发一个封常见病毒端口的“转发 ACL 规则”,没有的请大家继续补充。 
(注:其实最好的方法就是只开固定的几个常用端口,如21,80,53等,要不然下面的这些端口够你设上一阵子的 :-) 
  ) 
 
要封的端口 病毒类型 
135-139  
41 DeepThroat.Trojan-1 
41 DeepThroat.Trojan-8 
69 Worm.MsBlaster-2 
79 FireHotcker.Trojan-1 
82 [email=Worm.NetSky.Y@mm]Worm.NetSky.Y@mm[/email] 
113 W32.Korgo.A/B/C/D/E/F-1 
123 Worm.Sobig.f-1 
445 W32.Korgo.A/B/C/D/E/F-5 
593  
999 DeepThroat.Trojan-3 
999 DeepThroat.Trojan-10 
1003 BackDoorTrojan-1 
1015 Doly1.0/1.35/1.5trojan-2 
1033 NetSpy.Trojan-2 
1047 GateCrasher.Trojan-1 
1068 Worm.Sasser.a 
1092 Worm.Lovgate.f/g 
1214  
1234 SubSeven-4 
1243 SubSeven-3 
1368 screen.cast 
1373 hromgrafx 
1377 cichlid 
1784 Snid.X2Trojan-1 
2041 W33.Korgo.A/B/C/D/E/F-2 
2140 DeepThroat.Trojan-7 
2283 Backdoor.Nibu.B-2 
2535 Worm.BBeagle.aa/ab/w/x-z-2 
2556 Worm.BBeagle.p/q/r/n 
2583 WinCrash.Trojan-1 
2716 PrayerTrojan-1 
2745 Worm.BBeagle.c-g/j-l 
2773 Backdoor.YAI..Trojan-1 
2774 SubSeven-1 
3024 WinCrash.Trojan-2 
3067 W32.Korgo.A/B/C/D/E/F-3 
3150 DeepThroat.Trojan-2 
3150 DeepThroat.Trojan-9 
3410 Backdoor.OptixPro 
3422 Backdoor.IRC.Aladinz.R-1 
3586 Snid.X2Trojan-2 
3700 Portal.of.Doom.Trojan-3 
3700 Portal.of.Doom.Trojan-7 
3791 Eclypse.Trojan-1 
3791 Eclypse.Trojan-1 
3801 Eclypse.Trojan-2 
3801 Eclypse.Trojan-2 
4092 WinCrash.Trojan-3 
4444 Delta.Source.Trojan-3 
4444 Worm.MsBlaster-1 
4751 Worm.BBeagle.s/t/u/v 
5031 FireHotcker.Trojan-2 
5238 Worm.LovGate.r.RpcExploit 
5321 FireHotcker.Trojan-3 
5554 W32.Dabber.A/B-1 
5554 Worm.Sasser.b/c/f 
5598 BackDoorTrojan-2 
5698 BackDoorTrojan-3 
5714 WinCrash.Trojan-4 
6400 TheThing.Trojan-1 
6667 W32.Korgo.A/B/C/D/E/F-4 
6670 DeepThroat.Trojan-4 
6670 DeepThroat.Trojan-11 
6771 DeepThroat.Trojan-5 
6771 DeepThroat.Trojan-12 
6777 Worm.BBeagle.a.Bagle.a. 
6789 [email=Worm.NetSky.S/T/U@mm]Worm.NetSky.S/T/U@mm[/email] 
6883 Delta.Source.Trojan-1 
6883 Delta.Source.Trojan-5 
7215 Backdoor.YAI.Trojan-2 
7306 Netspy3.0Trojan 
7609 Snid.X2Trojan-3 
7626 Trojan.BingHe 
7777 TheThing.Trojan-2 
8011 WAY.Trojan 
8102 Trojan 
8787 Back.Orifice.2000.Trojan-1 
8787 Back.Orifice.2000.Trojan-6 
8866 Worm.BBeagle.b 
8879 Back.Orifice.2000.Trojan-2 
8879 Back.Orifice.2000.Trojan-7 
8967 W32.Dabber.A/B-2 
8998 Worm.Sobig.f-3 
9878 TransScout.Trojan-2 
9995 Worm.Sasser.d 
9996 Worm.Sasser.b/c/f 
9999 PrayerTrojan-2 
10000 Backdoor.Nibu.E/G/H 
10067 Portal.of.Doom.Trojan-1 
10067 Portal.of.Doom.Trojan-5 
10167 Portal.of.Doom.Trojan-2 
10167 Portal.of.Doom.Trojan-6 
10168 Worm.Lovgate.a/b/c/d 
11000 Senna.Spy.Trojan-1 
11831 LatinusTrojan-1 
12478 BionetTrojan-2 
13000 Senna.Spy.Trojan-2 
16959 SubSeven-7 
18753 Shaft.DDoS.Trojan-1 
19191 Trojan.NianSeHoYian 
20034 Block.NetBus.Trojan-2 
20034 Block.NetBus.Trojan-4 
20168 Worm.Lovgate.f/g 
20432 Shaft.DDoS.Trojan-2 
20742 Worm.BBEagle.m-2 
20808 Worm.Lovgate.v.QQ 
21544 SchwindlerTrojan-1 
21554 GirlFriend.Trojan-1 
21554 GirlFriend.Trojan-2 
25982 Moonpie.Trojan-2 
26274 Delta.Source.Trojan-2 
26274 Delta.Source.Trojan-6 
27374 SubSeven-2 
29559 LatinusTrojan-2 
30133 NetSphere.Trojan-2 
31338 NetSpy.DK.Trojan-1 
31554 SchwindlerTrojan-2 
31666 Back.Orifice.2000.Trojan-3 
31666 Back.Orifice.2000.Trojan-8 
34555 Trin00.DDoS.Trojan-1 
35555 Trin00.DDoS.Trojan-2 
43958 Backdoor.IRC.Aladinz.R-2 
44444 Delta.Source.Trojan-7 
47262 Delta.Source.Trojan-4 
47262 Delta.Source.Trojan-8 
54283 Backdoor.YAI.Trojan-3 
57922 BionetTrojan-3 
60000 DeepThroat.Trojan-6 
60000 DeepThroat.Trojan-13 
65000 Devil.DDoS.Trojan 
65390 Eclypse.Trojan-3 
1000-1001 Backdoor.Nibu.B-1 
1010-1012 Doly1.0/1.35/1.5trojan-1 
1024-1030 NetSpy.Trojan-1 
12345-12346 Block.NetBus.Trojan-1 
12345-12346 Block.NetBus.Trojan-3 
12348-12349 BionetTrojan-1 
135-139  
1363-1364 ndm.requester 
1999-2005 TransScout.Trojan-1 
23444-23445 NetBull.Trojan 
25685-25686 Moonpie.Trojan-1 
30100-30103 NetSphere.Trojan-1 
3127-3198 Worm.Novarg.a.Mydoom.a.-1 
31337-31338 Back.Orifice.2000.Trojan-4 
31337-31338 Back.Orifice.2000.Trojan-9 
31337-31339 NetSpy.Trojan-3 
54320-54321 Back.Orifice.2000.Trojan-5 
54320-54321 Back.Orifice.2000.Trojan-10 
5880-5882 Y3K.RAT.Trojan-1 
5880-5882 Eclypse.Trojan-3 
5888-5889 Y3K.RAT.Trojan-2 
5888-5889 Eclypse.Trojan-4 
6711-6713 SubSeven-5 
6969-6970 GateCrasher.Trojan-2 
7300-7301 NetMonitor.Trojan-1 
7306-7308 NetMonitor.Trojan-2 
9872-9875 Portal.of.Doom.Trojan-4 
9872-9875 Portal.of.Doom.Trojan-8 
9898-9999 W32.Dabber.A/B-3 
995-999 Worm.Sobig.f-2 
 
 
转发ACL规则.xls
(24.5 KB, 下载次数: 898)
 |   
 
  
 |