标题:
3分钟让你电脑速度提高3倍!!百毒不侵!!
[打印本页]
作者:
admin
时间:
2008-3-22 11:23
标题:
3分钟让你电脑速度提高3倍!!百毒不侵!!
第一招:清除系统垃
圾
2 d, g- I% v, Q' i! R
轻松流畅上网你是否注意到你的电脑系统磁盘的可用空间正在一天天在减少呢?是不是像老去的猴王一样动作一天比一天迟缓呢?
. _# ^. D4 F" h5 D2 f* {/ J# O
没错!在Windows在安装和使用过程中都会产生相当多的垃圾文件,包括临时文件(如:*.tmp、*._mp)日志文件(*.log)、临时帮助文件(*.gid)、磁盘检查文件(*.chk
)、临时备份文件(如:*.old、*.bak)以及其他临时文件。特别
5 S; b5 {% X) A* e) X/ c3 f
是如果一段时间不清理IE的临时文件夹“Temporary Internet Files”,其中的缓存文件有时会占用上百MB的磁盘空间。这些LJ文件不仅仅浪费了宝贵的磁盘空间,严重时还会使系统运行慢如蜗牛。这点相信你肯定忍受不了吧!所以应及时清理系统的LJ文件的淤塞,保持系统的“苗条”身材,轻松流畅上网!朋友来吧,现在就让我们一起来快速清除系统垃圾吧!!
" q+ U1 C% W$ Q% g
下面是步骤很简单就两步!
4 e2 Y( F+ T9 U% x
在桌面上点鼠标右键,选择新建一个“记事本”,把下面的字复制进去,点“另存为”,把文件名定为“清除系统LJ.bat”就完成,记住后缀名一定要是.bat,好ok了!你的垃圾清除器就这样制作成功了!双击它就能很快地清理垃圾文件,大约一分钟不到。
+ N) z& b! l9 w, \2 P( z1 l+ R/ l
PS. 要复制进去的字是 见下 (红色部分)
; i& o9 v) f0 d2 Z6 h
@echo off
* w4 ~4 B c' F
echo 正在清除系统垃圾文件,请稍等......
- i9 O5 y5 R6 M- d
del /f /s /q %systemdrive%\*.tmp
$ U3 |, @4 q/ r6 A; a
del /f /s /q %systemdrive%\*._mp
) {0 g& j6 a& w
del /f /s /q %systemdrive%\*.log
" d5 [* s. Y2 V( X
del /f /s /q %systemdrive%\*.gid
# B! S* o- e" E8 N4 R0 L2 R% p$ z
del /f /s /q %systemdrive%\*.chk
( Z& d" c; B; r4 J5 ^7 p& u- W
del /f /s /q %systemdrive%\*.old
2 I6 Y8 K9 y, T3 s3 o
del /f /s /q %systemdrive%\recycled\*.*
! R0 o& _; R" K4 R Z! i
del /f /s /q %windir%\*.bak
! k0 b" P' ?* T! X) C# E
del /f /s /q %windir%\prefetch\*.*
9 M2 o G7 y0 `. t: K
rd /s /q %windir%\temp & md %windir%\temp
( ]& i3 [; \* H5 U0 j
del /f /q %userprofile%\cookies\*.*
$ X2 V3 a9 F- [! R2 X
del /f /q %userprofile%\recent\*.*
, ?3 k" }) B! G6 C
del /f /s /q "%userprofile%\Local Settings\Temporary Internet Files\*.*"
/ \1 A1 C# p8 h6 q9 f! S
del /f /s /q "%userprofile%\Local Settings\Temp\*.*"
/ a; a. b6 i1 H; m# a
del /f /s /q "%userprofile%\recent\*.*"
m% J, B0 z) Z- M1 B$ v' c* r" y
echo 清除系统LJ完成!
0 }( ?5 k+ W+ c" [$ x& o. {$ [
echo. & pause
9 y, y- U( E# j' e+ E7 Q" t
以后只要双击运行该文件,当屏幕提示“清除系统LJ完成!就还你一个“苗条”的系统了!!到时候再看看你
的电脑,
是不是急速如飞呢?可别忘了回帖喔!
- ^8 T7 R1 R9 _( l5 m- p! F
注:LJ就是垃圾的意思!这招比那些所谓的优化大师好用!不会破坏系统文件。
- {( I0 X8 a# G* |
第二招:清除所有多余的启动项目
' K6 g6 ?% P9 I5 w' U
此命令将自动清理所有非必要的启动项目,仅保留输入法(ctfmon)。
! l) B( f; |. F+ x
目的是减少不必要的资源占用,使系统运行顺畅。
9 M; ^; g3 A4 H
方法如上,复制内容见下(红色部分)
' q; K4 Q4 g5 a% E! ~
@ ECHO OFF
" X- d1 M9 m8 H$ p: T; a
color 1f
S$ d! M+ M% Q9 z' i
title 清除所有多余的启动项目
8 n2 E" X% s& h) L4 r, g1 s# V
PAUSE
( p: y% U1 C: A6 c4 r3 ^
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /va /f
1 p; t( [5 m& @; Y
reg delete HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /va /f
( o$ m8 F4 h, s! |( W% ?0 H0 y
reg add HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v ctfmon.exe /d C:\WINDOWS\system32\ctfmon.exe
2 ^8 D, R: n/ \, j+ j
reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /f
) R# U0 a' w3 Q/ w) l
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IMJPMIG8.1"
. A' I {5 V8 ?3 I# c* x. M6 Z
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IMJPMIG8.1" /v command /d ""C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32"
! @1 U6 X" P P$ I% \
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IMJPMIG8.1" /v hkey /d HKLM
5 u+ ~4 h- e S0 e# Y; o' S
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IMJPMIG8.1" /v inimapping /d 0
% u( z1 g" x- m1 b
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IMJPMIG8.1" /v item /d IMJPMIG
' Q0 k0 v/ j) g9 ~
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IMJPMIG8.1" /v key /d SOFTWARE\Microsoft\Windows\CurrentVersion\Run
- u" e z. p: ]# W$ k% P
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002A"
6 G* i/ s5 i4 B9 a0 j8 C
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002A" /v command /d "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName"
9 T" T) b: }. ]: }8 h" i
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002A" /v hkey /d HKLM
2 a) d0 y+ W; Y3 D7 f+ R* U7 F
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002A" /v inimapping /d 0
q& Y3 Y/ U( w' J* N; s" ~* V
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002A" /v item /d TINTSETP
0 `- l7 e2 F5 H
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002A" /v key /d SOFTWARE\Microsoft\Windows\CurrentVersion\Run
2 x2 s1 A! N( T. t- q" ?
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002ASync"
1 @4 b$ D* ~- i5 G. T' ]" v
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002ASync" /v command /d ""C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32"
2 A3 ?5 C6 Y' z, L
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002ASync" /v hkey /d HKLM
4 k4 T" E8 s' v% b9 j3 a- O0 N
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002ASync" /v inimapping /d 0
B* v+ X4 x' s' U' |# ]3 a
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002ASync" /v item /d TINTSETP
3 }: {+ J3 Y( }* k1 ^$ ~
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PHIME2002ASync" /v key /d SOFTWARE\Microsoft\Windows\CurrentVersion\Run
. d s( d. z, I7 H1 [
del "C:\Documents and Settings\All Users\「开始」菜单\程序\启动\*.*" /q /f
" \: r& x7 y+ Z4 A3 n! n
del "C:\Documents and Settings\Default User\「开始」菜单\程序\启动\*.*" /q /f
r' c: O9 S2 p8 k: A
del "%userprofile%\「开始」菜单\程序\启动\*.*" /q /f
6 ?- _" e$ N( L* p$ k# @( G
start C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe
; X# L; i+ U+ |) l# ~4 N4 Q
第三招:清除所有多余的桌面右键菜单
% p5 U- W* p) ~6 e& S
很多显卡在装了驱动之后,桌面右键会多出一项或多项菜单,这些功能并不实用,
+ c+ W Z5 I4 L8 ?8 C/ z
还会拖慢右键的弹出速度,我们最好清除它。
8 ~2 J" t& Y1 u/ F/ Y) T& a& e$ D
方法如上,复制内容见下(红色部分)
7 h9 U$ j- W2 t6 f4 J" C5 Q% T. {
@ ECHO OFF
2 B2 q0 n- C! C
title 清除所有多余的桌面右键菜单
f" J% S1 s; w8 x
color 1a
5 J5 q% ~, i! C9 c- m' [" W: a i
PAUSE
2 Z* }* z: `6 s; O
regsvr32 /u /s igfxpph.dll
4 J+ d3 O% ~+ G8 e! }4 n
reg delete HKEY_CLASSES_ROOT\Directory\Background\shellex\ContextMenuHandlers /f
( J4 W D5 q2 _5 x' i
reg add HKEY_CLASSES_ROOT\Directory\Background\shellex\ContextMenuHandlers\new /ve /d {D969A300-E7FF-11d0-A93B-00A0C90F2719}
5 ]9 X8 z9 S8 b* t6 k! l
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v HotKeysCmds /f
9 X" _ y/ i( I
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v IgfxTray /f
. u3 i% V* j% Y- ^: A
第四招:C盘转换为NTFS格式
) Z: ?. l5 g# N0 b$ ]. r
NTFS格式是WinXP推荐使用的格式。转换为NTFS格式能提高硬盘存储的
$ H0 }$ o" p. G+ s+ [% _
效率,并可设置访问权限以保护文件。但NTFS格式的分区在DOS/WIN9X
q% x6 u3 I( r a$ M) [
下均不能被识别,可能会给初级用户造成不便。如无必要请不要转换。
* m9 b7 Q* G4 {4 [% | M
方法如上,复制内容见下(红色部分)
2 O' Z; f9 q( M' K# p) \+ m8 L
@ ECHO OFF
r/ o2 X2 O7 ^7 V$ B
color 1b
' p9 S. M1 }4 x$ X5 J) \! B
title C盘转换为NTFS格式
7 H/ h8 B! l/ s( H3 u3 ]
convert c:/fs:ntfs
. D. P8 U) b+ N6 e, w6 K
第五招:给每个盘添加卷标
C" @2 x, B- C k/ b; }
此命令将为本机每个盘都添加上卷标,一般是用在新机上面。
5 u3 w' M: h' F; T; q V
以引导初学者更合理地支配他们的硬盘空间。
: B) b( `$ z# z- |' h, }; G! ?+ H
方法如上,复制内容见下(红色部分)
# ?6 b% s0 `' X" n2 B$ a$ F b2 o
@ ECHO OFF
4 k2 I8 B5 U( e" E7 \6 C% E* J
title 给每个盘添加卷标
8 d! u4 F$ P3 B1 I! S
color 1B
9 N4 _2 q6 t- U! @
PAUSE
* U2 C% y$ D; L* @7 e
c:
' Z; N' n' N+ q) N5 k. Q: s
label c:WINXP
4 c4 E' u/ | ?' [& F
label d:软件
0 w' f, a R$ j& |/ w
label e:影视
. g5 R6 V, j# ~, V% O1 V: B
label f:游戏
( I$ x$ r) ^' q$ e, @4 w# ^6 v
label g:资料
! ^6 t* ]* c v, R* F+ x% Y0 J
label h:备份
" s+ n: n# Z* b
d:
7 w6 ~/ | ^: q0 ?: D7 e
md 本机驱动程序
) }/ X5 }! `( p, Q2 D$ |
md 本机驱动程序\0.DirectX
6 p7 {( I! ^, a' X( K
md 本机驱动程序\1.主板芯片组
3 Y/ T9 `# y% T. p5 V* L4 i9 ?
md 本机驱动程序\2.显卡
& i" h ? k, B* h5 n2 g
md 本机驱动程序\3.声卡
9 x x5 V' C2 I( \
md 本机驱动程序\4.网卡
! w% r! h+ K! b5 B# H' R# m
md 本机驱动程序\5.摄像头
* \! D7 o/ s1 U6 P
第六招:关闭有害端口
. ]' ]$ Y/ N7 S. W/ O4 b: Q; F
提高安全
性,让你上网更加无后顾之忧!!!
1 T9 o4 D! C `7 b; `' y3 p! X
@echo off
( [' R! R# {5 o p* C# Y- L$ }' j, F. Q
gpupdate >nul
/ v+ ?4 U7 X0 t/ R% @
rem For Client only
% W: y% _; n3 R: L, Y0 S/ ^
ipseccmd -w REG -p "HFUT_SECU" -o -x >nul
/ W- ?% x% J4 x
ipseccmd -w REG -p "HFUT_SECU" -x >nul
( y$ {% I8 \2 q: W1 t: I% v
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/80" -f *+0:80:TCP -n BLOCK -x >nul
# z7 ]2 K) t4 v# x* y
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/1434" -f *+0:1434:UDP -n BLOCK -x >nul
% h0 [0 e$ K# s# B! w7 ?& W
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/137" -f *+0:137:UDP -n BLOCK -x >nul
' u7 D0 L/ N% U9 H
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/138" -f *+0:138:UDP -n BLOCK -x >nul
, t$ D, W& h# ^+ [, V: i$ \
rem echo 禁止网上邻居的文件传输(去掉上述两行的 REM 即可生效!)
/ X* X7 \8 d* m p7 W. L+ J
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/139" -f *+0:139:TCP -n BLOCK -x >nul
3 t( i; x# H. ~+ a: [- }
rem echo 禁止NetBIOS/SMB服务和文件和打印机共享和SAMBA(去掉REM生效)
Q0 @3 u* k) T: {' P
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/135" -f *+0:135:TCP -n BLOCK -x >nul
8 e. ~6 w2 O2 G
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/135" -f *+0:135:UDP -n BLOCK -x >nul
6 O6 o- Z, R/ I7 j5 T# J
echo 禁止Location Service服务和防止 Dos 攻击…………OK!
/ `% I" J" m4 V6 V0 s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/445" -f *+0:445:TCP -n BLOCK -x >nul
1 C' p( d- z- ?+ \( O- m) j8 J2 n
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/445" -f *+0:445:UDP -n BLOCK -x >nul
+ a) [& t2 Y0 C9 s. \, H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1025" -f *+0:1025:TCP -n BLOCK -x >nul
, [9 r4 n, o3 \$ Q& C
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/139" -f *+0:139:UDP -n BLOCK -x >nul
" A& b F3 k2 R; f( M) e/ }5 y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1068" -f *+0:1068:TCP -n BLOCK -x >nul
& L) V" P1 `2 i: h+ d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5554" -f *+0:5554:TCP -n BLOCK -x >nul
2 E0 \- X1 i) J9 j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9995" -f *+0:9995:TCP -n BLOCK -x >nul
- K6 D) y% B) y5 x& o7 T6 |$ f2 m
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9996" -f *+0:9996:TCP -n BLOCK -x >nul
0 Z t) A7 N( R8 H& m8 i% R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6129" -f *+0:6129:TCP -n BLOCK -x >nul
) G8 g* G$ V) T9 C
ipseccmd -w REG -p "HFUT_SECU" -r "Block ICMP/255" -f *+0:255:ICMP -n BLOCK -x >nul
- S2 H5 g2 h' Y3 |9 e. e
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/43958" -f *+0:43958:TCP -n BLOCK -x >nul
! {/ F+ \6 d4 s- u7 W. n! Z
echo 关闭流行危险端口…………OK!
! l R w! W a3 T) F
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20034" -f *+0:20034:TCP -n BLOCK -x >nul
6 A1 U& {, H( X8 S0 g
echo 关闭木马NetBus Pro开放的端口…………OK!
# s4 j( O' e- S3 d+ o! L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1092" -f *+0:1092:TCP -n BLOCK -x >nul
, ~0 U+ |; g/ H) j# ]2 U7 z
echo 关闭蠕虫LoveGate开放的端口…………OK!
) \5 `) ~1 H0 b! w0 H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3996" -f *+0:3996:TCP -n BLOCK -x >nul
9 N" B( C5 e% a# m
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4060" -f *+0:4060:TCP -n BLOCK -x >nul
0 o7 C- l! C, q6 x' V
echo 关闭木马RemoteAnything开放的端口…………OK!
0 _4 c3 E! L1 X, s$ c; b0 C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4590" -f *+0:4590:TCP -n BLOCK -x >nul
8 z; d5 @" Z0 Z7 l% Q( P+ p# a$ ?+ L
echo 关闭木马ICQTrojan开放的端口…………OK!
( N$ R8 A( _. b7 S
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1080" -f *+0:1080:TCP -n BLOCK -x >nul
7 f* |0 p3 k- w! `- a* ]
echo 禁止代理服务器扫描…………OK!
. d# g, [: N+ p5 F! b
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/113" -f *+0:113:TCP -n BLOCK -x >nul
& }2 e3 Q1 q! y7 p
echo 禁止Authentication Service服务…………OK!
4 N8 A; a7 d1 ]' g
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/79" -f *+0:79:TCP -n BLOCK -x >nul
* ^$ S- {: z8 {# I/ O
echo 禁止Finger扫描…………OK!
5 ]* r, A/ W& N$ q
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/53" -f *+0:53:UDP -n BLOCK -x >nul
& o2 Q' r- p/ C# r! p
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/53" -f *+0:53:TCP -n BLOCK -x >nul
& C/ g+ z3 j# [, H. x5 S
echo 禁止区域传递(TCP),欺骗DNS(UDP)或隐藏其他的通信…………OK!
+ I4 E" a% Y; ~; m( i' {
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/707" -f *+0:707:TCP -n BLOCK -x >nul
& J7 B# O& D9 T' Z" l" Y7 S0 f
echo 关闭nachi蠕虫病毒监听端口…………OK!
* I9 f' {5 d/ ~5 d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/808" -f *+0:808:TCP -n BLOCK -x >nul
% r- _6 X) l/ G; P( W* j* D2 l
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23" -f *+0:23:TCP -n BLOCK -x >nul
7 i& [% k* G4 F. \
echo 关闭Telnet 和木马Tiny Telnet Server监听端口…………OK!
2 }6 x$ V4 [* {, Z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/520" -f *+0:520:TCP -n BLOCK -x >nul
8 F; t0 {% b6 j% G
echo 关闭Rip 端口…………OK!
. f6 S$ F8 d: Y M5 E
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1999" -f *+0:1999:TCP -n BLOCK -x >nul
/ A9 Y! w; e2 m3 |" x
echo 关闭木马程序BackDoor的默认服务端口…………OK!
) p u% d8 W+ J3 V$ d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2001" -f *+0:2001:TCP -n BLOCK -x >nul
% |! p2 C2 F% E" X/ w% S) S
echo 关闭马程序黑洞2001的默认服务端口…………OK!
; o; S$ X9 s/ Y6 |0 r
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
. n) \ t/ t, t; E# r+ U$ V
echo 关闭木马程序Ripper的默认服务端口…………OK!
& }- f L3 e2 V$ s* M
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2583" -f *+0:2583:TCP -n BLOCK -x >nul
; H1 ^( I& F9 V, o+ R6 D0 Z1 O
echo 关闭木马程序Wincrash v2的默认服务端口…………OK!
1 n0 w0 b$ A3 R, i& Y* W
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3389" -f *+0:3389:TCP -n BLOCK -x >nul
; E+ m6 `6 T. {8 ?; O, q0 e0 {
echo 关闭Windows 的远程管理终端(远程桌面)监听端口…………OK!
! k1 E' K/ {7 G; F" T
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4444" -f *+0:4444:TCP -n BLOCK -x >nul
* i( B# P/ ?( ^. @+ o/ }- \
echo 关闭msblast冲击波蠕虫监听端口…………OK!
# U0 V; a K$ K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4899" -f *+0:4899:TCP -n BLOCK -x >nul
- Q( D9 l) V+ \* v
echo 关闭远程控制软件(remote administrator)服务端口…………OK!
" l8 l2 z' X% b
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5800" -f *+0:5800:TCP -n BLOCK -x >nul
/ G# g( ]0 D5 ]# o; r
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5900" -f *+0:5900:TCP -n BLOCK -x >nul
, [: t; A0 L# q/ B6 u" l8 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8888" -f *+0:8888:TCP -n BLOCK -x >nul
1 c" V& x/ c% E I8 w a/ P
echo 关闭远程控制软件VNC的两个默认服务端口…………OK!
: E, K( \, s3 C! H' f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6129" -f *+0:6129:TCP -n BLOCK -x >nul
# c, q+ J) m6 e% f
echo 关闭Dameware服务端默认监听端口(可变!)…………OK!
! U7 `# q0 U0 y8 I5 u- L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6267" -f *+0:6267:TCP -n BLOCK -x >nul
$ z3 A0 G4 I! L U. `4 m1 H) ]8 v
echo 关闭木马广外女生的默认服务端口…………OK!
2 j* s+ }2 o% s$ ^% R9 A
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/660" -f *+0:660:TCP -n BLOCK -x >nul
) y! U$ z% K/ H; m" q6 z
echo 关闭木马DeepThroat v1.0 - 3.1默认服务端口…………OK!
f3 E( Z% ?; o+ M
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6671" -f *+0:6671:TCP -n BLOCK -x >nul
3 z. ?! ]0 X7 L8 t# M5 ?1 I7 Q
echo 关闭木马Indoctrination默认服务端口…………OK!
6 K6 [7 w- V w) u7 i
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6939" -f *+0:6939:TCP -n BLOCK -x >nul
( E( A8 z# t; m! D |. a! ]5 a& B$ Y
echo 关闭木马PRIORITY默认服务端口…………OK!
* T! }, ~& J' e1 _( }/ l4 v; y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
) r5 b1 f6 Q0 N3 r9 q6 b
echo 关闭木马网络精灵默认服务端口…………OK!
1 @" B( N- ~- e, u5 O# @: C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7511" -f *+0:7511:TCP -n BLOCK -x >nul
9 F* m5 d0 e1 \/ R
echo 关闭木马聪明基因的默认连接端口…………OK!
9 z2 h2 ]4 e. g" Z& ~ Z, G
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7626" -f *+0:7626:TCP -n BLOCK -x >nul
7 P: X4 f* R( ]0 r% U
echo 关闭木马冰河默认端口(注意可变!)…………OK!
, w. a |2 q( g4 U/ K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8011" -f *+0:8011:TCP -n BLOCK -x >nul
7 v. R; j3 Z% H5 I, C0 b
echo 关闭木马WAY2.4默认服务端口…………OK!
0 y% R0 j' ?( P. g( b! _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9989" -f *+0:9989:TCP -n BLOCK -x >nul
w% Z: @; D3 A/ a) L+ [
echo 关闭木马InIkiller默认服务端口…………OK!
! i- i% K* m) s' M/ F: S9 R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/19191" -f *+0:19191:TCP -n BLOCK -x >nul
1 j5 U! S5 ~5 ~
echo 关闭木马兰色火焰默认开放的telnet端口…………OK!
) ? r, R' o. q1 d2 h$ G
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1029" -f *+0:1029:TCP -n BLOCK -x >nul
+ o+ _4 Y' D* u. u* d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20168" -f *+0:20168:TCP -n BLOCK -x >nul
: z3 w: k7 m4 G7 u5 V
echo 关闭lovegate 蠕虫所开放的两个后门端口…………OK!
- V/ ?2 U# B! l f" U
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23444" -f *+0:23444:TCP -n BLOCK -x >nul
" Q- l" m8 C# f& I. h1 {; E( k
echo 关闭木马网络公牛默认服务端口…………OK!
' q8 ]; ]% _5 ^8 p {, A4 O' ~7 W- u
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/27374" -f *+0:27374:TCP -n BLOCK -x >nul
% V# N7 y1 Y5 I' l
echo 关闭木马SUB7默认服务端口…………OK!
% ?) W& w( t! ^- @5 ^- O4 O8 D s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30100" -f *+0:30100:TCP -n BLOCK -x >nul
`$ C" z3 H+ A8 j
echo 关闭木马NetSphere默认的服务端口…………OK!
9 D- C7 ^, i; E2 M6 c4 D2 ^8 Q9 t
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31337" -f *+0:31337:TCP -n BLOCK -x >nul
U: y" b* m5 [# k9 {/ y; w0 o# D; d, o
echo 关闭木马BO2000默认服务端口…………OK!
' G8 k( H$ Q4 j+ R9 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/45576" -f *+0:45576:TCP -n BLOCK -x >nul
) P& J) N2 u* C8 q W
echo 关闭代理软件的控制端口…………OK!
: b' ~. @+ t" _- z4 G; a7 u
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50766" -f *+0:50766:TCP -n BLOCK -x >nul
! E& E9 m7 ^) i( Q" ~6 ~8 C
echo 关闭木马Schwindler默认服务端口…………OK!
3 ]% n. x2 L' E' @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/61466" -f *+0:61466:TCP -n BLOCK -x >nul
, i4 D c$ ^& U( J- y6 v
echo 关闭木马Telecommando默认服务端口…………OK!
: k, {) s6 U' U8 _: f3 s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31338" -f *+0:31338:TCP -n BLOCK -x >nul
% i* h! t) {0 z6 P
echo 关闭木马Back Orifice默认服务端口…………OK!
7 O! Y! j n: v; n& P( a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8102" -f *+0:8102:TCP -n BLOCK -x >nul
, f$ i5 |+ R9 q h
echo 关闭木马网络神偷默认服务端口…………OK!
# K' f, g: d2 h3 a) i: \; _* ?7 U
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2000" -f *+0:2000:TCP -n BLOCK -x >nul
/ w3 L9 j8 I9 p( }) q* M9 u
echo 关闭木马黑洞2000默认服务端口…………OK!
( j8 O7 c; D( M2 P- ^ T9 T6 h8 f, }9 a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31339" -f *+0:31339:TCP -n BLOCK -x >nul
& j# H. p* _' p- D1 m l/ ]
echo 关闭木马NetSpy DK默认服务端口…………OK!
8 r y( d; n# C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2001" -f *+0:2001:TCP -n BLOCK -x >nul
4 J; y% O& x5 H ? N' Y
echo 关闭木马黑洞2001默认服务端口…………OK!
" \) h7 l7 H4 W' f3 b+ F
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31666" -f *+0:31666:TCP -n BLOCK -x >nul
" k3 u3 \& h* v1 c+ E5 g/ J4 b
echo 关闭木马BOWhack默认服务端口…………OK!
/ V" M- y- z3 B
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/34324" -f *+0:34324:TCP -n BLOCK -x >nul
7 y1 n& U0 ^& R; G" V( f# @) j! K) j* r
echo 关闭木马BigGluck默认服务端口…………OK!
3 O/ v3 ~3 [9 X$ c( _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
" z. Z1 `% ~7 U2 }. I; O
echo 关闭木马网络精灵3.0,netspy3.0默认服务端口…………OK!
& H. b' M/ h, D0 j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40412" -f *+0:40412:TCP -n BLOCK -x >nul
+ U; \- g6 a+ q7 P9 n
echo 关闭木马The Spy默认服务端口…………OK!
" q* S& s5 u( ?
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40421" -f *+0:40421:TCP -n BLOCK -x >nul
) }6 V% ~" ~/ M4 h r
echo 关闭木马Masters Paradise默认服务端口…………OK!
2 g; w$ G z, s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8011" -f *+0:8011:TCP -n BLOCK -x >nul
6 d9 {$ k7 E- F' s: v
echo 关闭木马wry,赖小子,火凤凰默认服务端口…………OK!
1 E4 j! Q5 _4 h; ]" a5 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40422" -f *+0:40422:TCP -n BLOCK -x >nul
- Z& f d" Z l
echo 关闭木马Masters Paradise 1.x默认服务端口…………OK!
$ F B8 X* { F9 a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23444" -f *+0:23444:TCP -n BLOCK -x >nul
8 P1 ]: M% k1 u, k1 Z( C
echo 关闭木马网络公牛,netbull默认服务端口…………OK!
5 E- i% o( \6 l2 B- t7 l2 }6 L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40423" -f *+0:40423:TCP -n BLOCK -x >nul
6 U# M/ I5 F0 V. ?
echo 关闭木马Masters Paradise 2.x默认服务端口…………OK!
, r: S+ F; }$ S' G
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23445" -f *+0:23445:TCP -n BLOCK -x >nul
]( r" a# z4 H( S' z+ y4 l* Z
echo 关闭木马网络公牛,netbull默认服务端口…………OK!
) P8 r+ I% ^9 ]& Z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40426" -f *+0:40426:TCP -n BLOCK -x >nul
& }* G$ z8 B( t" U4 c. M. Z* O
echo 关闭木马Masters Paradise 3.x默认服务端口…………OK!
9 ^. H- R3 J" T' ?2 C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50505" -f *+0:50505:TCP -n BLOCK -x >nul
8 {* {1 t) J( x5 D) p( A; P
echo 关闭木马Sockets de Troie默认服务端口…………OK!
! R7 }# o7 p- D
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/27374" -f *+0:27374:TCP -n BLOCK -x >nul
7 r1 v2 P! s9 ?
echo 关闭木马Sub Seven 2.0+,77,东方魔眼默认服务端口…………OK!
2 y, \% J' j; ]5 N+ Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50766" -f *+0:50766:TCP -n BLOCK -x >nul
# g* F9 j7 V+ F/ w0 ^" Z' @
echo 关闭木马Fore默认服务端口…………OK!
: ^8 a- |/ E; Q" L- T" q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/53001" -f *+0:53001:TCP -n BLOCK -x >nul
+ Z; B% {$ X h
echo 关闭木马Remote Windows Shutdown默认服务端口…………OK!
# k% h; K/ K: o" Y% N4 F4 W7 ]+ w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/61466" -f *+0:61466:TCP -n BLOCK -x >nul
9 b! m" Q U! {. c. i
echo 关闭木马Telecommando默认服务端口…………OK!
" l8 u1 A; p6 H7 v1 Z8 i& f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/121" -f *+0:121:TCP -n BLOCK -x >nul
; |2 g1 j; c$ K- i8 V
echo 关闭木马BO jammerkillahV默认服务端口…………OK!
5 Z9 P+ \3 P( C B
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/666" -f *+0:666:TCP -n BLOCK -x >nul
; [9 D8 P( E8 o- {
echo 关闭木马Satanz Backdoor默认服务端口…………OK!
" o6 p* |2 K+ u' [) U9 N, c
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/65000" -f *+0:65000:TCP -n BLOCK -x >nul
5 T8 T% L$ n- A7 ~ c6 v9 O
echo 关闭木马Devil默认服务端口…………OK!
1 E0 K. o( S- {
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
2 O2 P: `2 h( c! H- c8 s0 r3 W8 C8 ~1 `
echo 关闭木马Silencer默认服务端口…………OK!
0 s9 K" x6 T% D2 f9 e
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6400" -f *+0:6400:TCP -n BLOCK -x >nul
8 o) J5 M" Z5 P. f% w1 H/ Y
echo 关闭木马The tHing默认服务端口…………OK!
* T* v) p& N% {; ~* b
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1600" -f *+0:1600:TCP -n BLOCK -x >nul
; D8 K4 U' K% V- S/ {
echo 关闭木马Shivka-Burka默认服务端口…………OK!
! U& C/ ]* ?% [) D8 V
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/12346" -f *+0:12346:TCP -n BLOCK -x >nul
' x% j: e* q( V( Z
echo 关闭木马NetBus 1.x默认服务端口…………OK!
5 w c2 O2 I- r: j5 P) t3 T' K. m
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1807" -f *+0:1807:TCP -n BLOCK -x >nul
; Y2 @; m R* [! e6 t1 W, r4 F/ N
echo 关闭木马SpySender默认服务端口…………OK!
5 G2 L8 n, _1 `9 f" D3 C; `
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20034" -f *+0:20034:TCP -n BLOCK -x >nul
& H; W( G9 P3 |' l& U
echo 关闭木马NetBus Pro默认服务端口…………OK!
i! J( M# V" f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1981" -f *+0:1981:TCP -n BLOCK -x >nul
; N) y& [) Y6 U2 ?
echo 关闭木马Shockrave默认服务端口…………OK!
; _9 @+ S T$ Q s4 P
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1243" -f *+0:1243:TCP -n BLOCK -x >nul
% r r+ ~6 A' Q( |$ d
echo 关闭木马SubSeven默认服务端口…………OK!
: G; v0 X$ U+ U- p5 q3 w% q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
4 w* U6 u; W# g/ q5 D
echo 关闭木马WebEx默认服务端口…………OK!
% a8 L9 I* N8 Y0 c) c
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30100" -f *+0:30100:TCP -n BLOCK -x >nul
# x: n4 C$ t3 Y! Q* E0 X5 R8 s% e
echo 关闭木马NetSphere默认服务端口…………OK!
: V- \+ L A* D, B$ V
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1011" -f *+0:1011:TCP -n BLOCK -x >nul
% x0 \' H8 [+ j! V2 t1 H
echo 关闭木马Doly Trojan默认服务端口…………OK!
* z5 _" s/ Y# l, j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
8 U/ x( E) |) _5 h7 M7 j
echo 关闭木马Silencer默认服务端口…………OK!
6 @8 S3 m1 m& N9 d! w0 s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1170" -f *+0:1170:TCP -n BLOCK -x >nul
5 K: C5 D. i0 V; Q
echo 关闭木马Psyber Stream Server默认服务端口…………OK!
9 A& s7 V1 @- W8 O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20000" -f *+0:20000:TCP -n BLOCK -x >nul
& m: s- P7 z/ }$ s. E
echo 关闭木马Millenium默认服务端口…………OK!
( Y x" P, Z; p9 j& m' J0 Y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1234" -f *+0:1234:TCP -n BLOCK -x >nul
3 [1 A% P* ^7 g4 `+ m- q) T5 R" p. I
echo 关闭木马Ultors Trojan默认服务端口…………OK!
* G, E! M% l( |1 a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/65000" -f *+0:65000:TCP -n BLOCK -x >nul
* |; y0 v7 |$ @ Z0 Q1 M) h: j& b# o
echo 关闭木马Devil 1.03默认服务端口…………OK!
4 g6 H6 h. L% M r3 C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1245" -f *+0:1245:TCP -n BLOCK -x >nul
2 ~5 x4 j) n* R& T4 G6 l
echo 关闭木马VooDoo Doll默认服务端口…………OK!
H9 ]$ X$ P7 d6 J) {
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
0 f* l0 t: _/ Z: O
echo 关闭木马NetMonitor默认服务端口…………OK!
* j8 d6 D" X9 j3 h; p- n* {7 v4 {
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1492" -f *+0:1492:TCP -n BLOCK -x >nul
+ E* b$ t# n, |( ?2 I. k5 v
echo 关闭木马FTP99CMP默认服务端口…………OK!
$ n7 r& l0 O+ m
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1170" -f *+0:1170:TCP -n BLOCK -x >nul
# o) \9 j/ M, [% K( ~; i# k) ?
echo 关闭木马Streaming Audio Trojan默认服务端口…………OK!
! m5 Q0 L# o2 e0 E# y- I& R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1999" -f *+0:1999:TCP -n BLOCK -x >nul
/ s. Q U1 |( h
echo 关闭木马BackDoor默认服务端口…………OK!
; M2 I8 w& u7 g. Q! Z& W
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30303" -f *+0:30303:TCP -n BLOCK -x >nul
! S. v3 w6 _" S w: }
echo 关闭木马Socket23默认服务端口…………OK!
' Q" T2 Q* A. D* n2 n' V& P3 {7 o; k
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2001" -f *+0:2001:TCP -n BLOCK -x >nul
- F4 z9 Z6 H: c" R; m
echo 关闭木马Trojan Cow默认服务端口…………OK!
% M! f" \; J C- G- j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6969" -f *+0:6969:TCP -n BLOCK -x >nul
2 A7 y/ r( X3 K. d+ f
echo 关闭木马Gatecrasher默认服务端口…………OK!
& S1 C9 o+ g2 K% z) [8 X
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
4 I+ T. Q* x. n6 ^( [- q' J2 F3 x, I
echo 关闭木马Ripper默认服务端口…………OK!
7 p2 |! J& G+ A3 p& ~; R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/61466" -f *+0:61466:TCP -n BLOCK -x >nul
3 I5 k3 B" m+ Z
echo 关闭木马Telecommando默认服务端口…………OK!
+ e4 c* o5 ]* B
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2115" -f *+0:2115:TCP -n BLOCK -x >nul
7 Y2 M6 ^! K$ [7 p* ~; ?4 Y) ~- H' _
echo 关闭木马Bugs默认服务端口…………OK!
6 `, r1 B: R8 ]% i, {' Y4 d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/12076" -f *+0:12076:TCP -n BLOCK -x >nul
- z4 r4 P- P% X
echo 关闭木马Gjamer默认服务端口…………OK!
! @* P% r7 ^8 s& }0 |1 J
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2140" -f *+0:2140:TCP -n BLOCK -x >nul
" j1 |" p$ g5 _. a( G& y
echo 关闭木马Deep Throat默认服务端口…………OK!
+ }; J7 s( H7 ?: U, Z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4950" -f *+0:4950:TCP -n BLOCK -x >nul
1 Q2 p: [6 P% I1 k$ q' G! Y
echo 关闭木马IcqTrojen默认服务端口…………OK!
/ k( C0 W$ k( B- D8 @6 B+ |# O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2140" -f *+0:2140:TCP -n BLOCK -x >nul
# g4 v; j: Q# Z, a3 J# m8 m+ `
echo 关闭木马The Invasor默认服务端口…………OK!
" o2 u" {# [+ b1 q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/16969" -f *+0:16969:TCP -n BLOCK -x >nul
% i3 h* C1 a% u% g& n
echo 关闭木马Priotrity默认服务端口…………OK!
: F1 ^' M% @, ?% j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2801" -f *+0:2801:TCP -n BLOCK -x >nul
4 |( D% x. R9 j$ J; _3 L
echo 关闭木马Phineas Phucker默认服务端口…………OK!
6 D! V/ `1 J7 ]7 X+ x, ]7 K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1245" -f *+0:1245:TCP -n BLOCK -x >nul
3 L* Y9 v1 w8 G% R+ t) z
echo 关闭木马Vodoo默认服务端口…………OK!
9 r. p% O1 e# p8 G8 r4 a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30129" -f *+0:30129:TCP -n BLOCK -x >nul
: t3 s3 a6 T% h" G
echo 关闭木马Masters Paradise默认服务端口…………OK!
; C2 _; b8 \- ?) {
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5742" -f *+0:5742:TCP -n BLOCK -x >nul
; B* d3 z$ i$ ^( e! t. R. O. c
echo 关闭木马Wincrash默认服务端口…………OK!
. i$ ]7 F9 k) a# W, i( k6 f0 J3 L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3700" -f *+0:3700:TCP -n BLOCK -x >nul
5 z, u" X0 Y0 J4 ] f1 U T0 u
echo 关闭木马Portal of Doom默认服务端口…………OK!
1 O) P( i' s* k" r% `- r* q l; f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2583" -f *+0:2583:TCP -n BLOCK -x >nul
9 i5 b) H w/ K C" Y
echo 关闭木马Wincrash2默认服务端口…………OK!
$ e# p5 Q/ D- `
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4092" -f *+0:4092:TCP -n BLOCK -x >nul
7 |# p, C; s8 F6 ]
echo 关闭木马WinCrash默认服务端口…………OK!
5 @% L4 b% u; \; l! I/ d; j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1033" -f *+0:1033:TCP -n BLOCK -x >nul
# \# T- B3 q; X2 v+ H: o( ^
echo 关闭木马Netspy默认服务端口…………OK!
" r* ]6 B, Y: Z: x
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4590" -f *+0:4590:TCP -n BLOCK -x >nul
) O, |8 p" R6 y# m; X! {
echo 关闭木马ICQTrojan默认服务端口…………OK!
- |; |, o! y+ k9 X {7 I; S
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1981" -f *+0:1981:TCP -n BLOCK -x >nul
' [8 O1 i7 p [9 z0 d' q1 c
echo 关闭木马ShockRave默认服务端口…………OK!
$ ^/ _( i; J& F# L0 S0 v& O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5000" -f *+0:5000:TCP -n BLOCK -x >nul
7 U' ^" O2 C# N! c4 j" k
echo 关闭木马Sockets de Troie默认服务端口…………OK!
. C. Q9 \; C- x' [# r
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/555" -f *+0:555:TCP -n BLOCK -x >nul
, {$ }5 l* S& M
echo 关闭木马Stealth Spy默认服务端口…………OK!
$ |2 u" h5 }" T2 Y( t
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5001" -f *+0:5001:TCP -n BLOCK -x >nul
( r$ {- `4 ?- y" Y! S/ x
echo 关闭木马Sockets de Troie 1.x默认服务端口…………OK!
8 x# m7 b7 f; s, r& V
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
, ~2 u1 H9 e% Q4 U
echo 关闭木马Pass Ripper默认服务端口…………OK!
0 C& T! [, U' _# C" @3 ]! ^
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5321" -f *+0:5321:TCP -n BLOCK -x >nul
# e" p+ D* }9 Q3 H* v: m1 Y0 ~
echo 关闭木马Firehotcker默认服务端口…………OK!
; l4 l" ?/ D% Q2 G
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/666" -f *+0:666:TCP -n BLOCK -x >nul
9 X, M. a# R' x6 f+ F2 w8 ?
echo 关闭木马Attack FTP默认服务端口…………OK!
9 t$ _- E8 M4 }; J1 f8 w% x% K1 K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5400" -f *+0:5400:TCP -n BLOCK -x >nul
. h% y( s9 W# x( i: u( c
echo 关闭木马Blade Runner默认服务端口…………OK!
: O( U1 e- L9 n! P3 z6 W% d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/21554" -f *+0:21554:TCP -n BLOCK -x >nul
" J1 T9 A' A- V8 X5 B
echo 关闭木马GirlFriend默认服务端口…………OK!
- q8 n7 `' |( H; [. q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5401" -f *+0:5401:TCP -n BLOCK -x >nul
T3 e, ^5 c6 N2 Q- g$ L
echo 关闭木马Blade Runner 1.x默认服务端口…………OK!
! @( X9 g; }/ i2 v0 V
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50766" -f *+0:50766:TCP -n BLOCK -x >nul
) d/ D* ~+ f% S" }' K" Y
echo 关闭木马Fore Schwindler默认服务端口…………OK!
9 L' V$ E3 d. L; O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5402" -f *+0:5402:TCP -n BLOCK -x >nul
9 Q2 w/ [! R; z' v9 u
echo 关闭木马Blade Runner 2.x默认服务端口…………OK!
7 D% r" @% s x; T
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/34324" -f *+0:34324:TCP -n BLOCK -x >nul
1 R" O" W4 \) v( q
echo 关闭木马Tiny Telnet Server默认服务端口…………OK!
% S& K! d) j/ R3 v; \; }
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5569" -f *+0:5569:TCP -n BLOCK -x >nul
+ |5 y0 S/ H& K2 k6 k
echo 关闭木马Robo-Hack默认服务端口…………OK!
; d; `0 }! ^( r- w y2 p7 Y0 M
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30999" -f *+0:30999:TCP -n BLOCK -x >nul
. s8 x$ j: B( z8 R
echo 关闭木马Kuang默认服务端口…………OK!
' j. G# n( X6 W/ l6 s- z4 [
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6670" -f *+0:6670:TCP -n BLOCK -x >nul
# N$ B5 F7 ]- M+ S8 h: A
echo 关闭木马DeepThroat默认服务端口…………OK!
# p: u; ^- ?2 h4 }, _; y! o; p8 L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/11000" -f *+0:11000:TCP -n BLOCK -x >nul
1 B P3 Z3 n" j# @/ S. R. |& M! B
echo 关闭木马Senna Spy Trojans默认服务端口…………OK!
, o( V. g$ e1 S
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6771" -f *+0:6771:TCP -n BLOCK -x >nul
% y% x/ b. d2 y4 h9 J# I
echo 关闭木马DeepThroat默认服务端口…………OK!
% q! c4 \/ f, P
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23456" -f *+0:23456:TCP -n BLOCK -x >nul
- G5 a& a. p! t9 l" d8 k
echo 关闭木马WhackJob默认服务端口…………OK!
, R* G) F1 t; ^2 x
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6969" -f *+0:6969:TCP -n BLOCK -x >nul
$ t+ a8 J. h+ P; g
echo 关闭木马GateCrasher默认服务端口…………OK!
) j- n( {) `* T6 q) T b
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/555" -f *+0:555:TCP -n BLOCK -x >nul
! `3 n3 D' c: u$ r
echo 关闭木马Phase0默认服务端口…………OK!
. X0 x% @. {' v" c# A+ |( @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6969" -f *+0:6969:TCP -n BLOCK -x >nul
[' f2 j2 d- p7 z/ Y
echo 关闭木马Priority默认服务端口…………OK!
. W) c; t* T$ w/ S
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5400" -f *+0:5400:TCP -n BLOCK -x >nul
b# P, G8 ]+ s
echo 关闭木马Blade Runner默认服务端口…………OK!
0 f3 L" \4 _4 C1 M1 \+ O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7000" -f *+0:7000:TCP -n BLOCK -x >nul
- q8 C# h( G* f7 F
echo 关闭木马Remote Grab默认服务端口…………OK!
/ {. q8 Q" ^! ^9 T
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4950" -f *+0:4950:TCP -n BLOCK -x >nul
# h- q3 I! v) ~+ t" [ R4 n
echo 关闭木马IcqTrojan默认服务端口…………OK!
/ C! \) ~6 ~$ ?7 ?/ Z b' ~# c0 x1 e
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7300" -f *+0:7300:TCP -n BLOCK -x >nul
* {4 o# L' D3 c+ u; ?" G2 a# `- v
echo 关闭木马NetMonitor默认服务端口…………OK!
. `! {# C% B, \/ g3 |$ D3 j$ H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9989" -f *+0:9989:TCP -n BLOCK -x >nul
1 W8 k+ {& B9 c7 }
echo 关闭木马InIkiller默认服务端口…………OK!
$ [# g: l' H6 c
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7301" -f *+0:7301:TCP -n BLOCK -x >nul
n6 B5 b% U8 A2 L1 u
echo 关闭木马NetMonitor 1.x默认服务端口…………OK!
8 X8 u; i# v4 P
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9872" -f *+0:9872:TCP -n BLOCK -x >nul
' S! p" b& O+ @9 U
echo 关闭木马Portal Of Doom默认服务端口…………OK!
; D5 F' `4 r% X+ s5 D) n
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
3 P3 R; R* n& p( V+ g
echo 关闭木马NetMonitor 2.x默认服务端口…………OK!
2 `2 W2 s( U& U# X1 S5 W; {$ B! b' x
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/11223" -f *+0:11223:TCP -n BLOCK -x >nul
: \" B6 v8 U) ]: A. l
echo 关闭木马Progenic Trojan默认服务端口…………OK!
6 w% F& o* C/ n) o0 W9 U
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7307" -f *+0:7307:TCP -n BLOCK -x >nul
- ^0 I, } i- g: F& I8 g
echo 关闭木马NetMonitor 3.x默认服务端口…………OK!
: u: J$ h1 z7 V6 e, M" R' g1 b
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/22222" -f *+0:22222:TCP -n BLOCK -x >nul
3 _- K; e2 p0 l# V; ^2 Y' j
echo 关闭木马Prosiak 0.47默认服务端口…………OK!
. z3 d& A- j) Y. K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7308" -f *+0:7308:TCP -n BLOCK -x >nul
5 |3 i" e; v- d0 o, m5 z' C
echo 关闭木马NetMonitor 4.x默认服务端口…………OK!
: \6 t9 u. z$ q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/53001" -f *+0:53001:TCP -n BLOCK -x >nul
3 y+ O+ _, X5 T0 B1 M
echo 关闭木马Remote Windows Shutdown默认服务端口…………OK!
6 P# X2 k7 L5 b9 ? J9 B
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7789" -f *+0:7789:TCP -n BLOCK -x >nul
! t2 K1 _& r$ C1 s0 a
echo 关闭木马ICKiller默认服务端口…………OK!
. O& k' r C; P4 q9 E! J" T( B% B
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5569" -f *+0:5569:TCP -n BLOCK -x >nul
0 z: R3 v, ~$ q! D5 I; ~9 N
echo 关闭木马RoboHack默认服务端口…………OK!
; |3 R6 P8 _9 n$ W8 G
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9872" -f *+0:9872:TCP -n BLOCK -x >nul
. _) \* ~% {$ M
echo 关闭木马Portal of Doom默认服务端口…………OK!
/ o& Z5 g( R' T8 B! t+ J# d% W' F
ipseccmd -w REG -p "HFUT_SECU" -x >nul
' D8 x& s( z9 t) k1 z" H* |( A
gpupdate >nul
, ~% `9 ?/ E( B) ?1 g+ H
echo 正在设置 IP 筛选器……
0 T& k& L S! x3 }# }
rem if exist %temp%\ipfilter.reg del %temp%\ipfilter.reg
9 N# x* d% Q# k* g3 q
echo Windows Registry Editor Version 5.00>%temp%\ipfilter.reg
+ w w9 }2 V' [) g* Y" |
echo.>>%temp%\ipfilter.reg
5 T* ?# j' U \: [+ E4 k* v' ^
echo [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters]>>%temp%\ipfilter.reg
, \! f6 H5 G: X# K, {- ?# d7 Q
echo "EnableSecurityFilters"=dword:00000001>>%temp%\ipfilter.reg
! k9 h! q7 T; C& o
echo.>>%temp%\ipfilter.reg>>%temp%\ipfilter.reg
( {3 R- w6 }: k
echo [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{F3BBAABC-03A5-4584-A7A0-0251FA38B8B1}]>>%temp%\ipfilter.reg
) n" i1 k+ ~7 M( b, }
echo "TCPAllowedPorts"=hex(07):32,00,31,00,00,00,38,00,30,00,00,00,34,00,30,00,30,\>>%temp%\ipfilter.reg
: e$ w7 ?9 [% c! A$ ?% h
echo 00,30,00,00,00,00,00>>%temp%\ipfilter.reg
0 s) u- |& a: X( l
echo.>>%temp%\ipfilter.reg
/ ^6 q' s% O+ f- N1 o0 E
echo [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters]>>%temp%\ipfilter.reg
+ L* {# Y' O8 B+ C6 O% s# t
echo "EnableSecurityFilters"=dword:00000001>>%temp%\ipfilter.reg
9 `2 T# _: C; y) h" \& h x
echo.>>%temp%\ipfilter.reg
5 d8 {& S8 w6 d$ B/ q& x
echo [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{F3BBAABC-03A5-4584-A7A0-0251FA38B8B1}]>>%temp%\ipfilter.reg
9 H, k+ k5 j% a% Y1 U. m
echo "TCPAllowedPorts"=hex(07):32,00,31,00,00,00,38,00,30,00,00,00,34,00,30,00,30,\>>%temp%\ipfilter.reg
' L& Y* v$ L6 E( S8 c8 q+ @7 \# Q
echo 00,30,00,00,00,00,00>>%temp%\ipfilter.reg
6 o6 s2 @2 V5 m
echo.>>%temp%\ipfilter.reg
! Z4 |- ]4 F1 P
regedit /s %temp%\ipfilter.reg
* ]4 m8 }$ Y w
del %temp%\ipfilter.reg
3 {4 x8 Z) R3 J
echo IP 筛选器设置成功!
+ u: c2 t+ x Q5 l7 ^( Y5 r3 ?1 M
echo.
9 R1 c- A# C$ O, D
echo.
: Y o! u$ r& }' V, t
echo “拒绝服务”提醒您的系统可以免受流行蠕虫病毒及木马后门的侵扰!
) d: m" R6 G$ j( u! p
echo.
# D9 n! s/ K3 i0 _3 g4 A: A
echo ******** 特别注意:不要关闭,请按任意键进行 Win 服务器过滤策略! ********
, R. }0 S/ k% V. z8 [( i$ j
echo.
# D& s; i% Y# ~0 S
pause>nul
& q% z M+ ]6 K) C) h
rem For PC Server
u W6 |, T! u: D* ]4 T0 S! M; o* a& o
ipseccmd -w REG -p "HFUT_SECU" -o -x
8 s% ^4 O7 K/ P) T, K
ipseccmd -w REG -p "HFUT_SECU" -x
* B( J. p4 a; |% D
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/80" -f *+0:80:TCP -n BLOCK -x
' E: B% w+ y) O: ~
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/1434" -f *+0:1434:UDP -n BLOCK -x
: n6 y+ s' X& {' N
rem ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3389" -f *+0:3389:TCP -n BLOCK -x
/ X+ f- u7 ] \* d9 w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/445" -f *+0:445:TCP -n BLOCK -x >nul
# W+ f% t& }3 }1 \& g
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/445" -f *+0:445:UDP -n BLOCK -x >nul
% y7 V9 j1 S# P3 F% e5 F4 o
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1025" -f *+0:1025:TCP -n BLOCK -x >nul
0 }" X& U" Q$ d9 m# I
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/139" -f *+0:139:UDP -n BLOCK -x >nul
/ l0 [4 C5 [5 r( ]
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1068" -f *+0:1068:TCP -n BLOCK -x >nul
/ G, c5 H, p3 @5 G/ D7 k8 T& c
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5554" -f *+0:5554:TCP -n BLOCK -x >nul
- T( v6 f$ M7 q/ ~' D
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9995" -f *+0:9995:TCP -n BLOCK -x >nul
; a, f+ w7 p( M( b8 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9996" -f *+0:9996:TCP -n BLOCK -x >nul
( ^9 ?* C. {: I- g g i
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6129" -f *+0:6129:TCP -n BLOCK -x >nul
! V4 _; b. a$ D4 Y9 |& M0 o& m* P
ipseccmd -w REG -p "HFUT_SECU" -r "Block ICMP/255" -f *+0:255:ICMP -n BLOCK -x >nul
& s0 Z" D/ Y2 E. T0 l4 O" h
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/43958" -f *+0:43958:TCP -n BLOCK -x >nul
. J4 y& `2 R6 |! ]
echo 关闭流行危险端口…………OK!
! h1 y. V0 G: n# ]
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20034" -f *+0:20034:TCP -n BLOCK -x >nul
: k2 { u0 P @: f2 B9 Q* P
echo 关闭木马NetBus Pro开放的端口…………OK!
( y% c1 G: W8 D; X7 j0 |) `
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1092" -f *+0:1092:TCP -n BLOCK -x >nul
" o* e5 f" i# g& J" L( M
echo 关闭蠕虫LoveGate开放的端口…………OK!
4 o/ E" y4 e+ [: W8 E
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3996" -f *+0:3996:TCP -n BLOCK -x >nul
- `9 p! B1 b( M _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4060" -f *+0:4060:TCP -n BLOCK -x >nul
" f/ F9 Q* y7 H5 A. p' M& ~8 k
echo 关闭木马RemoteAnything开放的端口…………OK!
( p2 Z. e7 B9 E" d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4590" -f *+0:4590:TCP -n BLOCK -x >nul
1 _/ A' L# s# C' q0 j
echo 关闭木马ICQTrojan开放的端口…………OK!
, w k* d) I$ p, Y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1080" -f *+0:1080:TCP -n BLOCK -x >nul
4 P7 H/ A% f n
echo 禁止代理服务器扫描…………OK!
5 @, R {. h4 y2 s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/113" -f *+0:113:TCP -n BLOCK -x >nul
% w9 ^; X9 T5 I5 E' L9 C
echo 禁止Authentication Service服务…………OK!
( V( K6 n3 Y( z1 H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/79" -f *+0:79:TCP -n BLOCK -x >nul
. v) e% l3 @, n' j
echo 禁止Finger扫描…………OK!
* W; f; B. P j
ipseccmd -w REG -p "HFUT_SECU" -r "Block UDP/53" -f *+0:53:UDP -n BLOCK -x >nul
% c1 Q8 d; a% }% R* D' _3 M! v' C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/53" -f *+0:53:TCP -n BLOCK -x >nul
4 H( y2 D- U1 ?5 |# B* Y
echo 禁止区域传递(TCP),欺骗DNS(UDP)或隐藏其他的通信…………OK!
$ E4 I( r* r; R# O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/707" -f *+0:707:TCP -n BLOCK -x >nul
, \; n. P$ `2 w7 b: l. B& z" H: n
echo 关闭nachi蠕虫病毒监听端口…………OK!
! Q0 [) V% a. p: a/ H% t0 R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/808" -f *+0:808:TCP -n BLOCK -x >nul
$ O4 X: S8 j) S: W7 w, z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23" -f *+0:23:TCP -n BLOCK -x >nul
5 i8 T4 z& v+ r. ?2 }7 H
echo 关闭Telnet 和木马Tiny Telnet Server监听端口…………OK!
, G) n* h2 @8 H8 h" h% H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/520" -f *+0:520:TCP -n BLOCK -x >nul
, N3 c0 ?% p1 Z; k- }
echo 关闭Rip 端口…………OK!
% X$ z5 `0 n2 n& X( ]: m" ?
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1999" -f *+0:1999:TCP -n BLOCK -x >nul
5 `+ I( h3 G: Y: M
echo 关闭木马程序BackDoor的默认服务端口…………OK!
# G4 T/ a; Z! }4 Y$ h
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2001" -f *+0:2001:TCP -n BLOCK -x >nul
# f0 b+ P) b f# ?: R, q
echo 关闭马程序黑洞2001的默认服务端口…………OK!
! J9 l) o' \* H0 \
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
0 |% a% M9 ]3 S, a% m7 f7 w
echo 关闭木马程序Ripper的默认服务端口…………OK!
; k3 ^9 q7 @$ b. U" x1 b6 n
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2583" -f *+0:2583:TCP -n BLOCK -x >nul
3 g [/ k' j4 F3 p" m) I3 e+ h
echo 关闭木马程序Wincrash v2的默认服务端口…………OK!
" y g' c6 L% ~. V6 |& h
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3389" -f *+0:3389:TCP -n BLOCK -x >nul
8 F/ |4 z/ O: U4 y6 X
echo 关闭Windows 的远程管理终端(远程桌面)监听端口…………OK!
- c7 u) c1 Y* O, l1 T1 j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4444" -f *+0:4444:TCP -n BLOCK -x >nul
% L) j3 l1 O5 k0 K) \& s: \
echo 关闭msblast冲击波蠕虫监听端口…………OK!
. t8 H3 g$ g+ e
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4899" -f *+0:4899:TCP -n BLOCK -x >nul
$ L$ w2 N& S& ^; @9 J4 V; y# g
echo 关闭远程控制软件(remote administrator)服务端口…………OK!
6 I, u2 j9 O. F2 g8 m' M
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5800" -f *+0:5800:TCP -n BLOCK -x >nul
3 F$ @; K2 F7 ]& f7 {
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5900" -f *+0:5900:TCP -n BLOCK -x >nul
5 s' W$ [' |8 S- e
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8888" -f *+0:8888:TCP -n BLOCK -x >nul
f, [3 L) I! C9 v
echo 关闭远程控制软件VNC的两个默认服务端口…………OK!
8 k$ R+ U5 E$ f* O7 }
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6129" -f *+0:6129:TCP -n BLOCK -x >nul
) G/ a' d9 M; l& q+ @3 }
echo 关闭Dameware服务端默认监听端口(可变!)…………OK!
8 v8 A9 K. m( q$ e3 C* j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6267" -f *+0:6267:TCP -n BLOCK -x >nul
1 k0 D" @4 I8 e
echo 关闭木马广外女生的默认服务端口…………OK!
4 ]0 d5 M( J; v" x: ]
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/660" -f *+0:660:TCP -n BLOCK -x >nul
% W% L* @! v; E: C9 ?6 ^! X
echo 关闭木马DeepThroat v1.0 - 3.1默认服务端口…………OK!
; z0 J- @, q% n: I% e) _3 b
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6671" -f *+0:6671:TCP -n BLOCK -x >nul
) c6 u% q' ^" o! ?
echo 关闭木马Indoctrination默认服务端口…………OK!
' x5 g& Y e. Y& F! `
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6939" -f *+0:6939:TCP -n BLOCK -x >nul
2 y# t9 K5 F# u" I0 m g( t* M
echo 关闭木马PRIORITY默认服务端口…………OK!
7 l0 g" a: `/ B; w# X0 a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
' v- i+ w' G) f
echo 关闭木马网络精灵默认服务端口…………OK!
5 b+ e" S1 ?2 D7 e9 w* {% d
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7511" -f *+0:7511:TCP -n BLOCK -x >nul
8 W5 A ~# X! r i0 J
echo 关闭木马聪明基因的默认连接端口…………OK!
( }, J: Y9 b/ @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7626" -f *+0:7626:TCP -n BLOCK -x >nul
7 l) z; k7 \9 t- p. E9 i
echo 关闭木马冰河默认端口(注意可变!)…………OK!
% X; \8 D7 V. {7 J
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8011" -f *+0:8011:TCP -n BLOCK -x >nul
' p. Y& S2 N: P
echo 关闭木马WAY2.4默认服务端口…………OK!
9 ~1 O' V6 k( D. T/ u; n" N, ~
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9989" -f *+0:9989:TCP -n BLOCK -x >nul
/ `. @) q8 h" \+ d) Q% R
echo 关闭木马InIkiller默认服务端口…………OK!
: u& T6 \% X' k) K3 v
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/19191" -f *+0:19191:TCP -n BLOCK -x >nul
; J* p$ r0 i9 c- k |( `7 t" C
echo 关闭木马兰色火焰默认开放的telnet端口…………OK!
) n: q" ~ y% u& q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1029" -f *+0:1029:TCP -n BLOCK -x >nul
$ m% A3 e: O& @) D g" n6 W* E
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20168" -f *+0:20168:TCP -n BLOCK -x >nul
( `! ?; `- V# Z
echo 关闭lovegate 蠕虫所开放的两个后门端口…………OK!
! E, m9 S; g# @; H, F( [2 ~
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23444" -f *+0:23444:TCP -n BLOCK -x >nul
2 }' J l( o, Q
echo 关闭木马网络公牛默认服务端口…………OK!
4 t% F; R$ }/ Z& o- R. S3 A
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/27374" -f *+0:27374:TCP -n BLOCK -x >nul
' a& J9 B5 {' y! z! Q3 Y K
echo 关闭木马SUB7默认服务端口…………OK!
1 o$ E' c/ P' a+ _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30100" -f *+0:30100:TCP -n BLOCK -x >nul
* z4 f" i8 g& Y; O! q- v# i& k! p$ N1 |
echo 关闭木马NetSphere默认的服务端口…………OK!
, h7 G* A' ^5 S1 [: w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31337" -f *+0:31337:TCP -n BLOCK -x >nul
5 H; g M5 Y# C# F; X9 k" [
echo 关闭木马BO2000默认服务端口…………OK!
1 F6 P) I9 t0 u6 l2 g
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/45576" -f *+0:45576:TCP -n BLOCK -x >nul
! f o$ y$ m U: h0 S, D z
echo 关闭代理软件的控制端口…………OK!
' `* }0 b: o0 T3 P C/ p, o, Y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50766" -f *+0:50766:TCP -n BLOCK -x >nul
2 O7 |' ~3 ?# e. h/ z# F" S' `0 y
echo 关闭木马Schwindler默认服务端口…………OK!
/ u, o6 y! s0 m T9 z7 J j O+ s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/61466" -f *+0:61466:TCP -n BLOCK -x >nul
1 y1 \% t/ R3 `
echo 关闭木马Telecommando默认服务端口…………OK!
7 F$ @. \# t) l8 R, Y9 _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31338" -f *+0:31338:TCP -n BLOCK -x >nul
5 ^/ J1 w5 o2 I4 _# |
echo 关闭木马Back Orifice默认服务端口…………OK!
5 b) S8 q' S" r3 C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8102" -f *+0:8102:TCP -n BLOCK -x >nul
! J# k7 N* E$ K, F& Y3 }4 u
echo 关闭木马网络神偷默认服务端口…………OK!
* {0 e) H7 y2 H5 w. z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2000" -f *+0:2000:TCP -n BLOCK -x >nul
5 C) L1 S3 h4 [( b3 X( t4 K( K, a
echo 关闭木马黑洞2000默认服务端口…………OK!
. I, |2 X- B2 }" w: u9 K3 N
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31339" -f *+0:31339:TCP -n BLOCK -x >nul
. d' n u0 N# E
echo 关闭木马NetSpy DK默认服务端口…………OK!
! _: E* v3 Y J0 u+ X
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2001" -f *+0:2001:TCP -n BLOCK -x >nul
9 _& p6 J) K& L% K$ [6 o
echo 关闭木马黑洞2001默认服务端口…………OK!
' s+ B* X- \# o ^
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/31666" -f *+0:31666:TCP -n BLOCK -x >nul
8 c! a, d" k4 U8 q C
echo 关闭木马BOWhack默认服务端口…………OK!
, `, r( I8 r: \6 a# [6 s( x
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/34324" -f *+0:34324:TCP -n BLOCK -x >nul
: z2 C r$ a0 \7 Z9 U
echo 关闭木马BigGluck默认服务端口…………OK!
3 d- @$ _7 o; ~( b: G8 u* ^
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
& D6 B c1 U+ n, q
echo 关闭木马网络精灵3.0,netspy3.0默认服务端口…………OK!
- k6 e) J. @4 X: b$ Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40412" -f *+0:40412:TCP -n BLOCK -x >nul
- ^3 y; v& B7 h3 W
echo 关闭木马The Spy默认服务端口…………OK!
' X) C$ m3 {# X% x
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40421" -f *+0:40421:TCP -n BLOCK -x >nul
' D. i0 a, g/ n5 h$ r
echo 关闭木马Masters Paradise默认服务端口…………OK!
5 k/ l/ ?/ g) N7 {# W4 I3 L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8011" -f *+0:8011:TCP -n BLOCK -x >nul
! h% y3 L( S; o5 Y5 C
echo 关闭木马wry,赖小子,火凤凰默认服务端口…………OK!
$ t/ E4 @( G, w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40422" -f *+0:40422:TCP -n BLOCK -x >nul
8 K1 n3 ~+ m. f$ V, X
echo 关闭木马Masters Paradise 1.x默认服务端口…………OK!
+ }9 U2 e' r& A2 K# t
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23444" -f *+0:23444:TCP -n BLOCK -x >nul
$ z, C, q! @2 Y) g$ r' J
echo 关闭木马网络公牛,netbull默认服务端口…………OK!
$ c8 W9 q6 R& p1 i; ]( B9 q- ?- M5 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40423" -f *+0:40423:TCP -n BLOCK -x >nul
# ?, B, {0 y& j% B0 T+ {& W
echo 关闭木马Masters Paradise 2.x默认服务端口…………OK!
) ~8 f, X, m) d/ [4 A; M" _+ y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23445" -f *+0:23445:TCP -n BLOCK -x >nul
( F8 a$ F) w$ A% S
echo 关闭木马网络公牛,netbull默认服务端口…………OK!
$ |+ M$ o3 U6 G- b, K: c5 N
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40426" -f *+0:40426:TCP -n BLOCK -x >nul
3 V. G& L9 J% D
echo 关闭木马Masters Paradise 3.x默认服务端口…………OK!
/ | W! e- y; Y4 d8 g; @8 u5 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50505" -f *+0:50505:TCP -n BLOCK -x >nul
$ K% e" `& ^& y3 j% H
echo 关闭木马Sockets de Troie默认服务端口…………OK!
; `/ n, ^- h' \( `; f- {$ J
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/27374" -f *+0:27374:TCP -n BLOCK -x >nul
' k6 F X' b+ e3 h
echo 关闭木马Sub Seven 2.0+,77,东方魔眼默认服务端口…………OK!
/ k: V b7 }7 L& r
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50766" -f *+0:50766:TCP -n BLOCK -x >nul
Y( D1 L* f. W) k* m
echo 关闭木马Fore默认服务端口…………OK!
( [' M5 S5 K" B4 Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/53001" -f *+0:53001:TCP -n BLOCK -x >nul
8 Y2 @$ s2 }3 ~2 t; W
echo 关闭木马Remote Windows Shutdown默认服务端口…………OK!
. \4 S3 U8 D+ d2 G8 M
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/61466" -f *+0:61466:TCP -n BLOCK -x >nul
) f; h6 i4 {9 ~4 _4 Q' P+ h% D% t
echo 关闭木马Telecommando默认服务端口…………OK!
, w5 a5 j6 `+ k c! L' R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/121" -f *+0:121:TCP -n BLOCK -x >nul
( A& b2 ^: A7 k! S7 f
echo 关闭木马BO jammerkillahV默认服务端口…………OK!
: j1 z0 H0 V& q, H, @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/666" -f *+0:666:TCP -n BLOCK -x >nul
8 G Q6 P( O2 ?1 x/ {
echo 关闭木马Satanz Backdoor默认服务端口…………OK!
# U% R) x2 S% R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/65000" -f *+0:65000:TCP -n BLOCK -x >nul
0 o" [, b$ [# O3 E f
echo 关闭木马Devil默认服务端口…………OK!
" k/ W$ H+ S% J( z8 Y' _9 ~
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
6 f& K5 C5 q; h. n* U" [: Z+ A! Y
echo 关闭木马Silencer默认服务端口…………OK!
" B' A* a6 x% c: t# P5 I
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6400" -f *+0:6400:TCP -n BLOCK -x >nul
! }% E' ~0 }+ g6 u
echo 关闭木马The tHing默认服务端口…………OK!
$ C- q+ S# R4 @# m, ^1 l4 x/ J4 s$ W: n
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1600" -f *+0:1600:TCP -n BLOCK -x >nul
% e" `$ \0 u C% ?! K4 ]
echo 关闭木马Shivka-Burka默认服务端口…………OK!
: n5 J2 v; f& T6 C! h9 |, a: V
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/12346" -f *+0:12346:TCP -n BLOCK -x >nul
' Y* o+ b" [0 y6 N. i; N/ H
echo 关闭木马NetBus 1.x默认服务端口…………OK!
5 A+ W1 H; W% L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1807" -f *+0:1807:TCP -n BLOCK -x >nul
& z. i# p4 j' Q5 o: b$ u
echo 关闭木马SpySender默认服务端口…………OK!
5 M% ^! ^" M, ^8 |
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20034" -f *+0:20034:TCP -n BLOCK -x >nul
6 L, ?! @! q5 u t4 [" z
echo 关闭木马NetBus Pro默认服务端口…………OK!
) s) P+ q0 i E# i) n9 w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1981" -f *+0:1981:TCP -n BLOCK -x >nul
7 d( L: K# h+ ?7 D- H6 [, j
echo 关闭木马Shockrave默认服务端口…………OK!
& T# z2 x# A# ~0 L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1243" -f *+0:1243:TCP -n BLOCK -x >nul
/ N1 ?* `* O. W) A" Q5 Q
echo 关闭木马SubSeven默认服务端口…………OK!
- y2 n8 p( b1 C1 }4 D4 t4 N% I
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
+ _ k: k4 t( Y/ G( G' p; R, ?0 m* \
echo 关闭木马WebEx默认服务端口…………OK!
1 g# s R1 c* ^& a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30100" -f *+0:30100:TCP -n BLOCK -x >nul
. n$ e' }! W T1 w8 l1 V- x G
echo 关闭木马NetSphere默认服务端口…………OK!
k1 w( G$ v {& j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1011" -f *+0:1011:TCP -n BLOCK -x >nul
7 q/ H$ c/ p! J% k9 I% x
echo 关闭木马Doly Trojan默认服务端口…………OK!
. b6 Q8 w7 [. g, K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
- ~2 ~7 J9 T% F5 I: D3 }& E
echo 关闭木马Silencer默认服务端口…………OK!
+ g7 C7 ]4 L# z0 f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1170" -f *+0:1170:TCP -n BLOCK -x >nul
# `; x2 j; B! y3 H3 |
echo 关闭木马Psyber Stream Server默认服务端口…………OK!
4 E0 D$ I9 D- K0 Z& v1 k$ r1 O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20000" -f *+0:20000:TCP -n BLOCK -x >nul
$ X$ x% G5 Z5 Y, h
echo 关闭木马Millenium默认服务端口…………OK!
# E0 q6 o$ L/ ?* v( a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1234" -f *+0:1234:TCP -n BLOCK -x >nul
( k2 C6 F5 q2 d0 T' B
echo 关闭木马Ultors Trojan默认服务端口…………OK!
' h& Y! P3 z9 `6 D# H7 o0 a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/65000" -f *+0:65000:TCP -n BLOCK -x >nul
- k! D$ g; V' ?0 N
echo 关闭木马Devil 1.03默认服务端口…………OK!
7 ^. C! ?5 @) N3 a0 O) C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1245" -f *+0:1245:TCP -n BLOCK -x >nul
& {4 V& L, H/ s8 X& [/ Z: a* ?
echo 关闭木马VooDoo Doll默认服务端口…………OK!
/ E( b$ d( F' ~5 f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
& b7 A9 K( C1 [, J: p- e& n
echo 关闭木马NetMonitor默认服务端口…………OK!
e! I1 f) \9 N1 B$ Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1492" -f *+0:1492:TCP -n BLOCK -x >nul
5 p; G8 U# \; T b
echo 关闭木马FTP99CMP默认服务端口…………OK!
: Y, Y) f) ?1 z5 M. Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1170" -f *+0:1170:TCP -n BLOCK -x >nul
6 K: O5 e: A6 p: l
echo 关闭木马Streaming Audio Trojan默认服务端口…………OK!
/ C, S7 O) d" \
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1999" -f *+0:1999:TCP -n BLOCK -x >nul
( V1 M/ r* {$ O/ g" a% I6 Z
echo 关闭木马BackDoor默认服务端口…………OK!
3 d: W! K8 g- F( k; Y( |1 k/ _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30303" -f *+0:30303:TCP -n BLOCK -x >nul
7 R' W/ |9 t. ~8 ^6 G
echo 关闭木马Socket23默认服务端口…………OK!
- K1 k) F( {6 f/ S& M
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2001" -f *+0:2001:TCP -n BLOCK -x >nul
( q1 Z$ J7 [" F0 |
echo 关闭木马Trojan Cow默认服务端口…………OK!
8 x6 d" ]" T u" C+ f, ^
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6969" -f *+0:6969:TCP -n BLOCK -x >nul
) V8 P/ P0 u8 U% q2 I
echo 关闭木马Gatecrasher默认服务端口…………OK!
9 |' i8 h t! A' p) ^
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
0 g0 p$ C7 K" b; X9 S1 u2 A* w: f% b
echo 关闭木马Ripper默认服务端口…………OK!
* _. ?8 I1 i) `! V3 D9 u: v$ i$ ?
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/61466" -f *+0:61466:TCP -n BLOCK -x >nul
- d$ }! r& \ ? [
echo 关闭木马Telecommando默认服务端口…………OK!
" c. a2 M% c3 Y& m' @1 n
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2115" -f *+0:2115:TCP -n BLOCK -x >nul
7 U1 o* ^: F% d) G
echo 关闭木马Bugs默认服务端口…………OK!
" Y* a" `9 \3 _9 s' c/ M c
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/12076" -f *+0:12076:TCP -n BLOCK -x >nul
}3 W$ I0 H# j% n# a0 C) _9 f; Q
echo 关闭木马Gjamer默认服务端口…………OK!
* u4 i5 v% D; `' V$ ?6 ?9 G
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2140" -f *+0:2140:TCP -n BLOCK -x >nul
% \! K& U3 `9 s1 e& a* |
echo 关闭木马Deep Throat默认服务端口…………OK!
8 v5 n7 K% L, ]* ? m( r2 n6 v, }
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4950" -f *+0:4950:TCP -n BLOCK -x >nul
' J: R$ r5 Z6 b4 E
echo 关闭木马IcqTrojen默认服务端口…………OK!
8 f/ ]+ e% x9 f2 {: H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2140" -f *+0:2140:TCP -n BLOCK -x >nul
; U, x9 {9 e$ H/ H; w
echo 关闭木马The Invasor默认服务端口…………OK!
! [) o& [! X5 P2 |3 D8 ?+ ]" N, u
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/16969" -f *+0:16969:TCP -n BLOCK -x >nul
- C. T. V0 e4 ]" _: O( ^3 ]7 \- {4 n
echo 关闭木马Priotrity默认服务端口…………OK!
/ o8 ]9 O A+ E) e$ H* R( g$ q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2801" -f *+0:2801:TCP -n BLOCK -x >nul
* Q9 u0 x+ V F4 Y0 S( `
echo 关闭木马Phineas Phucker默认服务端口…………OK!
4 M$ e' e. g5 y5 `" T5 n( l
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1245" -f *+0:1245:TCP -n BLOCK -x >nul
# ?1 K$ S( N! m/ c" U4 b3 S" y) }
echo 关闭木马Vodoo默认服务端口…………OK!
- u9 a, Y9 c( x }
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30129" -f *+0:30129:TCP -n BLOCK -x >nul
6 d3 j$ x) R# {+ o& S, x
echo 关闭木马Masters Paradise默认服务端口…………OK!
/ i3 d4 g/ G# m8 ?, K# W% E
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5742" -f *+0:5742:TCP -n BLOCK -x >nul
8 e) i2 \ D/ P# o. N: {, @; i
echo 关闭木马Wincrash默认服务端口…………OK!
% y1 S: D% m2 f v
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/3700" -f *+0:3700:TCP -n BLOCK -x >nul
5 _% c' E5 V) ?3 ]9 L: B
echo 关闭木马Portal of Doom默认服务端口…………OK!
& E4 z$ Z+ c" H [' P/ A
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2583" -f *+0:2583:TCP -n BLOCK -x >nul
" ? v. o9 w( z) ^0 z1 e" F
echo 关闭木马Wincrash2默认服务端口…………OK!
- k/ g6 V! {) U, m6 k8 D
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4092" -f *+0:4092:TCP -n BLOCK -x >nul
8 W( v5 b' B+ I5 T! k
echo 关闭木马WinCrash默认服务端口…………OK!
& K+ |0 T* L8 a- O* v q4 P
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1033" -f *+0:1033:TCP -n BLOCK -x >nul
4 g2 f4 B' s" a" j6 q5 r
echo 关闭木马Netspy默认服务端口…………OK!
% u* ]9 [5 j! c' e* y9 _- J& Z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4590" -f *+0:4590:TCP -n BLOCK -x >nul
. p& b8 T' Y: f1 ^2 l
echo 关闭木马ICQTrojan默认服务端口…………OK!
% U/ d4 I+ T! V3 h) Z/ r. _! r
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1981" -f *+0:1981:TCP -n BLOCK -x >nul
9 g+ m0 U9 ^6 o" C" @2 S4 f/ x
echo 关闭木马ShockRave默认服务端口…………OK!
! g6 [9 H7 U' I, j# x! l
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5000" -f *+0:5000:TCP -n BLOCK -x >nul
( N+ s9 J% L! `7 x, h
echo 关闭木马Sockets de Troie默认服务端口…………OK!
3 _$ n+ U' h% c+ ~" `) N$ ?: O. J
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/555" -f *+0:555:TCP -n BLOCK -x >nul
% |' K1 u! d' |$ w. i. ^
echo 关闭木马Stealth Spy默认服务端口…………OK!
9 {. m& ^4 Q L8 t2 j* {3 Y% @" Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5001" -f *+0:5001:TCP -n BLOCK -x >nul
+ Q* O c2 Z: {% N1 @
echo 关闭木马Sockets de Troie 1.x默认服务端口…………OK!
: h1 ~# n4 W3 w$ {: f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
; ^# _8 V# M! s) e: n: R* p7 ?
echo 关闭木马Pass Ripper默认服务端口…………OK!
0 _4 B$ D6 }1 H# O, A, I
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5321" -f *+0:5321:TCP -n BLOCK -x >nul
2 n8 w# I, U, ?$ N2 l5 r
echo 关闭木马Firehotcker默认服务端口…………OK!
9 I% p+ M8 _3 z6 Y D1 N
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/666" -f *+0:666:TCP -n BLOCK -x >nul
1 O! \2 O: S! j) w& Z. I
echo 关闭木马Attack FTP默认服务端口…………OK!
7 E: j4 ~7 w4 A) T( \7 L/ E, f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5400" -f *+0:5400:TCP -n BLOCK -x >nul
& s3 v2 X& D; U4 r4 w. B3 s
echo 关闭木马Blade Runner默认服务端口…………OK!
! c9 f* s* H P; d s, |. z6 H, Q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/21554" -f *+0:21554:TCP -n BLOCK -x >nul
5 l' A6 u! C2 y: N$ e5 @6 ?! M
echo 关闭木马GirlFriend默认服务端口…………OK!
4 G# I: O" q. p. K# j; ]
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5401" -f *+0:5401:TCP -n BLOCK -x >nul
1 a* I9 B7 L6 }
echo 关闭木马Blade Runner 1.x默认服务端口…………OK!
% z4 r/ [* b8 ^' c9 d# V
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50766" -f *+0:50766:TCP -n BLOCK -x >nul
* j! c F& N0 H: S2 s8 ^
echo 关闭木马Fore Schwindler默认服务端口…………OK!
( G/ | E2 U& w* L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5402" -f *+0:5402:TCP -n BLOCK -x >nul
8 X* H1 h: K9 Z9 J% Y1 P
echo 关闭木马Blade Runner 2.x默认服务端口…………OK!
2 I' Z% L% {9 I5 J9 K1 G; w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/34324" -f *+0:34324:TCP -n BLOCK -x >nul
$ z' h' B; L+ @1 Q
echo 关闭木马Tiny Telnet Server默认服务端口…………OK!
+ @$ B. {) w |
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5569" -f *+0:5569:TCP -n BLOCK -x >nul
2 y0 |0 d$ H) a4 s0 G4 |
echo 关闭木马Robo-Hack默认服务端口…………OK!
' N7 q6 r6 v' Q% i' Y) N. S) q
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30999" -f *+0:30999:TCP -n BLOCK -x >nul
8 }' `2 M# B, A5 @5 @$ M
echo 关闭木马Kuang默认服务端口…………OK!
5 j6 N# m. V0 W* e( U: s1 U3 z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6670" -f *+0:6670:TCP -n BLOCK -x >nul
% j$ K. L- v% T% d/ {% f
echo 关闭木马DeepThroat默认服务端口…………OK!
( N- ^7 ~3 w9 C. j& D+ W
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/11000" -f *+0:11000:TCP -n BLOCK -x >nul
! ^, Z. G: ]" k& U
echo 关闭木马Senna Spy Trojans默认服务端口…………OK!
2 H* Z8 |+ Z3 \( v
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6771" -f *+0:6771:TCP -n BLOCK -x >nul
: f9 G) U2 ?2 a
echo 关闭木马DeepThroat默认服务端口…………OK!
$ I+ P: G/ q$ o+ ^* S
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23456" -f *+0:23456:TCP -n BLOCK -x >nul
" r( W( W( L5 r: k0 v% S9 r+ I0 v: Q0 b
echo 关闭木马WhackJob默认服务端口…………OK!
8 i! d4 r3 N; l! E
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6969" -f *+0:6969:TCP -n BLOCK -x >nul
' T( Y# A g8 r; F
echo 关闭木马GateCrasher默认服务端口…………OK!
6 x, N1 S% _" z6 |
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/555" -f *+0:555:TCP -n BLOCK -x >nul
) e( J$ d& d0 ? V n2 S y3 f
echo 关闭木马Phase0默认服务端口…………OK!
. W- G* P/ S `2 l; [. I9 d- O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6969" -f *+0:6969:TCP -n BLOCK -x >nul
" j/ Y! ~% D0 [
echo 关闭木马Priority默认服务端口…………OK!
7 K6 K& l7 _8 g; e
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5400" -f *+0:5400:TCP -n BLOCK -x >nul
; ~) P, \1 N5 M5 V" ?% [
echo 关闭木马Blade Runner默认服务端口…………OK!
! |( R: |1 w* h: n* t/ K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7000" -f *+0:7000:TCP -n BLOCK -x >nul
" Z% C0 f" s6 l4 v# E7 \
echo 关闭木马Remote Grab默认服务端口…………OK!
4 D5 y/ j8 C5 e% h7 _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4950" -f *+0:4950:TCP -n BLOCK -x >nul
! e7 _3 ?& H+ U, @# y
echo 关闭木马IcqTrojan默认服务端口…………OK!
' c" Z( l5 d, E
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7300" -f *+0:7300:TCP -n BLOCK -x >nul
0 X0 u5 P& z a s% }5 O' X
echo 关闭木马NetMonitor默认服务端口…………OK!
. o+ x7 L. m) a M6 n
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9989" -f *+0:9989:TCP -n BLOCK -x >nul
% ` T. E# T0 b; o$ i4 A
echo 关闭木马InIkiller默认服务端口…………OK!
5 G) `' z" X3 P- w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7301" -f *+0:7301:TCP -n BLOCK -x >nul
( j7 G) g0 n+ }0 x5 o
echo 关闭木马NetMonitor 1.x默认服务端口…………OK!
5 f4 R c; t# s/ x8 l( H* x
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9872" -f *+0:9872:TCP -n BLOCK -x >nul
: x0 `9 h! j& |/ I6 E
echo 关闭木马Portal Of Doom默认服务端口…………OK!
$ F' f6 F2 }9 L a$ G2 {) y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7306" -f *+0:7306:TCP -n BLOCK -x >nul
, v: \- N! X: o! O0 Z8 X7 B9 v% G. Y
echo 关闭木马NetMonitor 2.x默认服务端口…………OK!
5 `$ R9 H/ W9 F0 X" s+ y) Y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/11223" -f *+0:11223:TCP -n BLOCK -x >nul
; f3 `( K. n C1 j5 {
echo 关闭木马Progenic Trojan默认服务端口…………OK!
. r7 O4 G5 G! e7 h6 P8 c0 w
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7307" -f *+0:7307:TCP -n BLOCK -x >nul
' H# B6 C" B' N I! _
echo 关闭木马NetMonitor 3.x默认服务端口…………OK!
. T0 u) h* z$ v( S6 U7 r
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1999" -f *+0:1999:TCP -n BLOCK -x >nul
: `4 p& S$ z/ }0 Z: S+ R
echo 关闭木马BackDoor默认服务端口…………OK!
8 F2 Q# F! m* t" X9 ?6 S# i
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5800" -f *+0:5800:TCP -n BLOCK -x >nul
" {# m. q, j- u, Z; L4 Z& i& d# U6 [
echo 关闭远程控制软件VNC默认服务端口…………OK!
- o3 P8 S3 D: |
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5900" -f *+0:5900:TCP -n BLOCK -x >nul
* V3 v7 W9 J* B+ S/ l9 e
echo 关闭远程控制软件VNC默认服务端口…………OK!
! c% D* Y: h$ r+ t/ W
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/22222" -f *+0:22222:TCP -n BLOCK -x >nul
- f* ]; O. `: P; V
echo 关闭木马Prosiak 0.47默认服务端口…………OK!
6 |* s$ Q- J' P% p5 i- L0 D; n
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7626" -f *+0:7626:TCP -n BLOCK -x >nul
" e6 @, R6 _8 S- S- O* G! T8 l" V9 a
echo 关闭木马冰河默认服务端口…………OK!
/ U. j1 V$ m/ L" _: c0 A& F+ ^
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/4444" -f *+0:4444:TCP -n BLOCK -x >nul
# T$ b# o7 } l M" r7 N2 F
echo 关闭木马msblast默认服务端口…………OK!
Y; `& ], W4 B- f
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7308" -f *+0:7308:TCP -n BLOCK -x >nul
; y c9 S$ S/ ^" e" n: x$ g$ P( ~
echo 关闭木马NetMonitor 4.x默认服务端口…………OK!
: X( I0 E5 x: o% f z/ C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6129" -f *+0:6129:TCP -n BLOCK -x >nul
8 Q- A8 e0 H4 ?6 A
echo 关闭远程控制软件(dameware nt utilities)默认服务端口…………OK!
4 O# ?% c# R) f" c, o, U$ d3 W
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2023" -f *+0:2023:TCP -n BLOCK -x >nul
0 N) a1 D) u2 S# n
echo 关闭木马Ripper默认服务端口…………OK!
8 p0 ~9 d8 f3 K7 C* o
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1245" -f *+0:1245:TCP -n BLOCK -x >nul
; V- i4 s$ v/ ~8 B* i) G9 p
echo 关闭木马VooDoo Doll默认服务端口…………OK!
8 `5 d/ Z0 h6 H# ]( J
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/121" -f *+0:121:TCP -n BLOCK -x >nul
1 e/ v6 }2 y8 I; p
echo 关闭木马BO jammerkillahV默认服务端口…………OK!
+ v( W! {; d5 F% Y* k8 ?( R' C
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/456" -f *+0:456:TCP -n BLOCK -x >nul
- s4 \$ F; \4 [" r6 F5 R! y
echo 关闭木马Hackers Paradise默认服务端口…………OK!
# ]& i8 h4 ^9 B" F0 e7 m$ a
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/555" -f *+0:555:TCP -n BLOCK -x >nul
/ c) b( k2 e7 E' \# A( D5 @
echo 关闭木马Stealth Spy默认服务端口…………OK!
% f% ^ u# j! I5 [& @ }- V/ _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/666" -f *+0:666:TCP -n BLOCK -x >nul
7 Z( h' A/ I8 U V
echo 关闭木马Satanz Backdoor默认服务端口…………OK!
, L0 D7 @$ {6 w6 U A% j
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1001" -f *+0:1001:TCP -n BLOCK -x >nul
+ \7 u* O3 S2 j- D( O- T
echo 关闭木马Silencer默认服务端口…………OK!
$ m0 |5 h- E5 i
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/1033" -f *+0:1033:TCP -n BLOCK -x >nul
6 r: |0 c& o5 n& z" O
echo 关闭木马Netspy默认服务端口…………OK!
! P& E" s# e8 N4 b2 H
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7000" -f *+0:7000:TCP -n BLOCK -x >nul
4 S3 H K' X6 x8 o
echo 关闭木马Remote Grab默认服务端口…………OK!
+ `8 y( k, W/ [0 p8 g5 _
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7300 " -f *+0:7300:TCP -n BLOCK -x >nul
9 ]% W) D7 y2 U- @* B, P* U1 X
echo 关闭木马NetMonitor默认服务端口…………OK!
, @' P: f; U$ N6 l* `7 c6 R+ Z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23456 " -f *+0:23456:TCP -n BLOCK -x >nul
; _. b5 P8 H6 v/ i( C2 C. E
echo 关闭木马Ugly FTP默认服务端口…………OK!
: u( t, P' [8 B; z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/23456 " -f *+0:23456:TCP -n BLOCK -x >nul
3 \) r* L2 f# @* n$ j
echo 关闭木马Ugly FTP默认服务端口…………OK!
* ]" [. c: Z, c2 ~) P5 J
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/30100 " -f *+0:30100:TCP -n BLOCK -x >nul
1 x/ w4 h+ ?# E! R0 ^
echo 关闭木马NetSphere默认服务端口…………OK!
( L$ J1 P) H' \5 ?1 O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9872" -f *+0:9872:TCP -n BLOCK -x >nul
; N. E" m- g3 B
echo 关闭木马Portal of Doom默认服务端口…………OK!
0 k( W. B2 g5 e5 I1 p+ F8 O
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9899" -f *+0:9899:TCP -n BLOCK -x >nul
4 Z; v. F# j% B4 P6 d" k; H6 s
echo 关闭木马iNi-Killer默认服务端口…………OK!
2 o0 f1 x# e( K
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/50505" -f *+0:50505:TCP -n BLOCK -x >nul
$ Y# u- Y* o1 j& @0 Q& @( Y
echo 关闭木马Sockets de Troie默认服务端口…………OK!
/ W( n* s# @% P% ~: {7 Q2 u
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/6939" -f *+0:6939:TCP -n BLOCK -x >nul
( c& K6 S+ E+ I }/ k4 W2 B
echo 关闭木马Indoctrination默认服务端口…………OK!
) I/ V( d& \: Z
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/11000" -f *+0:11000:TCP -n BLOCK -x >nul
: @* z# @; w6 G; B! Y8 N8 D
echo 关闭木马Senna Spy默认服务端口…………OK!
! k2 ]. v' R8 \2 U
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/12223" -f *+0:12223:TCP -n BLOCK -x >nul
3 x8 N1 ]* P9 s c; j
echo 关闭木马Hack?99 KeyLogger默认服务端口…………OK!
1 `9 N6 ^5 d6 M2 M* Q/ p" S
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/12362" -f *+0:12362:TCP -n BLOCK -x >nul
4 m2 v9 p, }$ E$ s
echo 关闭木马Whack-a-mole 1.x默认服务端口…………OK!
+ t% i+ p7 a' {, R, K* H: g) Y
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/20000" -f *+0:20000:TCP -n BLOCK -x >nul
8 y0 }$ J* j, Z, A2 {/ \
echo 关闭木马Millenium默认服务端口…………OK!
% T) ?* z( T, h5 S: X9 B! }* s
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2583" -f *+0:2583:TCP -n BLOCK -x >nul
: E0 i) X1 T: M
echo 关闭木马Wincrash v2默认服务端口…………OK!
6 E2 D# P( m1 G) ?% U' ~& B1 q7 B
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/53001" -f *+0:53001:TCP -n BLOCK -x >nul
8 o A* s1 u6 B3 W1 k' u2 h
echo 关闭木马Remote Windows Shutdown默认服务端口…………OK!
6 m& ?6 v# p; D1 M: i
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/7789" -f *+0:7789:TCP -n BLOCK -x >nul
/ @! P$ ~& S. k, S9 t$ z
echo 关闭木马ICKiller默认服务端口…………OK!
$ ?; ~3 L& r t# v3 o5 c/ k
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/40426" -f *+0:40426:TCP -n BLOCK -x >nul
$ C+ t0 o/ M6 f# |5 X# | x
echo 关闭木马Masters Paradise 3.x默认服务端口…………OK!
1 }$ ^: z. R& D. v5 c5 |
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/5569" -f *+0:5569:TCP -n BLOCK -x >nul
8 k1 }9 c( r& ~5 x% n: x
echo 关闭木马RoboHack默认服务端口…………OK!
2 C% y( s8 ~/ b6 P1 x" R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/8000" -f *+0:8000:TCP -n BLOCK -x >nul
1 U( P3 B1 a# a g, h2 G
echo 关闭木马huigezi默认服务端口…………OK!
5 E2 }1 t+ \# L
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9872" -f *+0:9872:TCP -n BLOCK -x >nul
* v$ x1 O W, `3 A$ ^0 o& k
echo 关闭木马Portal of Doom默认服务端口…………OK!
h, V. c- n* D
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2005" -f *+0:2005:TCP -n BLOCK -x >nul
- X! L1 }1 a+ z/ G1 h, ]. J
echo 关闭木马黑洞2005默认服务端口…………OK!
( B$ q z% J3 @
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/2000" -f *+0:2000:TCP -n BLOCK -x >nul
! D2 j3 |4 g+ a2 Z2 V4 d% J; t" `/ Q/ `
echo 关闭彩虹桥1.2默认端口…………OK!
' r! }( U0 N" R
ipseccmd -w REG -p "HFUT_SECU" -r "Block TCP/9999" -f *+0:9999:TCP -n BLOCK -x >nul
7 ?/ C6 X0 n4 |6 N: M9 ]
echo 关闭huigezi映射默认端口…………OK!
! x# V' U5 f; s: S" l
ipseccmd -w REG -p "HFUT_SECU" -x >nul
# ^$ j5 X- V' Z4 Q. P9 x6 v( n2 I
gpupdate >nul
- M L; p. E( e9 X( H- H: S+ _
echo.
{# z* q& Y3 c$ o
echo “拒绝服务”安全协议全部设置完毕!您的系统可以免受流行蠕虫病毒及典型木马后门的侵扰!
% h4 D+ u$ @0 \5 X/ g |: m. R
echo “拒绝服务”提醒您注意升级操作系统和杀毒软件!
( o: B" e) n1 ~+ A$ W, R3 y X3 {
echo “拒绝服务”版网络安全协议你已经完全设置完成了!请重新启动你的计算机!
. K& V5 \6 Y3 D+ V. ]2 g
echo 最新的木马端口出来偶会及时更新。如果有木马端口未设,请来信告之!
4 }$ u5 \$ P4 T4 S
echo
' M$ W' L/ ^7 e7 m, H8 H" M
echo.
: t6 w9 P5 C, t
echo 请按任意键退出!
. \* J" b3 I" t
pause>nul
4 @5 d" s" e: E5 V9 }0 k
+ `- M" N9 _) j" Y+ P' R, y2 e
) L0 i' ]: u3 r0 B3 J! d' K
第七招:威金病毒批处理专杀
: i6 v& S2 g `" j) ?5 q
“威金”病毒主要通
过网络共享传播,病毒会感染电脑中所有的.EXE可执行文件,传播速度十分迅速。“威金”病毒运行后,修改注册表自启动项,以使自己随系统一起运行,向系统文件目录下生成以下病毒文件:
[3 r# s& ?% J0 L8 e, U! Q" K" S/ r
Program Files\svhost32.exe
0 G9 I; ^# ^4 {5 R2 s. [
Program Files\micorsoft\svhost32.exe
& W0 ]$ E1 d& N- Y
windows\explorer.exe
+ {& w0 z# }0 j' N
windows\logo1_exe
/ U4 B* f7 f- M0 S
windows\rundll32.exe
9 k, c c* O" D: |
windows\rundl132.exe
8 Y! B0 V$ {* |9 Z' w
windows\intel\rundl132.exe
2 F6 v+ g: ^, K' b1 O% o) ?
windows\dll.dll
! P- t% a; a' p, E4 ~8 \* N/ m
病毒新变种还会自
动从网站下载“天堂杀手”以及“QQ大盗(QQpass)”等10余种木马病毒,企图盗取包括天堂、征途、梦幻西游、传奇等多种流行网游以及QQ的帐号、密码。
. [: [2 c& y& O
方法如上,复制内容见下(红色部分)
% `7 P8 K' _! V9 F. @& v2 v
@ECHO OFF
" w& M0 J @" i5 m1 B
del c:\winnt\logo1_.exe
) L: m1 Z6 I4 m' Q' e! V# `+ C) `
del c:\windows\logo1_.exe
: C% N3 Q% ?* o6 |4 A' R
del c:\winnt\0sy.exe
! |0 P% E# s; y) d0 b2 r
del c:\windows\0sy.exe
* D- J- F0 Q3 S0 j' r
del c:\winnt\1sy.exe
( t8 P8 f {+ K5 ]4 `# a
del c:\windows\1sy.exe
( v9 x/ P6 v6 j; F- `+ Q
del c:\winnt\2sy.exe
8 a1 v# Z ~" q: |
del c:\windows\2sy.exe
+ g% e7 q& z( j, f7 b( ^
del c:\winnt\3sy.exe
; _; _4 V' b0 _/ |+ }9 {- {- p8 U
del c:\windows\3sy.exe
! X( C: H, N4 B; A
del c:\winnt\4sy.exe
' x% R' W o7 k u+ |& g
del c:\windows\4sy.exe
! ]5 H2 J& F: P6 b7 |
del c:\winnt\5sy.exe
5 S' R w* M% G8 u d- Q. a9 C3 w
del c:\windows\5sy.exe
$ T$ c: A& r8 Y& D8 h. ^
del c:\winnt\6sy.exe
$ H: B4 D$ N+ Q" q
del c:\windows\6sy.exe
+ }: q* O' J; C$ b9 R
del c:\winnt\7sy.exe
5 R: a/ f: J1 ^0 y
del c:\windows\7sy.exe
. w' _: i2 r5 w; M) a% }' z( \
del c:\winnt\8sy.exe
n# g" ~8 ?; a- q( L+ a" k
del c:\windows\8sy.exe
1 `! ~9 e: R# b6 M, N
del c:\winnt\9sy.exe
^. N2 N8 o1 F4 u
del c:\windows\9sy.exe
) C3 K, c4 ]7 ^3 d D# |( _1 u$ F
del c:\winnt\rundl132.exe
% f8 ]) U) {( |& t# w5 k: q
del c:\windows\rundl132.exe
) v1 e7 Y" X3 K* N% p( m6 ^
net share c$ /d
3 v: M# _5 `! d2 F. G7 |( C w
net share d$ /d
( t8 y/ `9 j3 |; b) ^
net share e$ /d
1 v' \1 F( P* v( B' ~
net share F$ /d
$ u- F% X8 M* U
net share G$ /d
( o9 Y' g& ~# e& f$ O: Y
net share h$ /d
# L8 ^0 f9 [, W6 ~+ Y/ ~8 v& e. n, A
net share i$ /d
* B4 [: R; c4 q# h
net share j$ /d
0 K$ S) g; D9 K- T& |- Z
net share admin$ /d
, [ L) u3 O8 T6 @: L
net share ipc$ /d
C! H" f+ q8 z0 Z( c& n' j6 h
del c:\winnt\logo1_.exe
9 F: R' H! V. C) A/ ^
del c:\windows\logo1_.exe
7 Y5 x" S$ z7 k* V
del c:\windows\vdll.dll
1 L* w1 M% r4 J8 `/ ~! H* q
del c:\winnt\vdll.dll
! ?! O- H8 `. }8 Y
del c:\windows\tdll.dll
1 i. @; I4 } L6 w
del c:\winnt\tdll.dll
y6 _) ]$ o( `% B+ J$ e+ s6 K
del c:\windows\dll.dll
. P5 f' F$ \: j n! x3 T
del c:\winnt\dll.dll
9 V; {7 r; @5 u# E5 a. P
del c:\winnt\kill.exe
/ m% N9 a/ y# N
del c:\windows\kill.exe
8 I o! S. t0 t; A I( o
del c:\winnt\sws32.dll
6 C# a6 Y" a! c5 \' \( h
del c:\windows\sws32.dll
4 j! _8 H9 a4 _8 r2 ]7 p, U y7 l
del c:\winnt\rundl132.exe
2 @" f2 r6 t4 d1 g: S* R* l2 ]
del c:\windows\rundl132.exe
& B- G9 |; d5 V" s' `
echo.
4 P% i( y, f. w) O) Z' K* M
echo.
8 K2 {3 S$ g4 R" E! w1 C2 r
echo.
) Y W2 {5 D! t& e8 v
echo. *****************************
9 {1 {8 @& {! E1 w$ X; J
echo.
# F/ p1 G8 n% l: j& G) F8 }
echo. 正在查毒...请不要关闭......
! H) }% M0 P" x/ C# t( |* k1 ^
echo.
) f/ f8 P8 U* P& c. G
echo. *****************************
1 S- c% Y. C2 L( u
echo.
# x8 ~! ?! S4 X5 v3 u
echo.
, W9 O; @0 o# ]3 ^ v
echo.
) `2 K* }, j+ M a8 U5 ~! a+ k- {4 X
echo.
; {+ S$ w) I% b. e0 M7 U# z6 _
ping 127.0.0.1 -n 5
" p3 h* v/ A. Q0 I& R0 ?$ L) E6 g
del c:\winnt\logo1_.exe
5 u3 t$ ~% |; x. s
del c:\windows\logo1_.exe
# D" E4 Y, _1 a
del c:\windows\vdll.dll
$ c, e- N& Z5 H, m, e5 _1 z5 S$ A+ ^
del c:\winnt\vdll.dll
5 } P' t# v; _: \2 \2 J+ z9 g
del c:\windows\dll.dll
( _& Z' p- s% z6 O; z
del c:\winnt\dll.dll
) R8 H# g6 t p: D
del c:\windows\tdll.dll
( v3 F5 m7 Y: m
del c:\winnt\tdll.dll
: l# ]" }8 x$ O; K0 @
del c:\winnt\kill.exe
- A$ d* f, J p- L. D# Z9 ]
del c:\windows\kill.exe
! X, v- v' v; V5 `, ?' f5 N) u
del c:\winnt\sws32.dll
, A- m' B. \* V& Q
del c:\windows\sws32.dll
- q/ E& D* c/ l) e
del c:\winnt\rundl132.exe
' Z: f3 M& L4 _. r: m
del c:\windows\rundl132.exe
7 c+ U! y0 m; Q Y5 t4 {
echo.
% s |2 ]2 o" L3 J
echo.
" A( Q8 l" G2 [( Q+ M
echo.
6 T$ p/ D& x, U' q. k, b/ T
echo. *****************************
0 ~2 w" t. `3 _" h% e' ^$ X9 p' y
echo.
) a! \/ u' Y7 Y5 ?$ C3 @! Y5 \
echo. 正在查毒...请不要关闭......
0 s0 @( \) E$ b) u
echo.
3 T7 o; m5 i0 T
echo. *****************************
% c" W5 |. y7 t) E6 t2 V3 [! R
echo.
; @4 X$ F0 Q/ A
echo.
) i6 w' `9 L h9 G
echo.
; ~( c0 C @, v$ s X- B
echo.
7 e ~9 v3 ~/ R& t6 g" D$ W4 S
ping 127.0.0.1 -n 5
6 j6 w' r+ H' U
del c:\winnt\logo1_.exe
& j1 |# o& _# E. {# k
del c:\windows\logo1_.exe
" b+ }- f$ c t9 q& F) j- Y
del c:\windows\vdll.dll
' T8 Q/ @1 f' l* K8 M* h* d
del c:\winnt\vdll.dll
' \: z- C4 N0 T: Q
del c:\windows\dll.dll
q6 U* V2 N3 A
del c:\winnt\dll.dll
* }* Y) @" [2 k$ v- ^
del c:\windows\tdll.dll
4 s; \$ r" l$ k# t
del c:\winnt\tdll.dll
1 z b) z9 ]. M& K. r
del c:\winnt\kill.exe
$ b, M5 ~8 i( p9 U, k3 _9 Z' y
del c:\windows\kill.exe
* p- a, |% x, M+ [9 H8 `1 @5 h
del c:\winnt\sws32.dll
' M$ f, C4 Z+ h/ C- w
del c:\windows\sws32.dll
7 z3 x4 d9 \. R/ ?" F, @7 z5 q
del c:\windows\0sy.exe
( c2 F. z' W9 h6 S+ f
del c:\winnt\1sy.exe
5 |5 v$ j% i3 o: K" u/ b) {
del c:\windows\1sy.exe
$ a: E; _+ `& x; n2 K' _1 n. v
del c:\winnt\2sy.exe
. ~' t/ ?" x& k) m9 ]
del c:\windows\2sy.exe
9 n( {1 Z0 u2 _# j- [- X
del c:\winnt\3sy.exe
6 i. i6 Q. b: V
del c:\windows\3sy.exe
( d; M$ s* b, v/ c6 l
del c:\winnt\4sy.exe
4 c: v/ }& P4 w7 T
del c:\windows\4sy.exe
' }( P- e& j; v' V
del c:\winnt\5sy.exe
E8 A5 g$ ^3 l2 i8 O9 r
del c:\windows\5sy.exe
6 d, i2 `$ m* L6 C( p" Z
del c:\winnt\6sy.exe
- {) o& G9 I& F3 h4 @/ \
del c:\windows\6sy.exe
8 f! j T% f5 P' D" A S
del c:\winnt\7sy.exe
& }; K6 G( P0 q3 v
del c:\windows\7sy.exe
$ J' J! K9 a- t& k; r
del c:\winnt\8sy.exe
+ C- t1 g4 ]; V& D# t
del c:\windows\8sy.exe
& ~8 R+ e. G/ M: R. x. I
del c:\winnt\9sy.exe
6 j# v8 ~3 a+ Y" @
del c:\windows\9sy.exe
- A, ]* y: S% Q8 t3 o }
del c:\winnt\rundl132.exe
) i- X. p0 Y9 Q- ~" Z* \" N' y! v3 y
del c:\windows\rundl132.exe
5 ~! b6 b4 P! n% x1 `3 C* _" {
del C:\winnt\Logo1_.exe
" a" O- c7 X' q) x5 M( N
del C:\winnt\rundl132.exe
) l1 z; L2 ]8 i- q5 _
del C:\winnt\bootconf.exe
9 ?; D4 M6 W5 m/ J/ H$ M, A9 k7 a
del C:\winnt\kill.exe
+ A- u7 T+ a) ]2 V3 _: {1 j% r
del C:\winnt\sws32.dll
: [9 ]( J6 }# C% B; ^
del C:\winnt\dll.dll
. K* v" ^/ M4 k, n
del C:\winnt\vdll.dll
% W) U1 V- F9 Z
del c:\winnt\tdll.dll
9 }1 L( y; `& H$ e
del C:\winnt\system32\ShellExt\svchs0t.exe
) S* f& Z! p* S. f) D7 i5 ]% L
del C:\Program Files\Internet Explorer\0SY.exe
7 m- z, O2 j( b! V* [* ^
del C:\Program Files\Internet Explorer\1SY.exe
- Y& V4 @# B4 D8 b
del C:\Program Files\Internet Explorer\2sy.exe
+ f6 p5 C- w- S& G2 |
del C:\Program Files\Internet Explorer\3sy.exe
' Q/ ?+ v1 [7 p7 ?: `5 W% Z
del C:\Program Files\Internet Explorer\4sy.exe
) P. f# _* k+ k' y* z7 [
del C:\Program Files\Internet Explorer\5sy.exe
0 l' |- `1 A) a
del C:\Program Files\Internet Explorer\6SY.exe
8 `7 j) N& n* c2 m! k6 E/ M* H4 H
del C:\Program Files\Internet Explorer\7sy.exe
& m0 U, e. a8 {1 b1 y
del C:\Program Files\Internet Explorer\8sy.exe
2 c( w) t$ q2 J+ J8 C
del C:\Program Files\Internet Explorer\9sy.exe
/ a% Q A8 E3 C5 F( @$ _
del C:\winnt\system32\Logo1_.exe
, n$ o5 b3 i- | }
del C:\winnt\system32\rundl132.exe
" V0 \: a2 M, A0 u: O
del C:\winnt\system32\bootconf.exe
% v) |( M B E9 j* q$ ^/ `# x
del C:\winnt\system32\kill.exe
0 e" ]+ p( j/ l8 K& Q- \+ c% Q
del C:\winnt\system32\sws32.dll
$ ^6 _( v) a2 k6 a$ h. p
del C:\windows\Logo1_.exe
5 |; n' w- r, `! E7 z2 Q
del C:\windows\rundl132.exe
) F1 U5 Z$ k/ W: I X- X
del C:\windows\bootconf.exe
8 R9 v) j# S) ^0 m! e9 @
del C:\windows\kill.exe
6 p. o: _* Q- b/ J+ m2 a; `$ l$ V& C7 u
del C:\windows\sws32.dll
0 f3 M4 h# Q6 [; s9 V/ b9 E8 B
del C:\windows\dll.dll
8 \3 ]1 F* _. b2 ?: y' K
del C:\windows\vdll.dll
) T+ T. a) l+ ?* ^
del c:\windows\tdll.dll
+ y+ b6 {8 C0 o3 w2 N9 F
del C:\windows\system32\ShellExt\svchs0t.exe
, Y% U5 D; m$ k9 v0 V$ M* f
del C:\windows\system32\Logo1_.exe
: {% r( k* N# x" F& e* g" ^
del C:\windows\system32\rundl132.exe
' ^4 [. h" V. L( U- C6 Q
del C:\windows\system32\bootconf.exe
" `8 R4 }& ~1 ]% T+ ^) i
del C:\windows\system32\kill.exe
- Q0 W: {- k' t
del C:\windows\system32\sws32.dll
! r+ U* E& ]" p. h- f
del c:\_desktop.ini /f/s/q/a
. g$ y" ` r& J4 b
del d:\_desktop.ini /f/s/q/a
* h$ M' e9 K& T
del e:\_desktop.ini /f/s/q/a
5 ~% l! J8 q8 N0 H2 X! D e5 ~/ m
del f:\_desktop.ini /f/s/q/a
' j9 ]7 H- _& @2 H# ]
del g:\_desktop.ini /f/s/q/a
( \4 @3 b7 Y3 o# H8 Z* P" L% l5 W
del h:\_desktop.ini /f/s/q/a
4 E! D/ k( q1 g5 [, f1 f- f% H
del i:\_desktop.ini /f/s/q/a
* b! Y; @& h X( c. u4 ^# k4 k
del j:\_desktop.ini /f/s/q/a
$ A+ b( E4 C$ a$ B3 x7 x7 }
del k:\_desktop.ini /f/s/q/a
欢迎光临 捌玖网络工作室 (http://89w.org/)
Powered by Discuz! 7.2