speedguide.net  

Port 5151 Details


known port assignments and vulnerabilities
threat/application/port search:
 search
Port(s) Protocol Service Details Source
5151 tcp trojans Backdoor.Optix.04.c [Symantec-2002-102319-1255-99] (2002.10.23) - remote access troan. Affects all current Windows versions, listens to port 5151 by default.

Backdoor.Win32.Optix.02.b / Weak Hardcoded Credentials - ptix listens on TCP port 5151 and is packed with ASPack (2.11d). Unpacking is trivial set breakpoints on POPAD, RET, run and dump using OllyDumpEx. The unpacked PE file reveals a very weak three character cleartext password "1q1" stored as "svrpwd=1q1" at offset: 0000da4c of the unpacked malware. Commands sent to the backdoor use a semicolon ";" as a marker E.g. password;1q1;
[MVID-2024-0690]

Tony Hawks Pro Skater 3 also uses port 5151 (TCP/UDP).

Email-Worm.Win32.Sidex / Unauthenticated Remote Command Execution - the malware listens on TCP port 5151 and creates a dir named "vortex" with several PE files. Third-party adversaries who can reach an infected host can run commands made available by the backdoor.
References: [MVID-2022-0564]

esri_sde - ESRI SDE Instance (IANA official)
SG
5151 udp applications The Logging Server (ftplogsrv.exe) 7.9.14.0 and earlier in IPSwitch WS_FTP 6.1 allows remote attackers to cause a denial of service (loss of responsiveness) via a large number of large packets to port 5151/udp, which causes the listening socket to terminate and prevents log commands from being recorded.
References: [CVE-2008-0608] [BID-27612] [SECUNIA-28761]

The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a crafted packet containing a long string to port 5151/udp.
References: [CVE-2007-3823] [SECUNIA-26040] [OSVDB-36218]
SG
5151 tcp trojan Optix Lite Trojans
5150-5151,6500 tcp,udp applications Tony Hawks Pro Skater 3 Portforward
5150-5151 tcp applications Tony Hawks Underground 2 Portforward
5151 tcp,udp threat Optix Bekkoame
5151 tcp esri-sde "ESRI SDE Instance IANA
5151 tcp esri_sde ESRI SDE Instance IANA
5151 udp esri-sde "ESRI SDE Remote Start IANA
5151 udp esri_sde ESRI SDE Remote Start IANA
5120-5300 udp applications Neverwinter Nights 2 Portforward
11 records found
News Glossary of Terms FAQs Polls Cool Links SpeedGuide Teams SG Premium Services SG Gear Store
Registry Tweaks Broadband Tools Downloads/Patches Broadband Hardware SG Ports Database Security Default Passwords User Stories
Broadband Routers Wireless Firewalls / VPNs Software Hardware User Reviews
Broadband Security Editorials General User Articles Quick Reference
Broadband Forums General Discussions
Advertising Awards Link to us Server Statistics Helping SG About