TCP Port 777 – multiling-http
About TCP Port 777
Port 777 is registered with the Internet Assigned Numbers Authority (IANA) for multiling-http. The IANA description reads: ‘Multiling HTTP’. This port is referenced in 3 IDS rules and exhibits low malware activity in monitored traffic.
IDS Rule References
3 IDS / security rules reference TCP port 777. Presence in IDS rules does not mean traffic on this port is malicious. These are patterns security tools monitor.
Rule categories (top 1): trojan-activity (3).
Sample rule descriptions for TCP port 777:
- MALWARE-CNC Win.Trojan.Dropper inbound encrypted traffic
- MALWARE-CNC Win.Trojan.Dropper outbound encrypted traffic – potential exfiltration
- MALWARE-CNC Win.Trojan.Dropper outbound encrypted traffic
Malware Activity
Some malware indicators are observed on this port.
3 of 3 IDS rules for TCP port 777 involve malware activity.
Data Sources
This information is compiled from: IANA Service Name and Transport Protocol Port Number Registry and Snort Community Rules (GPLv2).
