Network port detail · UDP/TCP

455

Creativepartnr
Protocol(s)
UDP/TCP
Range
System (0-1023)

Summary

// typical exposure
Anomalous (rarely legitimately open) — The registered 'creativepartnr' service has no documented real-world deployment and the port's only recurring non-IANA association is a legacy trojan label, so an open 455/tcp should be investigated rather than trusted as routine traffic.
// analyst note
an open 455/tcp is anomalous — the registered CreativePartnr service has no known real-world deployment and the port carries a longstanding but unconfirmed trojan label in legacy databases; investigate rather than assume routine registered-service traffic.
// if you see it open
No CVE or active malware campaign is documented specifically for 455/tcp as of an August 2026 search. Legacy port-database aggregators (SANS ISC, ports.my-addr.com) both attach a trojan label ('FatalConnections'/'Fatal Connections') to this port, a longstanding database entry rather than confirmed current threat intelligence. SANS ISC shows only low-volume, scattered scanning activity as of that check, consistent with routine background-radiation scanning. The registered 'creativepartnr' service has no known real-world deployment, so an open 455/tcp is anomalous and worth investigating.
[ 01 ] — Context

About port 455/tcp.

Updated  ·  Confidence: Medium

Port 455/tcp carries a registered service named creativepartnr ("CreativePartnr"), but no independent documentation of what that software actually does has been found, and an open 455/tcp should be treated as anomalous rather than trusted if seen on a public-facing host.

IANA lists 455 on both TCP and UDP under the service name creativepartnr, assignee Jesus Ortiz, with no RFC or other reference document cited — the Reference field is blank. The dual TCP/UDP registration under one assignee is otherwise unremarkable and typical of a routine IANA name reservation.

Beyond the bare registry line, no vendor site, product page, or protocol specification for "CreativePartnr" could be located, and no community report of a mainstream application actively using 455/tcp for legitimate traffic was found. The registration appears effectively dormant or unused in practice.

The one recurring non-IANA association across legacy port-database aggregators (SANS Internet Storm Center, ports.my-addr.com) is a trojan label — "FatalConnections" / "Fatal Connections" — attached to 455/tcp. This is a longstanding database entry rather than a verified, currently active malware family; no CVE or current threat-intel report ties an ongoing campaign to this port as of an August 2026 search. SANS ISC's port-455 activity page shows only low-volume, scattered scanning as of that check, consistent with routine internet background-radiation scanning rather than a targeted campaign.

IANA assignment
creativepartnr — "CreativePartnr"; reference (blank — no RFC cited); assignee Jesus_Ortiz; dual-registered 455/tcp + 455/udp [Confirmed] — the IANA Service Name and Transport Protocol Port Number Registry creativepartnr 455/tcp
Range class
well-known (0–1023) [Confirmed]
Prevalence
nmap-services open-frequency 455/tcp = 0.000000 (sampled, not observed open); 455/udp ≈ 0.000758 [Confirmed] — this site's own tooling (built from nmap-services)
Related ports
none specifically documented for creativepartnr [Unknown]

Primary use

Unknown — the registered name "creativepartnr" has no located protocol specification or vendor documentation describing actual functionality

[Unknown] — https://www.iana.org/assignments/service-names-port-numbers/service-names-port-numbers.xhtml?page=9

Other/unofficial uses

none confirmed legitimate; a recurring trojan label ("FatalConnections"/"Fatal Connections") is attached to the port in legacy port-database aggregators

[Likely] — https://isc.sans.edu/data/port/455, http://ports.my-addr.com/tcp_port-udp_port-application-and-description.php?port=455

Security implications

no CVE or corroborated active malware campaign documented for 455/tcp as of an August 2026 search; recurring but unconfirmed "FatalConnections" trojan label in legacy port databases; SANS ISC shows only low-volume, scattered scanning consistent with background sweeps

[Likely] — https://isc.sans.edu/data/port/455

Typically seen on

Unknown — no legitimate deployment of "creativepartnr" was identified; an unexpected open 455/tcp is otherwise unexplained [Unknown]

Analyst note
an open 455/tcp is anomalous — the registered CreativePartnr service has no known real-world deployment and the port carries a longstanding but unconfirmed trojan label in legacy databases; investigate rather than assume routine registered-service traffic.
[ 02 ] — Context

About port 455/udp.

Updated  ·  Confidence: Low

Port 455/udp carries the IANA-registered service name creativepartnr, but IANA publishes no protocol specification, RFC, or vendor reference behind it — so no legitimate, documented traffic is expected here, and any live listener should be treated as unusual rather than routine infrastructure.

The IANA Service Name and Transport Protocol Port Number Registry lists creativepartnr (description "CreativePartnr") as dual-registered on 455/tcp and 455/udp, assignee and contact "Jesus_Ortiz." The Registration Date and Reference columns are blank, meaning IANA holds a bare name reservation with no accompanying specification or dated history.

The one recurring, named association found across secondary port-database and trojan-reference sites is historical: a Windows 95/98/ME-era remote-access trojan called "Fatal Connections" (aliases Fatcon, Backdoor.Fatcon), whose files pc-freak lists as Fatalconnections2.0.zip - Patch.exe (no distribution method stated), is described as fixed to port 455 with the port unable to be changed, and persisting via a Windows Run registry key. This is a community/vendor port-database attribution, not a live incident report, and reads as a legacy signature rather than confirmed current activity.

No CVE is recorded against this port in the NVD as of an August 2026 search. SANS ISC does publish a per-port scanning-tracker entry for 455, but its scan volume is trivial background — single-digit scans per top source IP per day — with no campaign-scale activity; broader scanning-tracker searches for 455 otherwise tend to surface the well-known 445/tcp SMB port instead. auditmypc.com's port-455 page returns only the site's generic Port Lookup tool boilerplate for this port, with no port-455-specific verdict — so no determination, positive or negative, is available from that source.

IANA assignment
creativepartnr — "CreativePartnr"; Reference column blank; Assignee/Contact "Jesus_Ortiz"; dual-registered 455/tcp + 455/udp [Confirmed] — the IANA Service Name and Transport Protocol Port Number Registry creativepartnr 455/udp
Range class
well-known (0–1023) [Confirmed] — the IANA Service Name and Transport Protocol Port Number Registry creativepartnr 455/udp
Prevalence
nmap-services open-frequency 455/udp ≈ 0.000758 (~0.076%); 455/tcp ≈ 0 (sampled, not observed open) [Confirmed] — this site's own tooling
Related ports
455/tcp (dual IANA registration, same blank-reference entry); 454/tcp and 454/udp (adjacent contentserver entry, also blank-reference) [Confirmed/Likely]

Primary use

Unknown — IANA carries only the bare service name and description "CreativePartnr" with no RFC or specification behind it

[Confirmed blank / Unknown protocol] — the IANA Service Name and Transport Protocol Port Number Registry creativepartnr 455/udp

Other/unofficial uses

single, dated (Windows 95/98/ME era) community/vendor attribution of a remote-access trojan "Fatal Connections" (aliases Fatcon, Backdoor.Fatcon) fixed to port 455 [Likely] — https://www.pc-freak.net/exploitworld/info/trojans_info/trojans.html, https://www.pc-freak.net/exploitworld/info/trojans_info/tr_data/y1145.html, https://isc.sans.edu/data/port/455

Security implications

no CVE recorded in the NVD as of an August 2026 search; the only concrete usage report is a historical Win9x/ME trojan hardcoded to this port, a community/vendor attribution rather than a live incident, independently corroborated by SANS ISC's port-455 data — though ISC's "[trojan] Fatal Connections" tag attaches to 455/TCP, while its 455/UDP listing carries only creativepartnr; SANS ISC's tracked-port entry for 455 itself shows only trivial background scan volume (single-digit scans per top source IP per day), with searches for 455 otherwise tending to surface the well-known 445/tcp SMB port

[Likely/Unknown] — pc-freak.net, isc.sans.edu/data/port/455, auditmypc.com/udp-port-455.asp

Typically seen on

hosts carrying an undocumented creativepartnr listener (rare); legacy Windows 95/98/ME systems compromised by the historical Fatal Connections trojan, per dated community sources [Unknown/Likely]

Analyst note
An open 455/udp has no published legitimate protocol behind it and carries a historical fixed-port backdoor association — treat as anomalous and investigate rather than assume benign traffic.
// registry data

Service assignments.

2 entries
// IANA / nmap services registry
NameProtocolDescriptionOpen frequency
creativepartnr UDP 0.08%
creativepartnr TCP 0.00%
IANA name
creativepartnr
Transport
TCP
Range
System (0-1023)

Service assignments from the IANA Service Name and Transport Protocol Port Number Registry, with open-frequency data from nmap-services.