Windows server anti-ransomware

1. Install anti-virus software

2. Disable port 445

windows firewall -> advanced settings -> inbound rules -> new rule, select "port", click next, select "specific local port", enter "445"

-> Select "Block connection", click Next, tick all the application rules, and click Finish.

3. Modify the remote default port 3389

Find PortNamber in the following registry to modify (note the use of decimal)

HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Control/Terminal Server/Wds/rdpwd/Tds/tcp
HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Control/Terminal Server/WinStations/RDP-Tcp

 

Guess you like

Origin blog.csdn.net/zzchances/article/details/107055289