掌握三条简单net命令保证网络安全检测
掌握三条简单net命令确保网络安全检测在进行网络安全检测的过程中,各种DOS命令是我们可以找出蛛丝马迹最得心应手的工具。可是假如掌握一切DOS命令的使用可不是一件容易的事,本来,从网络安全检测视点来看,我们只要掌握其间的三条命令即可起到较好的防备作用。?一、检测网络连接状态?通常来说,安全主要是用于连接在网络上的计算机而言的。单机用户的安全问题比较少。而于连接到网络上的计算机而言,最基本的即是对网络连接进行检测。由于不论是病毒,仍是木马、黑k侵/入等都是通过网络来连接的。?在“运行”窗口中输入“CMD”并回车打开命令打提示符窗口,然后输入“netstat-an”,这样即可检测一切与本机建立的连接。其间Proto部分表明连接方法,Localaddress是本地连接地址和端口,而Foreignaddress则是对方的地址和端口,State是当时端口的状态。?看懂了这些信息后,我们就可以判别是不是有反常的连接,假如有的话则需求断开网络进行进一步的管理。?二、检测服务运行状态?计算机的各项功能通常都是与其打开的服务相对应的。因而很多侵/入者在进入电脑后会打开各种服务,由此可见检测当时系统正在运行的服务是很有必要的。?在命令提示符下输入“netstart”,这样即可看到系统提示“已经启动以下Windows服务”,然后从其列表中看是不是不明服务在运行。假如有的话,可以持续键入“netstart服务名”来检测相关该服务愈加具体的信息。承认是不合法运行的服务,那么只需求运行“netstopserver”命令在问询是不是持续操作时按“Y”键进行承认。掌握三条简单net命令确保网络安全检测.doc
(Master three simple net commands to ensure network security detection In the process of network security detection, various DOS commands are the most handy tools we can find clues. However, it is not easy to master the use of all DOS commands. Originally, from the point of view of network security detection, we only need to master the three commands to play a better preventive role. ? 1. Detect network connection status? Generally speaking, security is mainly used for computers connected to the network. There are fewer security issues for stand-alone users. For computers connected to the network, the most basic thing is to detect the network connection. Because whether it is a virus, or a Trojan horse, hacker intrusion/intrusion, etc. are all connected through the network. ?In the "Run" window, enter "CMD" and press Enter to open the command prompt window, and then enter "netstat-an", so that all connections established with the machine can be detected. The Proto part indicates the connection method, Localaddress is the local connection address and port, Foreignaddress is the address and port of the other party, and State is the state of the port at that time. ? After understanding this information, we can determine whether there is an abnormal connection, and if so, we need to disconnect the network for further management. 2. Detecting the running status of the service? Each function of the computer usually corresponds to the service it has opened. Therefore, many intruders will open various services after entering the computer. It can be seen that it is necessary to detect the services that the system is running at that time. ? Enter "netstart" at the command prompt, so you can see the system prompt "The following Windows service has been started", and then check whether the unknown service is running from the list. If there is, you can continue to type "netstart service name" to detect more specific information about the service. If it is recognized that it is an illegal service, then only need to run the "netstopserver" command and press the "Y" key to confirm whether it is continuing to operate.
Master three simple net commands to ensure network security detection.doc)
页:
[1]