TCP Port 6129
Common Use
Used by the Dameware remote administration software.
Inbound Traffic
There is a vulnerability within older versions of Dameware which can allow
for unauthorized login and hence unauthorized use of Dameware for remote
administration of a computer. Dameware was installed by some viruses for
the purpose of remote administration of the infected system.
Outbound Traffic
Outbound scans if occurring in volume should be considered an indication of a
possible infection or compromise on the source computer and should be
investigated immediately.
Additional Information
DameWare
Mini Remote Control vulnerable to buffer overflow via specially crafted packets
Page last updated on
February 09, 2004
|