Port 5151 Details
known port assignments and vulnerabilities
threat/application/port search:
Port(s) |
Protocol |
Service |
Details |
Source |
5151 |
tcp |
trojans |
Backdoor.Optix.04.c [Symantec-2002-102319-1255-99] (2002.10.23) - remote access troan. Affects all current Windows versions, listens to port 5151 by default.
Backdoor.Win32.Optix.02.b / Weak Hardcoded Credentials - ptix listens on TCP port 5151 and is packed with ASPack (2.11d). Unpacking is trivial set breakpoints on POPAD, RET, run and dump using OllyDumpEx. The unpacked PE file reveals a very weak three character cleartext password "1q1" stored as "svrpwd=1q1" at offset: 0000da4c of the unpacked malware. Commands sent to the backdoor use a semicolon ";" as a marker E.g. password;1q1;
[MVID-2024-0690]
Tony Hawks Pro Skater 3 also uses port 5151 (TCP/UDP).
Email-Worm.Win32.Sidex / Unauthenticated Remote Command Execution - the malware listens on TCP port 5151 and creates a dir named "vortex" with several PE files. Third-party adversaries who can reach an infected host can run commands made available by the backdoor.
References: [MVID-2022-0564]
esri_sde - ESRI SDE Instance (IANA official) |
SG
|
5151 |
udp |
applications |
The Logging Server (ftplogsrv.exe) 7.9.14.0 and earlier in IPSwitch WS_FTP 6.1 allows remote attackers to cause a denial of service (loss of responsiveness) via a large number of large packets to port 5151/udp, which causes the listening socket to terminate and prevents log commands from being recorded.
References: [CVE-2008-0608] [BID-27612] [SECUNIA-28761]
The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a crafted packet containing a long string to port 5151/udp.
References: [CVE-2007-3823] [SECUNIA-26040] [OSVDB-36218] |
SG
|
5151 |
tcp |
trojan |
Optix Lite |
Trojans
|
5150-5151,6500 |
tcp,udp |
applications |
Tony Hawks Pro Skater 3 |
Portforward
|
5150-5151 |
tcp |
applications |
Tony Hawks Underground 2 |
Portforward
|
5151 |
tcp,udp |
threat |
Optix |
Bekkoame
|
5151 |
tcp |
esri-sde |
"ESRI SDE Instance |
IANA
|
5151 |
tcp |
esri_sde |
ESRI SDE Instance |
IANA
|
5151 |
udp |
esri-sde |
"ESRI SDE Remote Start |
IANA
|
5151 |
udp |
esri_sde |
ESRI SDE Remote Start |
IANA
|
5120-5300 |
udp |
applications |
Neverwinter Nights 2 |
Portforward
|
|
11 records found
|