378
Summary
- // if you see it open
- No confirmed malware or trojan association (AuditMyPC). Given the complete absence of protocol documentation or software sightings, an open/responsive 378/udp should be treated as anomalous and investigated rather than assumed benign.
- // analyst note
- An open 378/udp cannot be attributed to any known application — treat it as an anomaly worth investigating rather than a recognizable service.
About port 378/udp.
Port 378/udp is registered with IANA under the service name dsETOS, assigned to NEC Corporation, but no protocol specification, RFC, or vendor documentation describes what the service actually does — so it should not be exposed to the public internet without first confirming what is listening.
The IANA Service Name and Transport Protocol Port Number Registry lists 378 as dual-registered on both TCP and UDP, with description "NEC Corporation," assignee [Tomoo_Fujita], and a blank Reference field, meaning no RFC or standards document was ever cited for the assignment.
Beyond the bare registry entry, secondary sources add almost nothing. Port-list aggregator sites (SpeedGuide, AuditMyPC, my-addr.com) simply echo the same IANA name and registrant with no description of the wire protocol, and searches for software or malware known to use 378/udp came back empty. No date of registration is recorded anywhere.
Given that combination — a registered name with no documented purpose and no observed software — an analyst encountering traffic on this port has little to go on beyond treating it as unusual and worth a closer look rather than dismissing it as a known-benign service.
- IANA assignment
dsETOS— "NEC Corporation"; reference (blank — no RFC cited in IANA registry); assignee[Tomoo_Fujita]; dual-registered 378/tcp + 378/udp [Confirmed] — IANA Service Name and Transport Protocol Port Number Registry- Range class
- well-known (0–1023)
- Prevalence
- nmap-services observed open-frequency 378/udp ≈ 0.000544 — very low (roughly 5 in 10,000 scanned hosts in the nmap-services sample) [Likely] — nmap-services dataset; not among commonly scanned/targeted UDP ports and no mass-scanning or honeypot data specific to this port [Likely] — AuditMyPC
- Related ports
- none identified
Primary use
Unknown — no protocol specification or vendor documentation describes dsETOS's function [Unknown]
Other/unofficial uses
none found in vendor docs, blogs, or forum threads [Unknown]
Security implications
no confirmed malware/trojan association; anomalous given the total absence of protocol documentation or software sightings
Typically seen on
unknown; presumably NEC Corporation internal or proprietary tooling given the registrant [Unknown]
- Analyst note
- An open 378/udp cannot be attributed to any known application — treat it as an anomaly worth investigating rather than a recognizable service.
Service assignments.
| Name | Protocol | Description | Open frequency |
|---|---|---|---|
| dsETOS | UDP | NEC Corporation | 0.05% |
| dsETOS | TCP | NEC Corporation | 0.00% |
Service assignments from the IANA Service Name and Transport Protocol Port Number Registry, with open-frequency data from nmap-services.