SoFunction
Updated on 2025-03-10

AR series routers respond to network viruses

The function of the router is to maintain network connectivity and forward data packets to the best of its ability. The router cannot recognize a large number of spam messages sent by network viruses.
We need to manually configure the acl, such as the recently popular shock wave virus. Through configuration, the router can partially block these garbage messages.
Disable tcp packets with port number 135
Disable udp packets with port number 69
Disable ICTMP messages

The above are just auxiliary measures. The fundamental solution is to detect and kill PC viruses and install Microsoft operating system as soon as possible.

Ding, upgrade the virus database of anti-virus tools and improve security awareness.



2. Common antivirus ACLs include common virus ports. Newly discovered viruses also need to manually add corresponding ports.

The number is configured and sent on the relevant port.

Virus attacks may come from the public or intranet.

acl number 3001

rule 0 deny tcp source-port eq 3127 

rule 1 deny tcp source-port eq 1025 

rule 2 deny tcp source-port eq 5554 

rule 3 deny tcp source-port eq 9996 

rule 4 deny tcp source-port eq 1068 

rule 5 deny tcp source-port eq 135 

rule 6 deny udp source-port eq 135 

rule 7 deny tcp source-port eq 137 

rule 8 deny udp source-port eq netbios-ns 

rule 9 deny tcp source-port eq 138 

rule 10 deny udp source-port eq netbios-dgm 

rule 11 deny tcp source-port eq 139 

rule 12 deny udp source-port eq netbios-ssn 

rule 13 deny tcp source-port eq 593 

rule 14 deny tcp source-port eq 4444 

rule 15 deny tcp source-port eq 5800 

rule 16 deny tcp source-port eq 5900 

rule 18 deny tcp source-port eq 8998 

rule 19 deny tcp source-port eq 445 

rule 20 deny udp source-port eq 445 

rule 21 deny udp source-port eq 1434

rule 30 deny tcp destination-port eq 3127

rule 31 deny tcp  destination-port eq 1025

rule 32 deny tcp destination-port eq 5554

rule 33 deny tcp destination-port eq 9996

rule 34 deny tcp destination-port eq 1068

rule 35 deny tcp destination-port eq 135

rule 36 deny udp destination-port eq 135

rule 37 deny tcp destination-port eq 137

rule 38 deny udp destination-port eq netbios-ns

rule 39 deny tcp destination-port eq 138

rule 40 deny udp destination-port eq netbios-dgm

rule 41 deny tcp destination-port eq 139

rule 42 deny udp destination-port eq netbios-ssn

rule 43 deny tcp destination-port eq 593

rule 44 deny tcp destination-port eq 4444

rule 45 deny tcp destination-port eq 5800

rule 46 deny tcp destination-port eq 5900

rule 48 deny tcp destination-port eq 8998

rule 49 deny tcp destination-port eq 445

rule 50 deny udp destination-port eq 445

rule 51 deny udp destination-port eq 1434