the syntax is:

access-list <acl_name> deny tcp any any gt 1024

be very careful though. Many applications will legitimately use ports higher than 1024. My advice would be to monitor traffic...