sorry, that answer is not acceptable, let me give you a short and partial list of ports as an example i require to have open and untouched by your company to perform technical/security duties.
9, 20-25,43,80, 81, 85,107,443,445,515,520,585,587 4520-4525,5900-5904....
not ONE of them is used as a "server" in the context of your opinion.
are you aware that web servers use the same bandwidth as visiting a web page. you want to fight bandwidth hogs, fight web ad providers, that is 85% of the waste on our network. (3 years worth of network logs for proof available)
are you also aware that torrent and other peer to peer services provide fast file transfer of legitimate data. i deal with OSS alot and DO use the torrent protocol. but i block this and all related items from our business because it uses up resources quickly that others must have access too (those logs are also available) i actively kick people off the network for even touching the ports.
this is residential service to business service. you will see this short list is an example of ports i require open and never touched, im sorry if you and ajit think that everyone just wants to order fidget spinners and post selfies on AOL on only the non encrypted port 80, but i require my access as head of technical and security to make sure people are safe.
Im well and capable of handling and logging all of my business' network traffic. Cox doesnt even provide a (stable) DNS server that can filter this traffic which would allow blocking hotlists to deny sites (including bandwidth clogging torrents) so i dont need things like TCP(rst) commands tainting my networks. some of your emails to our business were not even properly checked, the worm traffic is not possible. and the traffic you detected was the use of a port that may have been used for that worm 10 years ago, but was reused BY ME as an empty tunnel to conduct legitimate security work.
as it stands, service at my business was down again today, and is currently unusable. this means fire alarm systems over the joke of a VoIP system causes false alarms to our fire monitoring service. without untouched access i can not ssh or VNC into my monitoring hardware, and i cant view my business security cameras. this makes my job impossible.
TL;DR limiting access to your choice of ports, is not enough to provide security of my guests. apparently i am more up to date on worm ports used, and have stomped a few on port 80. try again. worms DO NOt reside on 1 given port, thats not how TCP works
try this little test when you get home, block ALL ports on your home router other than port 80, then please, update your post with your findings.
oh, PS, your forum software is not https (secured and encrypted), that is not giving me much comfort in CoxComms ability to protect its users correctly since it requires a login and passes more cookies thru its network for a single page than a oven tray can cook IRL. 52?, really?
now, as for ports actually being blocked, as it stands ports are being slowed today, but not blocked, and this is causing massive headaches for remote work.