Modify the registry to completely block Win 2003 security risks

  

Although the functionality of Windows 2003 is constantly increasing, due to congenital reasons, it still has many security risks, if you do not block these hidden dangers & ldquo; It may bring unnecessary trouble to the whole system; below, the author introduces the anti-blocking method of the security risks that are not common in Windows2003, and hopes to bring you help!

Blocking automatic save hazards

When the Windows 2003 operating system makes an error in calling the application, Dr. Watson in the system will automatically save some important debugging information so that the system can be maintained later. View, but this information is likely to be hacked & ldquo; aiming & rdquo;, once targeted, all kinds of important debugging information will be exposed, in order to block the hidden dangers of Dr. Watson automatically save debugging information, we can press the following Steps to achieve:

1. Open the Start menu and select the “Run” command. In the subsequent run dialog box, enter the registry edit command “ergedit” to open a registry edit window. ;

2, in this window, use the mouse to expand HKEY_local_machine\\software\\Microsoft\\WindowsdowsNT\\CurrentVersion\\AeDebug branch, in the right sub-window corresponding to the AeDebug key value, double-click the Auto value with the mouse, pop up In the parameter setting window, reset its value to “0”, as shown in Figure 1;

Figure 1

3 Open the Windows Explorer window of the system, and then expand the Documents and Settings folder, the All Users folder, the Shared Documents folder, the DrWatson folder, and finally the User.dmp file and the Drwtsn32.log file in DrWatson. Deleted.

After completing the above settings, restart the system, you can block the automatic save hidden danger.

Blocking resource sharing risks

In order to facilitate the transfer of information between LAN users, Windows Server 2003 system is very "sincere" to provide you with documents and Print sharing function, but we enjoy the convenience of this feature, the sharing function will also "lead the wolf into the room", "great", opened a lot of loopholes to the hackers, causing a great server system Insecure; therefore, when you are running out of file or print sharing, you should always turn off the feature at any time to block the resource sharing hazard. Here are the specific steps to turn off sharing:

Execute the “Network Connection” command under the Control Panel menu item. In the subsequent window, right-click the “Local Area” icon;

2. In the shortcut menu that opens. Click the "Properties" command to open a "Internet Protocol (TCP/IP)" property setting dialog;

3. In this interface, cancel “Mic Rosoft network file and printer sharing & rdquo; this option;

4, as a result, the local computer can not provide external file and print sharing services, so hackers naturally less attack system " Channel”.

Blocking Remote Access Hidden Trouble

Under Windows 2003 system, when remote network access is required, the remote desktop function under this system can input the user name and password when making a network connection. Through the ordinary plaintext content transmission to the client program of the corresponding connection; in the process of clear text account transmission, realize that all kinds of sniffing tools on the network channel will automatically enter the "sniffing" state, this Clear text accounts are easy to be "captured"; if the contents of the plaintext account are used by hackers or other attackers, hehe, be careful that your system is "crazy" attack! In order to prevent this safety hazard, we can use the following method for the system "Reinforcement":

1. Click the "Start" button on the system desktop to open the Start menu;

2, from the execution of the control panel command, from the pop-up drop-down menu, select the "System" command to open a system property settings interface;

3, in the interface, click with the mouse ; remote & rdquo; tag;

4, in the subsequent tab page, will "allow users to remotely connect to this computer" option, cancel, so you can shield the remote access connection function, This blocks the remote access hazard.

Blocking user switching risks

Windows 2003 system provides us with a fast user switching function, which makes it easy to log in to the system; however, when enjoying this kind of relaxation, There are also installation hazards in the system. For example, if we execute the system "departure" command in the Start & rdquo; menu, fast "switch user", and then log in to the system in the traditional way, the system is very likely This login, mistakenly regarded as a violent "attack" on the computer system, so that the Windows 2003 system may treat the currently logged in account as a illegal account and lock it up, which is obviously not what we need; However, we can follow the steps below to block the security risks caused by user switching:

In the Windows 2003 system desktop, open the Control Panel command under the Start menu and find the following "Administrative Tools". Command, then execute the “computer management” command in the lower menu, find the "user account" icon, and In the subsequent window, click “change the way the user logs in or logs out  in the open settings window, the “Use Fast User Switching” option can be cancelled.

Blocking page exchange risks

Windows 2003 operating system may leak important confidential information to hackers or other visitors even in normal working conditions, especially important accounts. information. Maybe we will never want to check out the files that may leak private information, but hackers are very concerned about them! In the page exchange file in the Windows 2003 operating system, a lot of important private information is hidden. This information is generated dynamically. If it is not cleared in time, it is likely to become a breakthrough for hackers; We must follow the following method to let the Windows 2003 operating system automatically delete all the page files generated when the system is working when the system is shut down:

1. In the Windows 2003 "Start" menu In the "Run" command, open the Run dialog box, and enter the "Regedit" command to open the registry window;

2, in the left area of ​​the window, use the mouse to Click the HKEY_local_machine\\system\\currentcontrolset\\control\\sessionmanager\\memory management key, find the ClearPageFileAtShutdown key in the right area, and double-click it with the mouse. In the subsequent value setting window, change the DWORD value to “1&rdquo ;; Figure 2

Figure 2

3. After completing the settings, exit the registry Edit window, and restart the computer system, you can make the above settings take effect.

Copyright © Windows knowledge All Rights Reserved