关闭危险端口

勒索木马又火了一波,安全问题提上日程,分享一个一键关闭危险端口的预处理文件,希望对看到的人有些帮助!!

复制下面代码,新建一个txt文件,将代码拷贝进去,将文件另存为.bat文件,执行即可

%1 mshta vbscript:CreateObject("Shell.Application").ShellExecute("cmd.exe","/c %~s0 ::","","runas",1)(window.close)&&exit

@echo off 
color 1f 
title 关闭常见的危险端口
echo. 
echo. 
echo 本批处理用于启动windows系统的防火墙并关闭常见的危险端口,已在Win7、Win10上测试成功 
echo. 
echo 在进行下一步前请先关闭所有杀毒软件(360、腾讯管家、金山毒霸等)以免设置失败
echo. 
echo. 
echo. 
echo. 
pause 
cls 
echo 正在启动防火墙 请稍候… 
sc config MpsSvc start= auto > nul 
net start MpsSvc > nul 
netsh advfirewall set allprofiles state on > nul 
echo 防火墙已经成功启动 
echo. 
echo 正在关闭常见的危险端口 请稍候… 
echo. 
echo 正在关闭135端口 请稍候… 
netsh advfirewall firewall add rule name="band 135" protocol=TCP dir=in localport=135 action=block > nul
netsh advfirewall firewall add rule name="band 135" protocol=TCP dir=out localport=135 action=block > nul
netsh advfirewall firewall add rule name="band 135" protocol=UDP dir=in localport=135 action=block > nul
netsh advfirewall firewall add rule name="band 135" protocol=UDP dir=out localport=135 action=block > nul
echo 正在关闭137端口 请稍候… 
netsh advfirewall firewall add rule name="band 137" protocol=TCP dir=in localport=137 action=block > nul 
netsh advfirewall firewall add rule name="band 137" protocol=TCP dir=out localport=137 action=block > nul
netsh advfirewall firewall add rule name="band 135" protocol=UDP dir=in localport=137 action=block > nul
netsh advfirewall firewall add rule name="band 135" protocol=UDP dir=out localport=137 action=block > nul
echo 正在关闭138端口 请稍候… 
netsh advfirewall firewall add rule name="band 138" protocol=TCP dir=in localport=138 action=block > nul
netsh advfirewall firewall add rule name="band 138" protocol=TCP dir=out localport=138 action=block > nul
netsh advfirewall firewall add rule name="band 138" protocol=UDP dir=in localport=138 action=block > nul
netsh advfirewall firewall add rule name="band 138" protocol=UDP dir=out localport=138 action=block > nul
echo 正在关闭139端口 请稍候… 
netsh advfirewall firewall add rule name="band 139" protocol=TCP dir=in localport=139 action=block > nul
netsh advfirewall firewall add rule name="band 139" protocol=TCP dir=out localport=139 action=block > nul
netsh advfirewall firewall add rule name="band 139" protocol=UDP dir=in localport=139 action=block > nul
netsh advfirewall firewall add rule name="band 139" protocol=UDP dir=out localport=139 action=block > nul
echo 正在关闭445端口 请稍候… 
netsh advfirewall firewall add rule name="band 445" protocol=TCP dir=in localport=445 action=block > nul
netsh advfirewall firewall add rule name="band 445" protocol=TCP dir=out localport=445 action=block > nul
netsh advfirewall firewall add rule name="band 445" protocol=UDP dir=in localport=445 action=block > nul
netsh advfirewall firewall add rule name="band 445" protocol=UDP dir=out localport=445 action=block > nul
cls 
echo. 
echo. 
echo. 
echo 常见的危险端口已经关闭,免疫局域网内其他电脑攻击 
echo. 
echo. 
echo. 
echo. 
echo 
echo. 
echo. 
echo. 
echo 感谢你的使用,按任意键退出 
pause>nul

 

posted @ 2017-05-16 15:38  tsvico  阅读(172)  评论(0编辑  收藏  举报