WIN服務(wù)器安全批處理文件
這個(gè)的確不錯(cuò),指量設(shè)置,免去手動(dòng)設(shè)置的繁瑣/uploadfiles/okay_77574.rar
復(fù)制代碼 代碼如下:
echo.
echo ------------------------------------------------------
echo.
echo ...........
echo.
net share c$ /delete
net share d$ /delete
net share e$ /delete
net share f$ /delete
net share admin$ /delete
net share ipc$ /delete
net stop server
net stop lanmanworkstation
regsvr32/u C:/WINNT/System32/wshom.ocx
regsvr32/u C:/WINNT/system32/shell32.dll
regsvr32/u C:/WINNT/system32/shell.dll
cacls c:/WINNT/system32/shell32.dll /g administrators:f system:f
cacls c:/WINNT/system32/shell.dll /g administrators:f system:f
cacls c:/ /g administrators:f system:f
cacls d:/ /g administrators:f system:f
echo.
echo ..........
echo.
echo ------------------------------------------------------
echo.
echo .................
echo.
echo .. delshare.reg .......
echo Windows Registry Editor Version 5.00> c:/delshare.reg
echo [HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/lanmanserver/parameters]>> c:/delshare.reg
echo "AutoShareWks"=dword:00000000>> c:/delshare.reg
echo "AutoShareServer"=dword:00000000>> c:/delshare.reg
echo .. delshare.reg .....
regedit /s c:/delshare.reg
echo .. delshare.reg ....
del c:/delshare.reg
echo .
echo ........
echo .
echo =========================================================
echo .
echo .....................dos....
echo .
echo .........
echo Windows Registry Editor Version 5.00> c:/dosforwin.reg
echo [HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/Tcpip/Parameters]>> c:/dosforwin.reg
echo "EnableICMPRedirect"=dword:00000000>> c:/dosforwin.reg
echo "DeadGWDetectDefault"=dword:00000001>> c:/dosforwin.reg
echo "DontAddDefaultGatewayDefault"=dword:00000000>> c:/dosforwin.reg
echo "EnableSecurityFilters"=dword:00000000">> c:/dosforwin.reg
echo "AllowUnqualifiedQuery"=dword:00000000>> c:/dosforwin.reg
echo "PrioritizeRecordData"=dword:00000001>> c:/dosforwin.reg
echo "ReservedPorts"=hex(7):31,00,34,00,33,00,33,00,2d,00,31,00,34,00,33,00,34,00,/>> c:/dosforwin.reg
echo 00,00,00,00>> c:/dosforwin.reg
echo "SynAttackProtect"=dword:00000002>> c:/dosforwin.reg
echo "EnablePMTUDiscovery"=dword:00000000>> c:/dosforwin.reg