\W\CV\Run
or HKLM\S\M\W\CV\
RunServices ou * |
Server.exe
(24064Kb) |
| 27573 |
TCP |
SubSeven |
HKLM\S\M\W\CV\Run
or HKLM\S\M\W\CV\
RunServices ou * |
Server.exe
(24064Kb) |
| 29891 |
UDP |
The
Unexplained |
n.d. |
n.d. |
| 30029 |
TCP |
AOL
Trojan |
n.d. |
n.d. |
| 30100 |
TCP |
NetSphere |
n.d. |
n.d. |
| 30101 |
TCP |
NetSphere |
n.d. |
n.d. |
| 30102 |
TCP |
NetSphere |
n.d. |
n.d. |
| 30103 |
TCP |
NetSphere |
n.d. |
n.d. |
| 30303 |
TCP |
Sockets
de Troie |
n.d. |
lame.exe
(335872Kb) |
| 30303 |
TCP |
Socket25 |
n.d. |
n.d. |
| 30999 |
TCP |
Kuang2 |
HKLM\S\M\W\CV\Run |
K2pS_FULL.exe
(14848Kb) ou K2pS.exe (7680Kb) |
| 31336 |
TCP |
Bo
Wack |
n.d. |
n.d. |
| 31337 |
UDP |
Back
Orifice |
HKLM\S\M\W\CV\
RunServices |
boserve.exe
(124928Kb) |
| 31337 |
UDP |
BackFire |
n.d. |
n.d. |
| 31337 |
UDP |
DeepBO |
n.d. |
n.d. |
| 31337 |
TCP |
Baron
Night |
n.d. |
n.d. |
| 31337 |
TCP |
BO
client |
n.d. |
n.d. |
| 31337 |
TCP |
BO
Facil |
n.d. |
n.d. |
| 31338 |
UDP |
Deep
Back Orifice |
HKLM\S\M\W\CV\
RunServices |
boserve.exe
(124928Kb) |
| 31338 |
UDP |
Back
Orifice |
n.d. |
n.d. |
| 31338 |
TCP |
NetSpy |
HKLM\S\M\W\CV\Run |
server.exe
(25088Kb) ou server.exe (31744Kb) |
| 31339 |
TCP |
NetSpy |
HKLM\S\M\W\CV\Run |
server.exe
(25088Kb) ou server.exe (31744Kb) |
| 31666 |
TCP |
BOWhack |
n.d. |
n.d. |
| 31780 |
TCP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 31785 |
TCP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 31787 |
TCP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 31788 |
TCP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 31789 |
UDP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 31791 |
UDP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 31792 |
TCP |
Hack
'a' Tack |
HKLM\S\M\W\CV\Run |
expl32.exe
(236Kb) |
| 32418 |
TCP |
Acid
Battery |
n.d. |
n.d. |
| 33333 |
TCP |
Prosiak |
HKLM\S\M\W\CV\
RunServices |
prosiak.exe
(238592Kb) |
| 33911 |
TCP |
Spirit
2001a |
n.d. |
n.d. |
| 34324 |
TCP |
Big
Gluck (TN) |
HKLM\S\M\W\CV\
RunServices |
bg10.exe
(100352Kb) |
| 34324 |
TCP |
Tiny
Telnet Server |
HKLM\S\M\W\CV\Run |
tnsrv.exe
(127488Kb) |
| 34555 |
UDP |
Trinoo |
n.d. |
n.d. |
| 35555 |
UDP |
Trinoo |
n.d. |
n.d. |
| 36794 |
TCP |
BugBear |
n.d. |
n.d. |
| 37651 |
TCP |
YAT |
n.d. |
n.d. |
| 40412 |
TCP |
The
Spy |
HKLM\S\M\W\CV\
RunServices |
SpyServ1.exe
(28672Kb) |
| 40421 |
TCP |
Masters'
Paradise |
n.d. |
icqcrk.exe
(50688Kb) ou uagent.exe (282624Kb) ou Agent.exe (293376Kb) ou
Angel.exe (430592Kb) ou progman.exe (192000Kb) |
| 40421 |
TCP |
Agent
40421 |
n.d. |
n.d. |
| 40422 |
TCP |
Masters'
Paradise |
n.d. |
icqcrk.exe
(50688Kb) ou uagent.exe (282624Kb) ou Agent.exe (293376Kb) ou
Angel.exe (430592Kb) ou progman.exe (192000Kb) |
| 40423 |
TCP |
Masters'
Paradise |
n.d. |
icqcrk.exe
(50688Kb) ou uagent.exe (282624Kb) ou Agent.exe (293376Kb) ou
Angel.exe (430592Kb) ou progman.exe (192000Kb) |
| 40425 |
TCP |
Masters'
Paradise |
n.d. |
icqcrk.exe
(50688Kb) ou uagent.exe (282624Kb) ou Agent.exe (293376Kb) ou
Angel.exe (430592Kb) ou progman.exe (192000Kb) |
| 40426 |
TCP |
Masters'
Paradise |
n.d. |
icqcrk.exe
(50688Kb) ou uagent.exe (282624Kb) ou Agent.exe (293376Kb) ou
Angel.exe (430592Kb) ou progman.exe (192000Kb) |
| 47262 |
UDP |
Delta
Source |
n.d. |
Server.exe
(24064Kb) |
| 50505 |
TCP |
Sockets
de Troie |
n.d. |
lame.exe
(335872Kb) |
| 50766 |
TCP |
Schwindler |
n.d. |
n.d. |
| 50766 |
TCP |
Fore |
n.d. |
foresvr.exe
(309248Kb) |
| 52317 |
TCP |
Acid
Battery 2000 |
n.d. |
n.d. |
| 53001 |
TCP |
Remote
Windows Shutdown |
n.d. |
RmtEwxS.exe
(268800Kb) |
| 54283 |
TCP |
SubSeven |
HKLM\S\M\W\CV\Run
ou HKLM\S\M\W\CV\
RunServices ou * |
Server.exe
(24064Kb) |
| 54320 |
TCP |
Back
Orifice 2000 |
n.d. |
n.d. |
| 54321 |
UDP |
Back
Orifice 2000 |
n.d. |
n.d. |
| 54321 |
TCP |
School
Bus |
n.d. |
n.d. |
| 57341 |
TCP |
NetRaider |
n.d. |
n.d. |
| 60000 |
TCP |
Deep
Throat v2 |
HKLM\S\M\W\CV\Run |
SystemPatch.exe
(312180Kb) |
| 61348 |
TCP |
Bunker-Hill |
n.d. |
n.d. |
| 61466 |
TCP |
TeleCommando |
HKLM\S\M\W\CV\Run |
TeLeCoMMaNDo
Server.exe (211456Kb) |
| 61603 |
TCP |
Bunker-Hill |
n.d. |
n.d. |
| 63485 |
TCP |
Bunker-Hill |
n.d. |
n.d. |
| 65000 |
TCP |
Devil |
n.d. |
ICQFlood.exe
(24576Kb) |
| 65432 |
TCP |
The
Traitor |
n.d. |
n.d. |
| 65432 |
UDP |
The
Traitor |
n.d. |
n.d. |
| 65535 |
TCP |
RC |
n.d. |
ICQFlood.exe
(24576Kb) |