关闭TCP/IP筛选的方法及小工具

相信大家都有过这样的经历,入侵的目标Windows服务器主机即便开放了它的终端或是某个指定端口,本地主机也无法连接,但有的端口,比如FTP的21端口、MSSQLServer的1433和1434端口却可以访问,这种情况下,说明对方系统中很有可能是启用了TCP/IP筛选功能,只把允许的端口添加到筛选列表中了,这样除了列表中的端口外,其他端口即便处于开放的状态,远程主机也无法连接。(比防火墙还狠~)

下面给出关闭TCP/IP筛选的办法:(注意:无论使用何种办法,都需要重启一次计算机!)

1.修改注册表值:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\parameters

中的EnableSecurityFilters值改为0。

注意:HKEY_LOCAL_MACHINE\SYSTEM下的ControlSet001和CurrentControlSet中的
数据是同步的,ControlSet002为计算机重启后当前的效果。

2.使用邪恶八进制的恶猫[E.S.T] (EvilCat[E.S.T])写的专门解除TCP/IP的工具(附工具)

3.编写批处理,先将本地的EnableSecurityfilters值改为0并导出,然后用命令regedit /s tcpip.reg,最终

做成自解压缩文件即可。

解压密码:www.dddos.com

附件下载:
tcpip.rar 17.5KB

相关链接:

http://www.dddos.com/post-30.html

双向的TCP流量过滤软件,它允许您添加自定义正则表达式(正则表达式)过滤。预置过滤包括:HTTP头信息,POST和GET数据,域名或即使*过滤*在任何连接传递的数据。 为了对付新的威胁,TCP过滤包括一个强大的威胁检测引擎,用于检测和阻止黑洞,网络攻击,恶意URL和其他基于Web的威胁。 本软件会经常更新数据库,为了您的安全。 [10-01-2012] v1.4.0.0 Added "Password Protect Websites" Password is saved encrypted Added "Status" TAB Added "Execute Action after X minutes of idle activity" (RegEx Rules) Added "Domain:" info in alert dialog (RegEx Rules) Added "URL:" info in alert dialog (RegEx Rules) Improved "Threats Detection Engine (TDE)" Optimized UI Added "Actions" links in Status TAB Added right-click option "Set Password" on Domains->Protected TAB Added right-click option "Options" on RegEx Rules TAB Block download of executable files Block download of PDF files with JavaScript code Block download of PDF files Block download of Java (JAR) files Block download of Wordpad (RTF) files Block download of Video (AVI, FLV, MPG, MOV) files Block download of Flash (SWF) files Block download of ZIP and RAR files Block download of Microsoft Word and Excel files Block a website by TLD Disable task manager when in stealth mode Added "Menu"->"Disable Task Manager" Added "Menu"->"Enable Task Manager" Disable cmd dos prompt when in stealth mode Lock all cdroms when in stealth mode Added "Menu"->"Disable CMD Dos Prompt" Added "Menu"->"Enable CMD Dos Prompt" Added "Menu"->"Lock CD-ROMs" Added "Menu"->"UnLock CD-ROMs" Block download of JavaScript (JS) files Block IRC traffic Block FTP traffic Added "Rules"->"ADS" TAB to manage regexes to block ADS links Added "Threats"->Process Behavioral Analysis (Block connections of suspicious processes) Added "Block all unknown websites" (allow only whitelisted domains) Block IMs traffic (MSN Messenger, Y! Messenger) Updated "Reset Settings" Disabled "Threats Detection Engine (TDE)" (will be available in final version) Minor fixes and optimizations
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值