Hello,
Kindly run the following command to block port 445 SMB for both inbound and outbound traffic of the firewall
[FW] IP service-set smb_port type object
[FW-object-service-set-smb_port] service protocol TCP source-port 445 destination-port 0 to 65535
[FW-object-service-set-smb_port] service protocol TCP source-port 0 to 65535 destination-port 445
[FW-object-service-set-smb_port] quit
[FW] security-policy
[FW-policy-security] rule name smb_port_deny
[FW-policy-security-rule-smb_port_deny] source-zone trust untrust
[FW-policy-security-rule-smb_port_deny] destination-zone untrust trust
[FW-policy-security-rule-smb_port_deny] service smb_port
[FW-policy-security-rule-smb_port_deny] action deny
[FW-policy-security-rule-smb_port_deny] quit
[FW-policy-security] rule move smb_port_deny top
Reference CLI: Example for Configuring Security Policies Based on IP Addresses and Ports
After applying this configuration, please continue monitoring to see if the configuration takes effect