Port 9996 Details
known port assignments and vulnerabilities
threat/application/port search:
Port(s) |
Protocol |
Service |
Details |
Source |
9996 |
tcp |
trojans |
Football Manager Live (TCP/UDP), Ryan's App Trading Software (TCP/UDP), The Palace Virtual Reality Chat software (TCP/UDP)
W32.dabber.a trojan
W32.Sasser.Worm [Symantec-2004-050116-1831-99] - remote access trojan. Affects all current Windows versions, attemts to exploit a vulnerability addressed in Microsoft Security Bulletin [MS04-011]. There are some issues associated with using the [MS04-011] update discussed here: MS KB 835732.
Trojan runs a FTP server on port 5554 on infected systems and attempts to connect to random IPs on TCP port 445. If a connection is established, the worm sends shellcode to that computer which may cause it to run a remote shell on TCP port 9996. The worm then uses the shell to cause the computer to connect back to the FTP server on port 5554 and retrieve a copy of the worm. |
SG
|
9996 |
tcp,udp |
threat |
W32.Sasser |
Bekkoame
|
9996 |
tcp,udp |
palace-5 |
Palace-5 |
IANA
|
9990-9999 |
tcp |
applications |
DOT.TUNES |
Portforward
|
|
4 records found
Related ports: 445 5554 9920 9995 9997 9998 9999
|