Scrip firewall filter

5

Click here to load reader

Transcript of Scrip firewall filter

Page 1: Scrip firewall filter

/ip firewall filter

add action=drop chain=forward comment="Drop Blaster Worm" disabled=no \

dst-port=445 protocol=tcp

add action=drop chain=forward comment="Drop Blaster Worm" disabled=no \

dst-port=445 protocol=udp

add action=drop chain=forward comment=________ disabled=no dst-port=593 \

protocol=tcp

add action=drop chain=forward comment=________ disabled=no dst-port=1024-1030 \

protocol=tcp

add action=drop chain=forward comment="Drop MyDoom" disabled=no dst-port=1080 \

protocol=tcp

add action=drop chain=forward comment=________ disabled=no dst-port=1214 \

protocol=tcp

add action=drop chain=forward comment="ndm requester" disabled=no dst-port=\

1363 protocol=tcp

add action=drop chain=forward comment="ndm server" disabled=no dst-port=1364 \

protocol=tcp

add action=drop chain=forward comment="screen cast" disabled=no dst-port=1368 \

protocol=tcp

add action=drop chain=forward comment=hromgrafx disabled=no dst-port=1373 \

protocol=tcp

add action=drop chain=forward comment=cichlid disabled=no dst-port=1377 \

protocol=tcp

add action=drop chain=forward comment=Worm disabled=no dst-port=1433-1434 \

protocol=tcp

add action=drop chain=forward comment="Drop Beagle" disabled=no dst-port=2535 \

Page 2: Scrip firewall filter

protocol=tcp

add action=drop chain=forward comment="Bagle Virus" disabled=no dst-port=2745 \

protocol=tcp

add action=drop chain=forward comment="Drop Dumaru.Y" disabled=no dst-port=\

2283 protocol=tcp

add action=drop chain=forward comment="Drop Beagle.C-K" disabled=no dst-port=\

2745 protocol=tcp

add action=drop chain=forward comment="Drop MyDoom" disabled=no dst-port=\

3127-3128 protocol=tcp

add action=drop chain=forward comment="Drop Backdoor OptixPro" disabled=no \

dst-port=3410 protocol=tcp

add action=drop chain=forward comment=Worm disabled=no dst-port=4444 \

protocol=tcp

add action=drop chain=forward comment=Worm disabled=no dst-port=4444 \

protocol=udp

add action=drop chain=forward comment="Drop Sasser" disabled=no dst-port=5554 \

protocol=tcp

add action=drop chain=forward comment="Drop Beagle.B" disabled=no dst-port=\

8866 protocol=tcp

add action=drop chain=forward comment="Drop Dabber.A-B" disabled=no dst-port=\

9898 protocol=tcp

add action=drop chain=forward comment="Drop Dumaru.Y" disabled=no dst-port=\

10000 protocol=tcp

add action=drop chain=forward comment="Drop MyDoom.B" disabled=no dst-port=\

10080 protocol=tcp

add action=drop chain=forward comment="Drop NetBus" disabled=no dst-port=\

Page 3: Scrip firewall filter

12345 protocol=tcp

add action=drop chain=forward comment="Drop Kuang2" disabled=no dst-port=\

17300 protocol=tcp

add action=drop chain=forward comment="Drop SubSeven" disabled=no dst-port=\

27374 protocol=tcp

add action=drop chain=forward comment="Virus Blaster - Worm" disabled=no \

dst-port=135-139 protocol=tcp

add action=drop chain=forward comment="Drop Messenger Worm" disabled=no \

dst-port=135-139 protocol=udp

add action=drop chain=input comment="Drop Blaster Worm" disabled=no dst-port=\

445 protocol=tcp

add action=drop chain=input comment="Drop Blaster Worm" disabled=no dst-port=\

445 protocol=udp

add action=drop chain=input comment=________ disabled=no dst-port=593 \

protocol=tcp

add action=drop chain=input comment=________ disabled=no dst-port=1024-1030 \

protocol=tcp

add action=drop chain=input comment="Drop MyDoom" disabled=no dst-port=1080 \

protocol=tcp

add action=drop chain=input comment=________ disabled=no dst-port=1214 \

protocol=tcp

add action=drop chain=input comment="ndm requester" disabled=no dst-port=1363 \

protocol=tcp

add action=drop chain=input comment="ndm server" disabled=no dst-port=1364 \

protocol=tcp

add action=drop chain=input comment="screen cast" disabled=no dst-port=1368 \

Page 4: Scrip firewall filter

protocol=tcp

add action=drop chain=input comment=hromgrafx disabled=no dst-port=1373 \

protocol=tcp

add action=drop chain=input comment=cichlid disabled=no dst-port=1377 \

protocol=tcp

add action=drop chain=input comment=Worm disabled=no dst-port=1433-1434 \

protocol=tcp

add action=drop chain=input comment="Drop Beagle" disabled=no dst-port=2535 \

protocol=tcp

add action=drop chain=input comment="Bagle Virus" disabled=no dst-port=2745 \

protocol=tcp

add action=drop chain=input comment="Drop Dumaru.Y" disabled=no dst-port=2283 \

protocol=tcp

add action=drop chain=input comment="Drop Beagle.C-K" disabled=no dst-port=\

2745 protocol=tcp

add action=drop chain=input comment="Drop MyDoom" disabled=no dst-port=\

3127-3128 protocol=tcp

add action=drop chain=input comment="Drop Backdoor OptixPro" disabled=no \

dst-port=3410 protocol=tcp

add action=drop chain=input comment=Worm disabled=no dst-port=4444 protocol=\

tcp

add action=drop chain=input comment=Worm disabled=no dst-port=4444 protocol=\

udp

add action=drop chain=input comment="Drop Sasser" disabled=no dst-port=5554 \

protocol=tcp

add action=drop chain=input comment="Drop Beagle.B" disabled=no dst-port=8866 \

Page 5: Scrip firewall filter

protocol=tcp

add action=drop chain=input comment="Drop Dabber.A-B" disabled=no dst-port=\

9898 protocol=tcp

add action=drop chain=input comment="Drop Dumaru.Y" disabled=no dst-port=\

10000 protocol=tcp

add action=drop chain=input comment="Drop MyDoom.B" disabled=no dst-port=\

10080 protocol=tcp

add action=drop chain=input comment="Drop NetBus" disabled=no dst-port=12345 \

protocol=tcp

add action=drop chain=input comment="Drop Kuang2" disabled=no dst-port=17300 \

protocol=tcp

add action=drop chain=input comment="Drop SubSeven" disabled=no dst-port=\

27374 protocol=tcp

add action=drop chain=input comment="Virus Blaster - Worm" disabled=no \

dst-port=135-139 protocol=tcp

add action=drop chain=input comment="Drop Messenger Worm" disabled=no \

dst-port=135-139 protocol=udp