当前位置:网站首页>Solution for website being suspended
Solution for website being suspended
2022-07-29 06:34:00 【Zhongyun era - defense testable - Xiaoyu】
There are many reasons why the server is suspended , Before it's solved , First of all, we need to find out the type of hanging horse , The more common ones are ARP Hang horse and non ARP Hang a horse . Let's talk about it first. ARP Hang up , In the machine room ARP Of Trojans , New friends will feel very magical , Look at the information that the website program has not been injected on the server , When you visit the Internet, it indicates that there is a virus . This is it. ARP The phenomenon of hanging horses : (IE During the interview , The site has been suspended , But when viewing the actual file on the server , It is found that the file on the server has not been modified .) Generally, we can't solve this situation , You can only contact the computer room ,
Check that it is hung ARP Virus machine , Isolate and kill the virus !
Next, let's talk about non ARP Hang a horse , At present, it is more common to asp and .net Trojan horse . They call fso and io Component for batch hanging of website programs . Therefore, the most direct way to prevent this trojan horse is to control the permissions of these two components , The website directory only gives read permission , Update Rongru in the site : To upload pictures , Plug ins are best used ftp Upload , There is also the control of the website program , All operations such as uploading should be verified . Of course , Sometimes I get hung up because of a moment's negligence
The following are divided into the following types and solutions according to the number of suspended websites :
(1) Individual websites are suspended .
The phenomenon : Only one or two websites have been suspended , There is no problem with other websites .
solve : Generally, there is a problem with the website itself . You can inform the customer to solve it by yourself , Do not belong to IDC Scope of responsibility of the provider .
If you want to help customers solve , You can first check to see if there is WEB Upload program , HTML Online programming program , Image online upload program , Most of these programs have problems .
There are friends who use Liqing virtual host management system , If you don't need this kind of program , Sure WinIIS Set the permissions of the main directory of the site in the control panel , Remove the write permission , Just leave read-only and execution .
(2) Websites of the same type are tagged .
The phenomenon : Several websites were suspended , And the website content of the suspended horse is the same type of website , For example, use the same forum program , The same online upload program , The same kind of mall .
solve : Most of them are due to loopholes in such forums or mall programs . It is suggested to upgrade the relevant programs .
(3) Most websites of the whole server have been suspended .
The phenomenon : The server has been suspended on most websites , This is mostly caused by the overall security problem of server security .
solve : Generally, you need to check the security of the server from the following aspects . And after finding out the problem , If you are not sure , It is generally recommended to reinstall the server , To eradicate .
Check whether there is a problem with the permission setting of the disk , Special C Disk permissions . Whether other disks have special unnecessary permissions , General advice
Other drive letters and d:\www\web\ The directory only leaves administrators And system Authority is fine , Don't leave any other users' permissions .
Check serv-u No management password is set
Check MSSQL Of SA Is the password too simple or empty
Check the startup items of the system , See if there are unnecessary programs to start .
Check the task manager , See if there is any suspicious process
Check the service of the system , See if there is any suspicious service startup
边栏推荐
- Official tutorial redshift 04 rendering parameters
- Redshift restore SP effect - SP map export settings and map import configuration
- 服务器135、137、138、139、445等端口解释和关闭方法
- day13_ Under multithreading
- 虹科分享 | 为什么说EtherCAT是提高控制系统性能的最佳解决方案?
- Vivado IP核之浮点数乘除法 Floating-point
- 虹科白皮书 | 在工业4.0阶段,如何利用TSN时间敏感网络技术打造数字化工厂?
- 不安全的第三方组件的漏洞如何做前置规避?
- Vivado IP核之RAM Block Memery Generator
- 如何判断业务被DDoS攻击?又会造成哪些危害?
猜你喜欢
随机推荐
MerkleTree 构建QT实现UI
Unity初学3——敌人的移动控制和掉血区域的设置(2d)
Ue5 light shadow basic shadow full resolution sawtooth shadow solution lumen
Why are the job requirements for software testing in 2022 getting higher and higher? Is there any secret in it?
day10_ Exception handling & enumeration
网站被挂马的解决方案
Vivado IP核之浮点数加减法 Floating-point
服务器常见故障及其解决方法
软件测试职业发展:软件测试人员该何去何从
用神经网络实现手写数字识别
七、 下一代互联网IPV6
Redshift restore SP effect - SP map export settings and map import configuration
Webshell管理工具的流量特征
虹科 | 使用JESD204串行接口高速桥接模拟和数字世界
day03_1_流程控制
基于TCP的在线词典
Vivado IP核之浮点数乘除法 Floating-point
What are the advantages of software testing? See how much you know
Official tutorial redshift 05 AOVs
c语言问题









