Advertisement
mrdbarcode

block virus

Jan 17th, 2019
124
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.18 KB | None | 0 0
  1. #private-local-lan = 192.168.1.0/24 name=Local1
  2.  
  3. /ip firewall address-list
  4. add address=192.168.1.0/24 name=Local1
  5.  
  6. /ip firewall filter
  7. add action=add-dst-to-address-list address-list=Baidu address-list-timeout=5m chain=forward dst-address-list=!Local1 layer7-protocol=L7_Baidu comment="Block Baidu"
  8. add action=drop chain=forward dst-address-list=Baidu src-address-list=Local1
  9. /
  10.  
  11. # Block Virus
  12. /ip firewall filter
  13. add action=jump chain=input comment="Jump to Virus Chain" disabled=no jump-target=Virus
  14. add action=drop chain=Virus comment="Drop Blaster Worm" disabled=no dst-port=135-139 protocol=tcp
  15. add action=drop chain=Virus comment="Drop Blaster Worm" disabled=no dst-port=445 protocol=tcp
  16. add action=drop chain=Virus comment="Drop Blaster Worm" disabled=no dst-port=445 protocol=udp
  17. add action=drop chain=Virus comment="Drop Messenger Worm" disabled=no dst-port=135-139 protocol=udp
  18. add action=drop chain=Virus comment="Conficker" disabled=no dst-port=593 protocol=tcp
  19. add action=drop chain=Virus comment="Worm" disabled=no dst-port=1024-1030 protocol=tcp
  20. add action=drop chain=Virus comment="ndm requester" disabled=no dst-port=1363 protocol=tcp
  21. add action=drop chain=Virus comment="ndm server" disabled=no dst-port=1364 protocol=tcp
  22. add action=drop chain=Virus comment="screen cast" disabled=no dst-port=1368 protocol=tcp
  23. add action=drop chain=Virus comment="hromgrafx" disabled=no dst-port=1373 protocol=tcp
  24. add action=drop chain=Virus comment="Drop MyDoom" disabled=no dst-port=1080 protocol=tcp
  25. add action=drop chain=Virus comment="cichlid" disabled=no dst-port=1377 protocol=tcp
  26. add action=drop chain=Virus comment="Worm" disabled=no dst-port=1433-1434 protocol=tcp
  27. add action=drop chain=Virus comment="Drop Dumaru.Y" disabled=no dst-port=2283 protocol=tcp
  28. add action=drop chain=Virus comment="Drop Beagle" disabled=no dst-port=2535 protocol=tcp
  29. add action=drop chain=Virus comment="Drop Beagle.C-K" disabled=no dst-port=2745 protocol=tcp
  30. add action=drop chain=Virus comment="Drop MyDoom" disabled=no dst-port=3127-3128 protocol=tcp
  31. add action=drop chain=Virus comment="Drop Backdoor OptixPro" disabled=no dst-port=3410 protocol=tcp
  32. add action=drop chain=Virus comment="Worm" disabled=no dst-port=4444 protocol=tcp
  33. add action=drop chain=Virus comment="Worm" disabled=no dst-port=4444 protocol=udp
  34. add action=drop chain=Virus comment="Drop Sasser" disabled=no dst-port=5554 protocol=tcp
  35. add action=drop chain=Virus comment="Drop Beagle.B" disabled=no dst-port=8866 protocol=tcp
  36. add action=drop chain=Virus comment="Drop Dabber.A-B" disabled=no dst-port=9898 protocol=tcp
  37. add action=drop chain=Virus comment="Drop Dumaru.Y" disabled=no dst-port=10000 protocol=tcp
  38. add action=drop chain=Virus comment="Drop MyDoom.B" disabled=no dst-port=10080 protocol=tcp
  39. add action=drop chain=Virus comment="Drop NetBus" disabled=no dst-port=12345 protocol=tcp
  40. add action=drop chain=Virus comment="Drop Kuang2" disabled=no dst-port=17300 protocol=tcp
  41. add action=drop chain=Virus comment="Drop SubSeven" disabled=no dst-port=27374 protocol=tcp
  42. add action=drop chain=Virus comment="Drop PhatBot, Agobot, Gaobot" disabled=no dst-port=65506 protocol=tcp
  43. add action=return chain=Virus comment="Return From Virus Chain" disabled=no
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement