Win Server Security batch file
This is really good, finger set, eliminates the tedious/uploadfiles/okay_77574.rar of manual setting
Copy Code code as follows:
Echo.
Echo------------------------------------------------------
Echo.
echo ......
Echo.
NET share C $/delete
NET share d$/delete
NET share e$/delete
NET share f$/delete
NET share admin$/delete
NET share ipc$/delete
net stop server
net stop LanmanWorkstation
Regsvr32/u C:\WINNT\System32\wshom.ocx
Regsvr32/u C:\WINNT\system32\shell32.dll
Regsvr32/u C:\WINNT\system32\shell.dll
cacls c:\winnt\system32\shell32.dll/g administrators:f System:f
cacls c:\winnt\system32\shell.dll/g administrators:f System:f
cacls c:\/g administrators:f system:f
cacls d:\/g administrators:f system:f
Echo.
echo .....
Echo.
Echo------------------------------------------------------
Echo.
echo ...........
Echo.
Echo.. Delshare.reg .....
echo Windows Registry Editor Version 5.00> C:\delshare.reg
Echo [hkey_local_machine\system\currentcontrolset\services\lanmanserver\parameters]>> C:\delshare.reg
echo "AutoShareWks" =dword:00000000>> C:\delshare.reg
echo "AutoShareServer" =dword:00000000>> C:\delshare.reg
Echo.. Delshare.reg .....
REGEDIT/S C:\delshare.reg
Echo.. Delshare.reg .....
Del C:\delshare.reg
Echo.
echo .....
Echo.
Echo =========================================================
Echo.
echo ..... ..... dos ...........
Echo.
echo .....
echo Windows Registry Editor Version 5.00> C:\dosforwin.reg
Echo [hkey_local_machine\system\currentcontrolset\services\tcpip\parameters]>> C:\dosforwin.reg
echo "EnableICMPRedirect" =dword:00000000>> C:\dosforwin.reg
echo "Deadgwdetectdefault" =dword:00000001>> C:\dosforwin.reg
echo "Dontadddefaultgatewaydefault" =dword:00000000>> C:\dosforwin.reg
echo "EnableSecurityFilters" =dword:00000000 ">> C:\dosforwin.reg
echo "Allowunqualifiedquery" =dword:00000000>> C:\dosforwin.reg
echo "Prioritizerecorddata" =dword:00000001>> C:\dosforwin.reg
echo "ReservedPorts" =hex (7):31,00,34,00,33,00,33,00,2d,00,31,00,34,00,33,00,34,00,\>> C:\dosforwin.reg
Echo 00,00,00,00>> C:\dosforwin.reg
echo "SynAttackProtect" =dword:00000002>> C:\dosforwin.reg
echo "EnablePMTUDiscovery" =dword:00000000>> C:\dosforwin.reg
echo "NoNameReleaseOnDemand" =dword:00000001>> C:\dosforwin.reg
echo "EnableDeadGWDetect" =dword:00000000>> C:\dosforwin.reg
echo "KeepAliveTime" =dword:00300000>> C:\dosforwin.reg
echo "PerformRouterDiscovery" =dword:00000000>> C:\dosforwin.reg
echo "Enableicmpredirects" =dword:00000000>> C:\dosforwin.reg
Echo.
Echo ==========================================================
Echo.. Dosforwin.reg .....
REGEDIT/S C:\dosforwin.reg
Echo.. Dosforwin.reg .....
Del C:\dosforwin.reg
Echo ==============================================================
Echo.
echo ..... (......................).
Echo.
Echo.. Telnet,...... telnet.
echo .....
echo Windows Registry Editor Version 5.00> C:\telnet.reg
Echo [hkey_local_machine\system\currentcontrolset\services\tlntsvr]>> C:\telnet.reg
echo "Start" =dword:00000004>> C:\telnet.reg
Echo.
Echo.. Telnet.reg .....
REGEDIT/S C:\telnet.reg
Echo.
Echo.. Telnet.reg .....
Del C:\telnet.reg
Echo.
Echo ===============================================================
Echo.. Remote Registry Service ... .....
echo .....
Echo.
echo Windows Registry Editor Version 5.00> C:\regedit.reg
Echo [hkey_local_machine\system\currentcontrolset\services\remoteregistry]>> C:\regedit.reg
echo "Start" =dword:00000004>> C:\regedit.reg
Echo.
Echo.. Regedit.reg .....
REGEDIT/S C:\regedit.reg
Echo.
Echo ...
Del C:\regedit.reg
Echo ===============================================================
Echo.. Messenger .....
echo .....
echo Windows Registry Editor Version 5.00> C:\message.reg
Echo [hkey_local_machine\system\currentcontrolset\services\messenger]>> C:\message.reg
echo "Start" =dword:00000004>> C:\message.reg
Echo.
Echo.. Message.reg .....
REGEDIT/S C:\message.reg
Echo.
Echo.. Message.reg
Del C:\message.reg
Echo ===============================================================
Echo.. LanmanWorkstation .....
echo .....
echo Windows Registry Editor Version 5.00> C:\lanmanworkstation.reg
Echo [hkey_local_machine\system\currentcontrolset\services\lanmanworkstation]>> C:\lanmanworkstation.reg
echo "Start" =dword:00000004>> C:\lanmanworkstation.reg
Echo.
Echo.. Lanmanworkstation.reg .....
REGEDIT/S C:\lanmanworkstation.reg
Echo.
Echo.. Lanmanworkstation.reg
Del C:\lanmanworkstation.reg
Echo ===============================================================
Echo.. LanManServer .....
echo .....
echo Windows Registry Editor Version 5.00> C:\lanmanserver.reg
Echo [hkey_local_machine\system\currentcontrolset\services\lanmanserver]>> C:\lanmanserver.reg
echo "Start" =dword:00000004>> C:\lanmanserver.reg
Echo.
Echo.. Lanmanserver.reg .....
REGEDIT/S C:\lanmanserver.reg
Echo.
Echo.. Lanmanserver.reg
Del C:\lanmanserver.reg
Echo ===============================================================
Echo.. Alerter .....
echo .....
echo Windows Registry Editor Version 5.00> C:\Alerter.reg
Echo [hkey_local_machine\system\currentcontrolset\services\alerter]>> C:\Alerter.reg
echo "Start" =dword:00000004>> C:\Alerter.reg
Echo.
Echo.. Alerter.reg .....
REGEDIT/S C:\Alerter.reg
Echo.
Echo.. Alerter.reg
Del C:\Alerter.reg
Echo ===============================================================
Echo.. Browser .....
echo .....
echo Windows Registry Editor Version 5.00> C:\Browser.reg
Echo [hkey_local_machine\system\currentcontrolset\services\browser]>> C:\Browser.reg
echo "Start" =dword:00000004>> C:\Browser.reg
Echo.
Echo.. Browser.reg .....
REGEDIT/S C:\Browser.reg
Echo.
Echo.. Browser.reg
Del C:\Browser.reg
Echo ===============================================================
Echo.. Dfs.......
echo .....
echo Windows Registry Editor Version 5.00> C:\Dfs.reg
Echo [hkey_local_machine\system\currentcontrolset\services\dfs]>> C:\Dfs.reg
echo "Start" =dword:00000004>> C:\Dfs.reg
Echo.
Echo.. Dfs.reg .....
REGEDIT/S C:\Dfs.reg
Echo.
Echo.. Dfs.reg
Del C:\Dfs.reg
Echo ===============================================================
Echo.. Spooler .....
echo .....
echo Windows Registry Editor Version 5.00> C:\Spooler.reg
Echo [hkey_local_machine\system\currentcontrolset\services\spooler]>> C:\Spooler.reg
echo "Start" =dword:00000004>> C:\Spooler.reg
Echo.
Echo.. Spooler.reg .....
REGEDIT/S C:\Spooler.reg
Echo.
Echo.. Spooler.reg
Del C:\Spooler.reg
Echo ==============================================================
Echo ... TCP/IP NetBIOS Helper Service
echo .....
echo Windows Registry Editor Version 5.00> C:\netbios.reg
Echo [hkey_local_machine\system\currentcontrolset\services\lmhosts]>> C:\netbios.reg
echo "Start" =dword:00000004>> C:\netbios.reg
Echo.
Echo.. Netbios.reg .....
REGEDIT/S C:\netbios.reg
Echo.
Echo.. Netbios.reg
Del C:\netbios.reg
Echo ===============================================================
Echo ===============================================================
Echo Powered by zgsj.com
Echo web@zgsj.com
Goto:end