Skip to content
24/7 Emergency Response Line
en
Services
Solutions
Research
Company
ToolsTrust Center

Port Scanner

A database or remote desktop port left open to the internet is one of the most common starting points of ransomware attacks. This tool shows which doors of your server look open from outside, in safe mode.

Queries are not stored. The tools use public information only; client-side tools never send your data anywhere.

What this tool checks

  • Web: HTTP (80), HTTPS (443), 8080, 8443
  • Administration: SSH (22), RDP (3389)
  • Email: SMTP, Submission, IMAP, POP3
  • DNS (53) and FTP (21)
  • Databases: MySQL, PostgreSQL, Redis, MongoDB, Elasticsearch

How to use it

  1. 01

    Enter the server's domain name or public IP address.

  2. 02

    Confirm that you are authorized to test this system.

  3. 03

    Red rows are services that should not be reachable from the internet.

Technical details

Safe mode

One TCP connection attempt per port, closed immediately. No banners are read, no data is sent and no service versions are detected. Only a fixed list of ports is checked.

Open, closed, filtered

Open: the connection was accepted. Closed: the server refused it. Filtered: no response, which usually means a firewall silently drops the packet.

Servers behind a CDN or proxy

If the domain points to a proxy such as Cloudflare, results show the proxy's ports. To test the origin, enter its public IP address.

Frequently asked questions

Is port scanning legal?

Testing your own systems, or systems you have written permission for, is legal. Scanning other people's systems without permission can be a crime in many countries, which is why the tool asks you to confirm authorization.

SSH shows as open — is that a problem?

Not on its own. Allow key-based login only, disable password login and, where possible, restrict access to a VPN or specific IP addresses.

Why not scan all 65,535 ports?

The tool is deliberately limited so it can't be abused. Full port and service analysis is part of our external network penetration tests.

What does filtered mean?

No reply came back at all. That usually means a firewall blocks the port — which is what you want.