Port 3127 Details
known port assignments and vulnerabilities
threat/application/port search:
Port(s) |
Protocol |
Service |
Details |
Source |
3127 |
tcp |
worm |
W32.Novarg.A@mm [Symantec-2004-012612-5422-99] (2004.01.26) - mass-mailing worm with remote access trojan. Affects all current Windows versions. A.K.A W32/Mydoom@MM.
When a computer is infected, the worm will set up a backdoor into the system by opening TCP ports 3127 through 3198, compromissing the entire system.
W32.HLLW.Deadhat [Symantec-2004-020619-0805-99] (2004.02.06) - a worm with backdoor capabilities. It attempts to uninstall the W32.Mydoom.A@mm and W32.Mydoom.B@mm worms, and then it spreads to other systems infected with Mydoom. Also, it spreads through the Soulseek file-sharing program.
Some other trojans using this port: W32.HLLW.DoomJuice [Symantec-2004-020909-2916-99], W32.MockBot.A [Symantec-2004-022608-5242-99], Moody.Worm, W32.DoomHunter, W32.SoLame.A, W32.Welchia.D |
SG
|
3127 |
tcp |
mydoom |
W32/MyDoom, W32.Novarg.A backdoor |
SANS
|
3127 |
tcp,udp |
threat |
W32.Mockbot |
Bekkoame
|
3127 |
tcp,udp |
threat |
W32.Solame |
Bekkoame
|
3127 |
tcp,udp |
threat |
Novarg(Mydoom) |
Bekkoame
|
3127 |
tcp,udp |
threat |
W32.HLLW.Deadhat |
Bekkoame
|
3127 |
tcp,udp |
ctx-bridge |
CTX Bridge Port |
IANA
|
3074-3174 |
udp |
applications |
Rainbow Six Vegas |
Portforward
|
|
8 records found
Related ports: 1080 2766 3128
|