nerdexam
(ISC)2

SSCP · Question #1247

The SubSeven Trojan has been known to exploit which service ports?

The correct answer is B. 6711, 6712, 6776, 27374. The SubSeven Trojan, a backdoor program, utilizes specific non-standard ports to establish remote control over compromised systems.

Submitted by amina.ke· Apr 18, 2026Network and Communications Security

Question

The SubSeven Trojan has been known to exploit which service ports?

Options

  • A137, 139
  • B6711, 6712, 6776, 27374
  • C31337, 31338
  • D65000, 65001, 65002

How the community answered

(48 responses)
  • A
    2% (1)
  • B
    94% (45)
  • D
    4% (2)

Why each option

The SubSeven Trojan, a backdoor program, utilizes specific non-standard ports to establish remote control over compromised systems.

A137, 139

Ports 137 and 139 are commonly used by NetBIOS over TCP/IP (NetBT) for name resolution and session services, not for the SubSeven Trojan.

B6711, 6712, 6776, 27374Correct

SubSeven is a notorious backdoor Trojan that primarily uses ports 6711, 6712, 6776, and 27374 for various functionalities, including remote access, file transfer, and keylogging, allowing attackers to control the infected machine.

C31337, 31338

Ports 31337 and 31338 are famously associated with another well-known backdoor Trojan, Back Orifice, not SubSeven.

D65000, 65001, 65002

Ports 65000, 65001, 65002 are in the ephemeral/dynamic port range and are not typically associated as default or well-known ports for specific Trojans like SubSeven.

Concept tested: Trojan default service ports

Topics

#Malware#Trojan#Network Ports#Vulnerability Exploitation

Community Discussion

No community discussion yet for this question.

Full SSCP Practice