Security Incidents mailing list archives

Re: Updated Trojan Horse Port List (Default Ports)


From: Aj Effin ReznoR <aj () REZNOR COM>
Date: Sat, 2 Sep 2000 13:50:36 -0700

Ofir Arkin wrote:

I have completed updating the Default Trojan Horse Port list available at:

http://www.sys-security.com/html/papers/trojan_list.html


You list Back Orifice on 31338, and bo2k on 8787.

The original BO ran, default, on 31337 only.  It could be configured to run on
any unused port.

bo2k had *NO* default port.  This was done, among other things, to prevent
people from "infecting" themselves accidentally, as frequently happened with
BO.  bo2k will NOT run until it has been configured with a port.  Again, it has
no default.

-aj.


Current thread: