设为首页 收藏本站
查看: 828|回复: 0

Windows 2003 服务器安全设置-批处理 (附参考链接)

[复制链接]

尚未签到

发表于 2015-5-6 08:53:29 | 显示全部楼层 |阅读模式
长期维护windows服务器终结出来的安全设置批处理与大家分享,复制以下全部内容用记事本另存为bat或者cmd执行

===================分隔符号======================

echo.
echo ------------------------------------------------------
echo.
echo ...........
echo.
net share c$ /delete
net share d$ /delete
net share e$ /delete
net share f$ /delete
net share admin$ /delete
net share ipc$ /delete
net stop server
net stop lanmanworkstation
regsvr32/u C:\WINDOWS\System32\wshom.ocx
regsvr32/u C:\WINDOWS\system32\shell32.dll
regsvr32/u C:\WINdows\SYSTEM32\scrrun.DLL
cacls c:\WINDOWS\system32\shell32.dll /g administrators:fsystem:f
cacls c:\WINDOWS\system32\shell.dll /g administrators:fsystem:f
cacls c:\ /g administrators:f system:f
cacls d:\ /g administrators:f system:f
cacls e:\ /g administrators:f system:f
cacls f:\ /g administrators:f system:f
echo.
echo ..........
echo.
echo ------------------------------------------------------
echo.
echo .................
echo.
echo .. delshare.reg .......
echo Windows Registry Editor Version 5.00>c:\delshare.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters]>>c:\delshare.reg
echo "AutoShareWks"=dword:00000000>>c:\delshare.reg
echo"AutoShareServer"=dword:00000000>>c:\delshare.reg
echo .. delshare.reg .....
regedit /s c:\delshare.reg
echo .. delshare.reg ....
del c:\delshare.reg
echo .
echo ........
echo .
echo=========================================================
echo .
echo .....................dos....
echo .
echo .........
echo Windows Registry Editor Version 5.00>c:\dosforwin.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters]>>c:\dosforwin.reg
echo"EnableICMPRedirect"=dword:00000000>>c:\dosforwin.reg
echo"DeadGWDetectDefault"=dword:00000001>>c:\dosforwin.reg
echo"DontAddDefaultGatewayDefault"=dword:00000000>>c:\dosforwin.reg
echo"EnableSecurityFilters"=dword:00000000">>c:\dosforwin.reg
echo"AllowUnqualifiedQuery"=dword:00000000>>c:\dosforwin.reg
echo"PrioritizeRecordData"=dword:00000001>>c:\dosforwin.reg
echo"ReservedPorts"=hex(7):31,00,34,00,33,00,33,00,2d,00,31,00,34,00,33,00,34,00,\>>c:\dosforwin.reg
echo 00,00,00,00>>c:\dosforwin.reg
echo"SynAttackProtect"=dword:00000002>>c:\dosforwin.reg
echo"EnablePMTUDiscovery"=dword:00000000>>c:\dosforwin.reg
echo"NoNameReleaseOnDemand"=dword:00000001>>c:\dosforwin.reg
echo"EnableDeadGWDetect"=dword:00000000>>c:\dosforwin.reg
echo "KeepAliveTime"=dword:00300000>>c:\dosforwin.reg
echo"PerformRouterDiscovery"=dword:00000000>>c:\dosforwin.reg
echo"EnableICMPRedirects"=dword:00000000>>c:\dosforwin.reg
echo .
echo==========================================================
echo .. dosforwin.reg .....
regedit /s c:\dosforwin.reg
echo .. dosforwin.reg ....
del c:\dosforwin.reg
echo==============================================================
echo .
echo ..........(......................).
echo .
echo ..telnet,......telnet.
echo ..........
echo Windows Registry Editor Version 5.00>c:\telnet.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TlntSvr]>>c:\telnet.reg
echo "Start"=dword:00000004>>c:\telnet.reg
echo .
echo .. telnet.reg .....
regedit /s c:\telnet.reg
echo .
echo .. telnet.reg ....
del c:\telnet.reg
echo .
echo===============================================================
echo ..Remote Registry Service...........
echo .........
echo .
echo Windows Registry Editor Version 5.00>c:\regedit.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteRegistry]>>c:\regedit.reg
echo "Start"=dword:00000004>>c:\regedit.reg
echo .
echo .. regedit.reg .....
regedit /s c:\regedit.reg
echo .
echo ......
del c:\regedit.reg
echo===============================================================
echo ..Messenger.......
echo .........
echo Windows Registry Editor Version 5.00>c:\message.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Messenger]>>c:\message.reg
echo "Start"=dword:00000004>>c:\message.reg
echo .
echo .. message.reg .....
regedit /s c:\message.reg
echo .
echo .. message.reg
del c:\message.reg
echo===============================================================
echo ..lanmanworkstation.......
echo .........
echo Windows Registry Editor Version 5.00>c:\lanmanworkstation.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanworkstation]>>c:\lanmanworkstation.reg
echo "Start"=dword:00000004>>c:\lanmanworkstation.reg
echo .
echo .. lanmanworkstation.reg .....
regedit /s c:\lanmanworkstation.reg
echo .
echo .. lanmanworkstation.reg
del c:\lanmanworkstation.reg
echo===============================================================
echo ..lanmanserver.......
echo .........
echo Windows Registry Editor Version 5.00>c:\lanmanserver.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver]>>c:\lanmanserver.reg
echo "Start"=dword:00000004>>c:\lanmanserver.reg
echo .
echo .. lanmanserver.reg .....
regedit /s c:\lanmanserver.reg
echo .
echo .. lanmanserver.reg
del c:\lanmanserver.reg
echo===============================================================
echo ..lanmanserver.......
echo .........
echo Windows Registry Editor Version 5.00>c:\lanmanserver.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver]>>c:\lanmanserver.reg
echo "Start"=dword:00000004>>c:\lanmanserver.reg
echo .
echo .. lanmanserver.reg .....
regedit /s c:\lanmanserver.reg
echo .
echo .. lanmanserver.reg
del c:\lanmanserver.reg
echo===============================================================
echo ..Alerter.......
echo .........
echo Windows Registry Editor Version 5.00>c:\Alerter.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Alerter]>>c:\Alerter.reg
echo "Start"=dword:00000004>>c:\Alerter.reg
echo .
echo .. Alerter.reg .....
regedit /s c:\Alerter.reg
echo .
echo .. Alerter.reg
del c:\Alerter.reg
echo===============================================================
echo ..Browser.......
echo .........
echo Windows Registry Editor Version 5.00>c:\Browser.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Browser]>>c:\Browser.reg
echo "Start"=dword:00000004>>c:\Browser.reg
echo .
echo .. Browser.reg .....
regedit /s c:\Browser.reg
echo .
echo .. Browser.reg
del c:\Browser.reg
echo===============================================================
echo ..Dfs.......
echo .........
echo Windows Registry Editor Version 5.00>c:\Dfs.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dfs]>>c:\Dfs.reg
echo "Start"=dword:00000004>>c:\Dfs.reg
echo .
echo .. Dfs.reg .....
regedit /s c:\Dfs.reg
echo .
echo .. Dfs.reg
del c:\Dfs.reg
echo===============================================================
echo ..Spooler.......
echo .........
echo Windows Registry Editor Version 5.00>c:\Spooler.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Spooler]>>c:\Spooler.reg
echo "Start"=dword:00000004>>c:\Spooler.reg
echo .
echo .. Spooler.reg .....
regedit /s c:\Spooler.reg
echo .
echo .. Spooler.reg
del c:\Spooler.reg
echo==============================================================
echo ...TCP/IP NetBIOS Helper Service
echo .........
echo Windows Registry Editor Version 5.00>c:\netbios.reg
echo[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LmHosts]>>c:\netbios.reg
echo "Start"=dword:00000004>>c:\netbios.reg
echo .
echo .. netbios.reg .....
regedit /s c:\netbios.reg
echo .
echo .. netbios.reg
del c:\netbios.reg
echo===============================================================
echo===============================================================
goto :END

===================分隔符号======================
参考链接
http://support.microsoft.com/kb/324270
http://blog.iyunv.com/buleideli/article/details/3268413
http://msdn.microsoft.com/zh-cn/library/ff648853.aspx
http://blog.iyunv.com/luojunjing/article/details/286333
http://tech.163.com/06/0624/17/2KD9S74U00091VCV.html
http://social.technet.microsoft.com/Forums/en-US/ce23c17a-d7a8-418e-969c-b7790b9dde64/windows2003tcpipdos
http://blog.iyunv.com/tuwen/article/details/2191742
http://hi.baidu.com/sei_zhouyu/item/210d8cde48019911d68ed045

运维网声明 1、欢迎大家加入本站运维交流群:群②:261659950 群⑤:202807635 群⑦870801961 群⑧679858003
2、本站所有主题由该帖子作者发表,该帖子作者与运维网享有帖子相关版权
3、所有作品的著作权均归原作者享有,请您和我们一样尊重他人的著作权等合法权益。如果您对作品感到满意,请购买正版
4、禁止制作、复制、发布和传播具有反动、淫秽、色情、暴力、凶杀等内容的信息,一经发现立即删除。若您因此触犯法律,一切后果自负,我们对此不承担任何责任
5、所有资源均系网友上传或者通过网络收集,我们仅提供一个展示、介绍、观摩学习的平台,我们不对其内容的准确性、可靠性、正当性、安全性、合法性等负责,亦不承担任何法律责任
6、所有作品仅供您个人学习、研究或欣赏,不得用于商业或者其他用途,否则,一切后果均由您自己承担,我们对此不承担任何法律责任
7、如涉及侵犯版权等问题,请您及时通知我们,我们将立即采取措施予以解决
8、联系人Email:admin@iyunv.com 网址:www.yunweiku.com

所有资源均系网友上传或者通过网络收集,我们仅提供一个展示、介绍、观摩学习的平台,我们不对其承担任何法律责任,如涉及侵犯版权等问题,请您及时通知我们,我们将立即处理,联系人Email:kefu@iyunv.com,QQ:1061981298 本贴地址:https://www.iyunv.com/thread-64035-1-1.html 上篇帖子: windows 2003 网络负载平衡设置实战 [转] 下篇帖子: Windows Server 2003网络服务器安全
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

扫码加入运维网微信交流群X

扫码加入运维网微信交流群

扫描二维码加入运维网微信交流群,最新一手资源尽在官方微信交流群!快快加入我们吧...

扫描微信二维码查看详情

客服E-mail:kefu@iyunv.com 客服QQ:1061981298


QQ群⑦:运维网交流群⑦ QQ群⑧:运维网交流群⑧ k8s群:运维网kubernetes交流群


提醒:禁止发布任何违反国家法律、法规的言论与图片等内容;本站内容均来自个人观点与网络等信息,非本站认同之观点.


本站大部分资源是网友从网上搜集分享而来,其版权均归原作者及其网站所有,我们尊重他人的合法权益,如有内容侵犯您的合法权益,请及时与我们联系进行核实删除!



合作伙伴: 青云cloud

快速回复 返回顶部 返回列表