' Windows Server 2022 Hardening Script ' Version: 1.0 ' By [CAO, [email protected]] ' Last Updated: 27 Feb 2023 ' Disable remote desktop access 'Set objReg = GetObject("winmgmts:{impersonationLevel=impersonate}!\\.\root\default:StdRegProv") 'strKeyPath = "SYSTEM\CurrentControlSet\Control\Terminal Server" 'objReg.SetDWORDValue HKEY_LOCAL_MACHINE, strKeyPath, "fDenyTSConnections", 1 ' Set password policy to meet CIS benchmarks Set objWMIService = GetObject("winmgmts:{impersonationLevel=impersonate}!\\.\root\cimv2") Set objItem = objWMIService.ExecQuery("Select * from Win32_AccountPolicy") For Each objItem in objItem objItem.MaxPasswordAge = 90 objItem.MinPasswordLength = 9 objItem.PasswordComplexity = True objItem.PasswordHistorySize = 24 objItem.SetPasswordExpires objItem.SetPasswordHistorySize objItem.SetPasswordComplexity objItem.SetMaxPasswordAge objItem.SetMinPasswordLength Next ' Disable unnecessary services Set colServiceList = GetObject("winmgmts:{impersonationLevel=impersonate}!\\.\root\cimv2").ExecQuery("Select * from Win32_Service") For Each objService in colServiceList If objService.Name = "Telnet" or objService.Name = "FTP" Then objService.ChangeStartMode("Disabled") objService.StopService() End If Next ' Disable anonymous access to the registry Set objReg = GetObject("winmgmts:{impersonationLevel=impersonate}!\\.\root\default:StdRegProv") strKeyPath = "System\CurrentControlSet\Control\SecurePipeServers\winreg" objReg.SetDWORDValue HKEY_LOCAL_MACHINE, strKeyPath, "AnonymousAccess", 0 ' Set audit policy to meet CIS benchmarks Set objWMIService = GetObject("winmgmts:{impersonationLevel=impersonate}!\\.\root\cimv2") Set objItem = objWMIService.ExecQuery("Select * from Win32_AuditPolicy") For Each objItem in objItem objItem.AuditLogonEvents = 1 objItem.AuditAccountLogonEvents = 1 objItem.AuditProcessTracking = 1 objItem.AuditDSAccess = 1 objItem.AuditPolicyChange = 1 objItem.AuditPrivilegeUse = 1 objItem.AuditObjectAccess = 1 objItem.SetAuditLogonEvents objItem.SetAuditAccountLogonEvents objItem.SetAuditProcessTracking objItem.SetAuditDSAccess objItem.SetAuditPolicyChange objItem.SetAuditPrivilegeUse objItem.SetAuditObjectAccess Next ' Disable weak ciphers Set objRegistry = GetObject("winmgmts:{impersonationLevel=impersonate}!\\.\root\default:StdRegProv") objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\DES 56/56", "Enabled", 0 objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC2 40/128", "Enabled", 0 objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC2 56/128", "Enabled", 0 objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC4 40/128", "Enabled", 0 objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC4 56/128", "Enabled", 0 objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC4 64/128", "Enabled", 0 Next ' Disable anonymous enumeration of SAM accounts and shares objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Control\Lsa\RestrictAnonymousSAM", "1", 1 objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Services\LanManServer\Parameters\RestrictNullSessAccess", "1", 1 Next ' Disable NetBIOS over TCP/IP "objRegistry.SetDWORDValue HKEY_LOCAL_MACHINE, "SYSTEM\CurrentControlSet\Services\NetBT\Parameters\Interfaces\Tcpip_{F874FE1B-1A55-475D-AEA7-417A65A9F864}", "NetbiosOptions", 2
Write, Run & Share VB.net code online using OneCompiler's VB.net online compiler for free. It's one of the robust, feature-rich online compilers for VB.net language, running on the latest version 16. Getting started with the OneCompiler's VB.net compiler is simple and pretty fast. The editor shows sample boilerplate code when you choose language as VB.net
. OneCompiler also has reference programs, where you can look for the sample code to get started with.
OneCompiler's VB.net online editor supports stdin and users can give inputs to programs using the STDIN textbox under the I/O tab. Following is a sample VB.net program which takes name as input and prints hello message with your name.
Public Module Program
Public Sub Main(args() As string)
Dim name as String = Console.ReadLine() ' Reading input from STDIN
Console.WriteLine("Hello " & name) ' Writing output to STDOUT
End Sub
End Module
Visual Basic is a event driven programming language by Microsoft, first released in the year 1991.
Variable is a name given to the storage area in order to identify them in our programs.
Simple syntax of Variable declaration is as follows
Dim variableName [ As [ New ] dataType ] [ = initializer ]
variableName = value
If condition-expression Then
'code
End If
If(conditional-expression)Then
'code if the conditional-expression is true
Else
'code if the conditional-expression is false
End If
If(conditional-expression)Then
'code if the above conditional-expression is true
Else If(conditional-expression) Then
'code if the above conditional-expression is true
Else
'code if the above conditional-expression is false
End If
If(conditional-expression)Then
'code if the above conditional-expression is true
If(conditional-expression)Then
'code if the above conditional-expression is true
End If
End If
Select [ Case ] expression
[ Case expressionlist
'code ]
[ Case Else
'code ]
End Select
For counter [ As datatype ] = begin To end [ Step step ]
'code
[ Continue For ]
'code
[ Exit For ]
'code
Next [ counter ]
For Each element [ As datatype ] In group
'code
[ Continue For ]
'code
[ Exit For ]
'code
Next [ element ]
While conditional-expression
'Code
[ Continue While ]
'Code
[ Exit While ]
'Code
End While
Do { While | Until } conditional-expression
'Code
[ Continue Do ]
'Code
[ Exit Do ]
'Code
Loop
Do
'Code
[ Continue Do ]
'Code
[ Exit Do ]
'Code
Loop { While | Until } conditional-expression
Procedure is a sub-routine which contains set of statements. Usually Procedures are written when multiple calls are required to same set of statements which increases re-usuability and modularity.
Procedures are of two types.
Functions return a value when they are called.
[accessModifiers] Function functionName [(parameterList)] As returnType
'code
End Function
Sub-procedures are similar to functions but they don't return any value.
Sub ProcedureName (parameterList)
'Code
End Sub