Thank you but I guess these tools show all IPs like "Tcpdump" and just show who want connect to my PC. Am I wrong?
Which ports are used for attacks on a Desktop Linux more?
I really don't understand what you're talking about, tcpdump is a general purpose network sniffer only meant for capturing traffic, not decoding protocols. If you're looking for a network protocol analyser there's wireshark.
Also why would you care about whose connecting to your pc? If you have no services like ssh running, they simply can't connect. And you can have iptables rule setup to drop all inbound packets.
Please don't spam this thread with stupid questions, try to do some research first before asking.