热搜词
发表于 2008-8-29 09:17:44 | 显示全部楼层 |阅读模式
发一个封常见病毒端口的“转发 ACL 规则”,没有的请大家继续补充。
(注:其实最好的方法就是只开固定的几个常用端口,如21,80,53等,要不然下面的这些端口够你设上一阵子的 :-)
  )

要封的端口 病毒类型
135-139
41 DeepThroat.Trojan-1
41 DeepThroat.Trojan-8
69 Worm.MsBlaster-2
79 FireHotcker.Trojan-1
82 [email=Worm.NetSky.Y@mm]Worm.NetSky.Y@mm[/email]
113 W32.Korgo.A/B/C/D/E/F-1
123 Worm.Sobig.f-1
445 W32.Korgo.A/B/C/D/E/F-5
593
999 DeepThroat.Trojan-3
999 DeepThroat.Trojan-10
1003 BackDoorTrojan-1
1015 Doly1.0/1.35/1.5trojan-2
1033 NetSpy.Trojan-2
1047 GateCrasher.Trojan-1
1068 Worm.Sasser.a
1092 Worm.Lovgate.f/g
1214
1234 SubSeven-4
1243 SubSeven-3
1368 screen.cast
1373 hromgrafx
1377 cichlid
1784 Snid.X2Trojan-1
2041 W33.Korgo.A/B/C/D/E/F-2
2140 DeepThroat.Trojan-7
2283 Backdoor.Nibu.B-2
2535 Worm.BBeagle.aa/ab/w/x-z-2
2556 Worm.BBeagle.p/q/r/n
2583 WinCrash.Trojan-1
2716 PrayerTrojan-1
2745 Worm.BBeagle.c-g/j-l
2773 Backdoor.YAI..Trojan-1
2774 SubSeven-1
3024 WinCrash.Trojan-2
3067 W32.Korgo.A/B/C/D/E/F-3
3150 DeepThroat.Trojan-2
3150 DeepThroat.Trojan-9
3410 Backdoor.OptixPro
3422 Backdoor.IRC.Aladinz.R-1
3586 Snid.X2Trojan-2
3700 Portal.of.Doom.Trojan-3
3700 Portal.of.Doom.Trojan-7
3791 Eclypse.Trojan-1
3791 Eclypse.Trojan-1
3801 Eclypse.Trojan-2
3801 Eclypse.Trojan-2
4092 WinCrash.Trojan-3
4444 Delta.Source.Trojan-3
4444 Worm.MsBlaster-1
4751 Worm.BBeagle.s/t/u/v
5031 FireHotcker.Trojan-2
5238 Worm.LovGate.r.RpcExploit
5321 FireHotcker.Trojan-3
5554 W32.Dabber.A/B-1
5554 Worm.Sasser.b/c/f
5598 BackDoorTrojan-2
5698 BackDoorTrojan-3
5714 WinCrash.Trojan-4
6400 TheThing.Trojan-1
6667 W32.Korgo.A/B/C/D/E/F-4
6670 DeepThroat.Trojan-4
6670 DeepThroat.Trojan-11
6771 DeepThroat.Trojan-5
6771 DeepThroat.Trojan-12
6777 Worm.BBeagle.a.Bagle.a.
6789 [email=Worm.NetSky.S/T/U@mm]Worm.NetSky.S/T/U@mm[/email]
6883 Delta.Source.Trojan-1
6883 Delta.Source.Trojan-5
7215 Backdoor.YAI.Trojan-2
7306 Netspy3.0Trojan
7609 Snid.X2Trojan-3
7626 Trojan.BingHe
7777 TheThing.Trojan-2
8011 WAY.Trojan
8102 Trojan
8787 Back.Orifice.2000.Trojan-1
8787 Back.Orifice.2000.Trojan-6
8866 Worm.BBeagle.b
8879 Back.Orifice.2000.Trojan-2
8879 Back.Orifice.2000.Trojan-7
8967 W32.Dabber.A/B-2
8998 Worm.Sobig.f-3
9878 TransScout.Trojan-2
9995 Worm.Sasser.d
9996 Worm.Sasser.b/c/f
9999 PrayerTrojan-2
10000 Backdoor.Nibu.E/G/H
10067 Portal.of.Doom.Trojan-1
10067 Portal.of.Doom.Trojan-5
10167 Portal.of.Doom.Trojan-2
10167 Portal.of.Doom.Trojan-6
10168 Worm.Lovgate.a/b/c/d
11000 Senna.Spy.Trojan-1
11831 LatinusTrojan-1
12478 BionetTrojan-2
13000 Senna.Spy.Trojan-2
16959 SubSeven-7
18753 Shaft.DDoS.Trojan-1
19191 Trojan.NianSeHoYian
20034 Block.NetBus.Trojan-2
20034 Block.NetBus.Trojan-4
20168 Worm.Lovgate.f/g
20432 Shaft.DDoS.Trojan-2
20742 Worm.BBEagle.m-2
20808 Worm.Lovgate.v.QQ
21544 SchwindlerTrojan-1
21554 GirlFriend.Trojan-1
21554 GirlFriend.Trojan-2
25982 Moonpie.Trojan-2
26274 Delta.Source.Trojan-2
26274 Delta.Source.Trojan-6
27374 SubSeven-2
29559 LatinusTrojan-2
30133 NetSphere.Trojan-2
31338 NetSpy.DK.Trojan-1
31554 SchwindlerTrojan-2
31666 Back.Orifice.2000.Trojan-3
31666 Back.Orifice.2000.Trojan-8
34555 Trin00.DDoS.Trojan-1
35555 Trin00.DDoS.Trojan-2
43958 Backdoor.IRC.Aladinz.R-2
44444 Delta.Source.Trojan-7
47262 Delta.Source.Trojan-4
47262 Delta.Source.Trojan-8
54283 Backdoor.YAI.Trojan-3
57922 BionetTrojan-3
60000 DeepThroat.Trojan-6
60000 DeepThroat.Trojan-13
65000 Devil.DDoS.Trojan
65390 Eclypse.Trojan-3
1000-1001 Backdoor.Nibu.B-1
1010-1012 Doly1.0/1.35/1.5trojan-1
1024-1030 NetSpy.Trojan-1
12345-12346 Block.NetBus.Trojan-1
12345-12346 Block.NetBus.Trojan-3
12348-12349 BionetTrojan-1
135-139
1363-1364 ndm.requester
1999-2005 TransScout.Trojan-1
23444-23445 NetBull.Trojan
25685-25686 Moonpie.Trojan-1
30100-30103 NetSphere.Trojan-1
3127-3198 Worm.Novarg.a.Mydoom.a.-1
31337-31338 Back.Orifice.2000.Trojan-4
31337-31338 Back.Orifice.2000.Trojan-9
31337-31339 NetSpy.Trojan-3
54320-54321 Back.Orifice.2000.Trojan-5
54320-54321 Back.Orifice.2000.Trojan-10
5880-5882 Y3K.RAT.Trojan-1
5880-5882 Eclypse.Trojan-3
5888-5889 Y3K.RAT.Trojan-2
5888-5889 Eclypse.Trojan-4
6711-6713 SubSeven-5
6969-6970 GateCrasher.Trojan-2
7300-7301 NetMonitor.Trojan-1
7306-7308 NetMonitor.Trojan-2
9872-9875 Portal.of.Doom.Trojan-4
9872-9875 Portal.of.Doom.Trojan-8
9898-9999 W32.Dabber.A/B-3
995-999 Worm.Sobig.f-2

转发ACL规则.xls (24.5 KB, 下载次数: 813)
全部评论0
回复
您需要登录后才可以回帖 登录 | 注册

本版积分规则

QQ|Archiver|手机版|小黑屋|管理员之家 ( 苏ICP备2023053177号-2 )

GMT+8, 2024-10-18 18:24 , Processed in 0.428801 second(s), 25 queries .

Powered by Discuz! X3.5

Cpoyright © 2001-2024 Discuz! Team