|
开始--运行--cmd
输入命令netstat -a
下面的是我的,开了一个下载软件和qq还有个浏览器,端口显得比较多(要是开了bt之类的软件会更多的)
Active Connections
Proto Local Address Foreign Address State
TCP sun-6626cb808be:epmap sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:microsoft-ds sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:30701 sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:30706 sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:30707 sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:1025 sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:3021 localhost:30706 ESTABLISHED
TCP sun-6626cb808be:30706 localhost:3021 ESTABLISHED
TCP sun-6626cb808be:netbios-ssn sun-6626cb808be:0 LISTENING
TCP sun-6626cb808be:1439 219.133.63.142:https CLOSE_WAIT
TCP sun-6626cb808be:3311 219.133.60.243:8000 CLOSE_WAIT
TCP sun-6626cb808be:3507 58.60.9.17:8000 TIME_WAIT
UDP sun-6626cb808be:microsoft-ds *:*
UDP sun-6626cb808be:isakmp *:*
UDP sun-6626cb808be:1039 *:*
UDP sun-6626cb808be:1085 *:*
UDP sun-6626cb808be:1086 *:*
UDP sun-6626cb808be:1087 *:*
UDP sun-6626cb808be:1088 *:*
UDP sun-6626cb808be:1089 *:*
UDP sun-6626cb808be:1090 *:*
UDP sun-6626cb808be:1092 *:*
UDP sun-6626cb808be:1452 *:*
UDP sun-6626cb808be:4001 *:*
UDP sun-6626cb808be:4002 *:*
UDP sun-6626cb808be:4500 *:*
UDP sun-6626cb808be:6000 *:*
UDP sun-6626cb808be:6001 *:*
UDP sun-6626cb808be:6002 *:*
UDP sun-6626cb808be:6003 *:*
UDP sun-6626cb808be:6004 *:*
UDP sun-6626cb808be:6005 *:*
UDP sun-6626cb808be:6006 *:*
UDP sun-6626cb808be:6007 *:*
UDP sun-6626cb808be:6008 *:*
UDP sun-6626cb808be:6009 *:*
UDP sun-6626cb808be:6010 *:*
UDP sun-6626cb808be:6011 *:*
UDP sun-6626cb808be:6012 *:*
UDP sun-6626cb808be:6014 *:*
UDP sun-6626cb808be:8102 *:*
UDP sun-6626cb808be:9000 *:*
UDP sun-6626cb808be:30701 *:*
UDP sun-6626cb808be:1051 *:*
UDP sun-6626cb808be:1900 *:*
UDP sun-6626cb808be:3018 *:*
UDP sun-6626cb808be:3054 *:*
UDP sun-6626cb808be:netbios-ns *:*
UDP sun-6626cb808be:netbios-dgm *:*
UDP sun-6626cb808be:1900 *:*
通过这些可能看不出来什么的,可以通过IceSword(冰刃群共享里面有)
查看是哪个程序在哪个端口上,木马的服务端都会在端口监听的,
17、常见端口的介绍
TCP
21 FTP
23 TELNET
25 TCP SMTP
53 TCP DNS
80 HTTP
135 epmap
138 [冲击波]
139 smb
1433 TCP SQL SERVER
3389 Terminal Services
4444[冲击波]
UDP
67[冲击波]
腾讯QQ会打开4000或者是8000端口或者8080,灰鸽子的默认端口也是8000,但大多数黑客会改掉, |
|