Configuration to block users that tries to access router on non open port(s)

I have this DDoS filter above my block rule.
http://forum.mikrotik.com/t/ddos-story-or-warning-use-conection-limit-with-caution/49743/1

Never have had down time. May have not been target…