日韩无码专区无码一级三级片|91人人爱网站中日韩无码电影|厨房大战丰满熟妇|AV高清无码在线免费观看|另类AV日韩少妇熟女|中文日本大黄一级黄色片|色情在线视频免费|亚洲成人特黄a片|黄片wwwav色图欧美|欧亚乱色一区二区三区

RELATEED CONSULTING
相關(guān)咨詢
選擇下列產(chǎn)品馬上在線溝通
服務(wù)時(shí)間:8:30-17:00
你可能遇到了下面的問(wèn)題
關(guān)閉右側(cè)工具欄

新聞中心

這里有您想知道的互聯(lián)網(wǎng)營(yíng)銷解決方案
Win2003環(huán)境下的一鍵系統(tǒng)安全批處理
復(fù)制代碼 代碼如下:

@echo off

echo ----------------------------------

echo ----正在備份注冊(cè)表 請(qǐng)稍后....----

echo ----------------------------------

  reg export "HKEY_LOCAL_MACHINE" C:/reg_backup.reg

echo ----------------------

echo ----注冊(cè)表備份完成----

echo ----------------------

  ping 127.0.0.1 -n 3 >nul

echo -----------------------------------

echo ----安全配置正在改寫 請(qǐng)稍候...----

echo -----------------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------

echo ----正在禁用空連接----

echo ----------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa /v restrictanonymous /t reg_dword /d 1 /f

echo --------------------------

echo ----禁用空連接設(shè)置完畢----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------

echo ----正在刪除默認(rèn)共享----

echo ------------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /v AutoShareServer /t reg_dword /d 0 /f

echo ----------------------------

echo ----刪除默認(rèn)共享設(shè)置完畢----

echo ----------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------

echo ----正在修改TTL值請(qǐng)稍后...----

echo ------------------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v DefaultTTL /t reg_dword /d 53 /f

echo -------------------

echo ----TTL修改完畢----

echo -------------------

  @ping 127.0.0.1 -n 3 >nul

echo -----------------------

echo ----防止syn洪水攻擊----

echo -----------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v SynAttackProtect /t reg_dword /d 2 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v EnablePMTUDiscovery /t reg_dword /d 0 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v NoNameReleaseOnDemand /t reg_dword /d 1 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v EnableDeadGWDetect /t reg_dword /d 0 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v KeepAliveTime /t reg_dword /d 300000 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v PerformRouterDiscovery /t reg_dword /d 0 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v EnableICMPRedirects /t reg_dword /d 0 /f

echo -------------------------------

echo ----防止syn洪水攻擊設(shè)置完畢----

echo -------------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------

echo ------------------------------

echo ---- 系統(tǒng)服務(wù)修改 ----

echo ------------------------------

echo ------------------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------

echo ----修改3389端口----

echo --------------------

  reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds dpwd\Tds\tcp" /v PortNumber /t reg_dword /d 44454 /f

  reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentContro1Set\Control\Tenninal Server\WinStations\RDP\Tcp" /v PortNumber /t reg_dword /d 44454 /f

echo --------------------

echo ----修改PORT完畢----

echo --------------------

  @ping 127.0.0.1 -n 3 >nul

echo -------------------------------------

echo ----正在開(kāi)啟系統(tǒng)防火墻 請(qǐng)稍后....----

echo -------------------------------------

  sc config sharedaccess start= auto & net start sharedaccess

echo ------------------------

echo ----系統(tǒng)防火墻已開(kāi)啟----

echo ------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------

echo ----正在關(guān)閉共享打印服務(wù)----

echo ----------------------------

  @sc config Spooler start= disabled

  sc config LanmanServer start= disabled

  sc config LmHosts start= disabled

echo --------------------------

echo ----已關(guān)閉共享打印服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------

echo ----正在關(guān)閉遠(yuǎn)程協(xié)助服務(wù)----

echo ----------------------------

  @sc config RDSessMgr start= disabled

echo --------------------------

echo ----已關(guān)閉遠(yuǎn)程協(xié)助服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------

echo ----正在關(guān)閉遠(yuǎn)程注冊(cè)表服務(wù)----

echo ------------------------------

  @sc config RemoteRegistry start= disabled

echo ----------------------------

echo ----已關(guān)閉遠(yuǎn)程注冊(cè)表服務(wù)----

echo ----------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------

echo ----關(guān)閉自動(dòng)硬件播放通知----

echo ----------------------------

  sc config ShellHWDetection start= disabled

echo -----------------------

echo ----自動(dòng)播放通知關(guān)閉---

echo -----------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------------------

echo ----正在關(guān)閉替換憑據(jù)下的啟動(dòng)進(jìn)程服務(wù)----

echo ----------------------------------------

  sc config seclogon start= disabled

echo --------------------------

echo ----已關(guān)閉啟動(dòng)進(jìn)程服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------------

echo ----IEEE 802.11 適配器的自動(dòng)配置----

echo ------------------------------------

  sc config WZCSVC start= disabled

echo ------------------

echo ----已關(guān)閉IEEE----

echo ------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------------

echo ----客戶端跟蹤服務(wù)關(guān)閉----

echo --------------------------

  sc config TrkSvr start= disabled

  sc config MSDTC start= disabled

echo ----------------------------

echo ----已關(guān)閉客戶端跟蹤服務(wù)----

echo ----------------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------

echo ----幫助中心關(guān)閉----

echo --------------------

  sc config helpsvc start= disabled

echo --------------------------

echo ----已關(guān)閉幫助中心服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------------------

echo --------------------------------

echo ---- 系統(tǒng)權(quán)限加固 ----

echo --------------------------------

echo --------------------------------

echo -------------------------------------------------------

echo ----C盤(系統(tǒng)盤) (administrators,system完全控制權(quán)限)----

echo -------------------------------------------------------

  cacls C:\ /t /c /g administrators:F system:F

echo -------------------------------------------

echo ----Common Files (everyone用戶只讀權(quán)限)----

echo -------------------------------------------

  Cacls "C:\Program Files\Common Files" /t /e /c /g everyone:R

echo -------------------------------------------------------------

echo ----IIS Temporary Compressed Files (everyone用戶更改權(quán)限)----

echo -------------------------------------------------------------

  Cacls "C:\WINDOWS\IIS Temporary Compressed Files" /t /e /c /g everyone:C

echo --------------------------------------------

echo ----Microsoft.Net (everyone用戶只讀權(quán)限)----

echo --------------------------------------------

  Cacls C:\WINDOWS\Microsoft.Net /t /e /c /g everyone:R

echo ------------------------------------------------------

echo ----Temporary ASP.NET Files (everyone用戶更改權(quán)限)----

echo ------------------------------------------------------

  Cacls "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Temporary ASP.NET Files" /t /e /c /g everyone:C

echo ------------------------------------------------------

echo ----Temporary ASP.NET Files (everyone用戶更改權(quán)限)----

echo ------------------------------------------------------

  Cacls "C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files" /t /e /c /g everyone:C

echo -------------------------------------------

echo ----Registration (everyone用戶讀取權(quán)限)----

echo -------------------------------------------

  Cacls C:\WINDOWS\Registration /t /e /c /g everyone:R

echo -----------------------------------

echo ----Temp (everyone用戶更改權(quán)限)----

echo -----------------------------------

  Cacls C:\WINDOWS\Temp /t /e /c /g everyone:C

echo -------------------

目前創(chuàng)新互聯(lián)已為上千多家的企業(yè)提供了網(wǎng)站建設(shè)、域名、網(wǎng)頁(yè)空間、網(wǎng)站托管、企業(yè)網(wǎng)站設(shè)計(jì)、邵原網(wǎng)站維護(hù)等服務(wù),公司將堅(jiān)持客戶導(dǎo)向、應(yīng)用為本的策略,正道將秉承"和諧、參與、激情"的文化,與客戶和合作伙伴齊心協(xié)力一起成長(zhǎng),共同發(fā)展。

 @echo off

echo ----------------------------------

echo ----正在備份注冊(cè)表 請(qǐng)稍后....----

echo ----------------------------------

  reg export "HKEY_LOCAL_MACHINE" C:/reg_backup.reg

echo ----------------------

echo ----注冊(cè)表備份完成----

echo ----------------------

  ping 127.0.0.1 -n 3 >nul

echo -----------------------------------

echo ----安全配置正在改寫 請(qǐng)稍候...----

echo -----------------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------

echo ----正在禁用空連接----

echo ----------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa /v restrictanonymous /t reg_dword /d 1 /f

echo --------------------------

echo ----禁用空連接設(shè)置完畢----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------

echo ----正在刪除默認(rèn)共享----

echo ------------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /v AutoShareServer /t reg_dword /d 0 /f

echo ----------------------------

echo ----刪除默認(rèn)共享設(shè)置完畢----

echo ----------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------

echo ----正在修改TTL值請(qǐng)稍后...----

echo ------------------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v DefaultTTL /t reg_dword /d 53 /f

echo -------------------

echo ----TTL修改完畢----

echo -------------------

  @ping 127.0.0.1 -n 3 >nul

echo -----------------------

echo ----防止syn洪水攻擊----

echo -----------------------

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v SynAttackProtect /t reg_dword /d 2 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v EnablePMTUDiscovery /t reg_dword /d 0 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v NoNameReleaseOnDemand /t reg_dword /d 1 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v EnableDeadGWDetect /t reg_dword /d 0 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v KeepAliveTime /t reg_dword /d 300000 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v PerformRouterDiscovery /t reg_dword /d 0 /f

  reg add HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters /v EnableICMPRedirects /t reg_dword /d 0 /f

echo -------------------------------

echo ----防止syn洪水攻擊設(shè)置完畢----

echo -------------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------

echo ------------------------------

echo ---- 系統(tǒng)服務(wù)修改 ----

echo ------------------------------

echo ------------------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------

echo ----修改3389端口----

echo --------------------

  reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds dpwd\Tds\tcp" /v PortNumber /t reg_dword /d 44454 /f

  reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentContro1Set\Control\Tenninal Server\WinStations\RDP\Tcp" /v PortNumber /t reg_dword /d 44454 /f

echo --------------------

echo ----修改PORT完畢----

echo --------------------

  @ping 127.0.0.1 -n 3 >nul

echo -------------------------------------

echo ----正在開(kāi)啟系統(tǒng)防火墻 請(qǐng)稍后....----

echo -------------------------------------

  sc config sharedaccess start= auto & net start sharedaccess

echo ------------------------

echo ----系統(tǒng)防火墻已開(kāi)啟----

echo ------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------

echo ----正在關(guān)閉共享打印服務(wù)----

echo ----------------------------

  @sc config Spooler start= disabled

  sc config LanmanServer start= disabled

  sc config LmHosts start= disabled

echo --------------------------

echo ----已關(guān)閉共享打印服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------

echo ----正在關(guān)閉遠(yuǎn)程協(xié)助服務(wù)----

echo ----------------------------

  @sc config RDSessMgr start= disabled

echo --------------------------

echo ----已關(guān)閉遠(yuǎn)程協(xié)助服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------

echo ----正在關(guān)閉遠(yuǎn)程注冊(cè)表服務(wù)----

echo ------------------------------

  @sc config RemoteRegistry start= disabled

echo ----------------------------

echo ----已關(guān)閉遠(yuǎn)程注冊(cè)表服務(wù)----

echo ----------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------

echo ----關(guān)閉自動(dòng)硬件播放通知----

echo ----------------------------

  sc config ShellHWDetection start= disabled

echo -----------------------

echo ----自動(dòng)播放通知關(guān)閉---

echo -----------------------

  @ping 127.0.0.1 -n 3 >nul

echo ----------------------------------------

echo ----正在關(guān)閉替換憑據(jù)下的啟動(dòng)進(jìn)程服務(wù)----

echo ----------------------------------------

  sc config seclogon start= disabled

echo --------------------------

echo ----已關(guān)閉啟動(dòng)進(jìn)程服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo ------------------------------------

echo ----IEEE 802.11 適配器的自動(dòng)配置----

echo ------------------------------------

  sc config WZCSVC start= disabled

echo ------------------

echo ----已關(guān)閉IEEE----

echo ------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------------

echo ----客戶端跟蹤服務(wù)關(guān)閉----

echo --------------------------

  sc config TrkSvr start= disabled

  sc config MSDTC start= disabled

echo ----------------------------

echo ----已關(guān)閉客戶端跟蹤服務(wù)----

echo ----------------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------

echo ----幫助中心關(guān)閉----

echo --------------------

  sc config helpsvc start= disabled

echo --------------------------

echo ----已關(guān)閉幫助中心服務(wù)----

echo --------------------------

  @ping 127.0.0.1 -n 3 >nul

echo --------------------------------

echo --------------------------------

echo ---- 系統(tǒng)權(quán)限加固 ----

echo --------------------------------

echo --------------------------------

echo -------------------------------------------------------

echo ----C盤(系統(tǒng)盤) (administrators,system完全控制權(quán)限)----

echo -------------------------------------------------------

  cacls C:\ /t /c /g administrators:F system:F

echo -------------------------------------------

echo ----Common Files (everyone用戶只讀權(quán)限)----

echo -------------------------------------------

  Cacls "C:\Program Files\Common Files" /t /e /c /g everyone:R

echo -------------------------------------------------------------

echo ----IIS Temporary Compressed Files (everyone用戶更改權(quán)限)----

echo -------------------------------------------------------------

  Cacls "C:\WINDOWS\IIS Temporary Compressed Files" /t /e /c /g everyone:C

echo --------------------------------------------

echo ----Microsoft.Net (everyone用戶只讀權(quán)限)----

echo --------------------------------------------

  Cacls C:\WINDOWS\Microsoft.Net /t /e /c /g everyone:R

echo ------------------------------------------------------

echo ----Temporary ASP.NET Files (everyone用戶更改權(quán)限)----

echo ------------------------------------------------------

  Cacls "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Temporary ASP.NET Files" /t /e /c /g everyone:C

echo ------------------------------------------------------

echo ----Temporary ASP.NET Files (everyone用戶更改權(quán)限)----

echo ------------------------------------------------------

  Cacls "C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files" /t /e /c /g everyone:C

echo -------------------------------------------

echo ----Registration (everyone用戶讀取權(quán)限)----

echo -------------------------------------------

  Cacls C:\WINDOWS\Registration /t /e /c /g everyone:R

echo -----------------------------------

echo ----Temp (everyone用戶更改權(quán)限)----

echo -----------------------------------

  Cacls C:\WINDOWS\Temp /t /e /c /g everyone:C

echo -------------------

echo ----assembly (everyone用戶讀取權(quán)限)----

echo ---------------------------------------

  Cacls C:\WINDOWS\assembly /t /e /c /g everyone:R

echo -------------------------------------

echo ----WinSxS (everyone用戶讀取權(quán)限)----

echo -------------------------------------

  Cacls C:\WINDOWS\WinSxS /t /e /c /g everyone:R

echo ------------------------------------

echo ----Fonts (everyone用戶讀取權(quán)限)----

echo ------------------------------------

  Cacls C:\WINDOWS\Fonts /t /e /c /g everyone:R

echo ---------------------------------------

echo ----System32 (everyone用戶讀取權(quán)限)----

echo ---------------------------------------

  Cacls C:\WINDOWS\System32 /t /e /c /g everyone:R

echo ------------------------------------------

echo ----msdtc (networkservice用戶更改權(quán)限)----

echo ------------------------------------------

  Cacls C:\windows\system32\msdtc /t /e /c /g networkservice:C

echo -----------------------------------------------------

echo ----ASP Compiled Templates (everyone用戶更改權(quán)限)----

echo -----------------------------------------------------

  Cacls "C:\WINDOWS\system32\inetsrv\ASP Compiled Templates" /t /e /c /g everyone:C

echo ------------------------------------

echo ----*.exe (去除everyone用戶權(quán)限)----

echo ------------------------------------

  Cacls C:\WINDOWS\System32\*.exe /e /c /r everyone

echo ------------------------------------

echo ----cmd.exe (去除system用戶權(quán)限)----

echo ------------------------------------

  Cacls C:\WINDOWS\System32\cmd.exe /e /c /r system

echo ------------------------------------

echo ----net.exe (去除system用戶權(quán)限)----

echo ------------------------------------

  Cacls C:\WINDOWS\System32 et.exe /e /c /r system

echo -------------------------------------

echo ----net1.exe (去除system用戶權(quán)限)----

echo -------------------------------------

  Cacls C:\WINDOWS\System32 et1.exe /e /c /r system

echo ----------------------------------------

echo ----msdtc.exe (everyone用戶讀取權(quán)限)----

echo ----------------------------------------

  Cacls C:\WINDOWS\System32\msdtc.exe /e /c /g everyone:R

echo ------------------------------------------

echo ----dllhost.exe (everyone用戶讀取權(quán)限)----

echo ------------------------------------------

  Cacls C:\WINDOWS\System32\dllhost.exe /e /c /g everyone:R

echo ------------------------------------------

echo ----svchost.exe (everyone用戶讀取權(quán)限)----

echo ------------------------------------------

  Cacls C:\WINDOWS\System32\svchost.exe /e /c /g everyone:R

echo --------------------

echo --------------------

echo ----系統(tǒng)加固完畢----

echo --------------------

echo --------------------

  @ping 127.0.0.1 -n 3 >nul

echo -----------------------------

echo ----安全設(shè)置完畢 歡迎使用----

echo -----------------------------

echo ------------------

echo ----重啟服務(wù)器----

echo ------------------

  @ping 127.0.0.1

  shutdown -r

  @pause

將上面的代碼保存為1.cmd或1.bat,雙擊運(yùn)行下即可。


名稱欄目:Win2003環(huán)境下的一鍵系統(tǒng)安全批處理
分享鏈接:http://www.5511xx.com/article/ccshdsh.html