SSCP · Question #1247
The SubSeven Trojan has been known to exploit which service ports?
The correct answer is B. 6711, 6712, 6776, 27374. The SubSeven Trojan, a backdoor program, utilizes specific non-standard ports to establish remote control over compromised systems.
Question
The SubSeven Trojan has been known to exploit which service ports?
Options
- A137, 139
- B6711, 6712, 6776, 27374
- C31337, 31338
- D65000, 65001, 65002
How the community answered
(48 responses)- A2% (1)
- B94% (45)
- D4% (2)
Why each option
The SubSeven Trojan, a backdoor program, utilizes specific non-standard ports to establish remote control over compromised systems.
Ports 137 and 139 are commonly used by NetBIOS over TCP/IP (NetBT) for name resolution and session services, not for the SubSeven Trojan.
SubSeven is a notorious backdoor Trojan that primarily uses ports 6711, 6712, 6776, and 27374 for various functionalities, including remote access, file transfer, and keylogging, allowing attackers to control the infected machine.
Ports 31337 and 31338 are famously associated with another well-known backdoor Trojan, Back Orifice, not SubSeven.
Ports 65000, 65001, 65002 are in the ephemeral/dynamic port range and are not typically associated as default or well-known ports for specific Trojans like SubSeven.
Concept tested: Trojan default service ports
Topics
Community Discussion
No community discussion yet for this question.