is in the same directory. Take the above path for example, we visited the address: http://www.***.net/edit/admin_login.asp, to see if there is a login page.
If you do not see such a page, the administrator has deleted the management login page, hehe, wait for what, leave Ah, try another place. But generally speaking, I rarely see any admin deleted this page, try the default username: admin, Password: admin888. What do you think? Success (not the default account, please see the text)!
4. Increas
------------------------------------------------------------
Website hacked kill_kk/Xiaolu/daxia123.cn Trojan solution and cause
The customer site cannot be generated and is infected with Trojans. Find the reason.Status quo:Each CMS system cannot be generated, but other operations are normal. Generally, the system prompts "Affected objects: websites using the MSSQL databaseSymptom content:
To prevent page attacks, you can include Attack Files in the header of the page, just like general anti-injection files. We can do this in three cases:1. Reference in each file. This is acceptable, but it is inconvenient if a website contains hundreds of files.2. Reference it in a co-inclusion file, such as the config. inc. php tutorial. This is a good solution and a popular practice in the market.3. Reference in php. ini. Reference in the configurati
internal enterprise website, security and convenient maintenance.
The first two methods are clear to everyone. The third method is to find this section in php. ini:
;automatically add files before or after any php document. ;auto_prepend_file = "phpids.php" ;auto_append_file = "alert.php"
The default value is null. add the included files and find them:
;unix: "/path1:/path2" ;include_path = ".:/php/includes" ; ;windows: "path1;path2" include_path
This article mainly introduces the website Trojan Detection program implemented by Python. if you need it, you can refer to the system administrator who usually retrieves code from svn/git, after a site is deployed, the MD5 value of all files on the site is usually generated. if the content of the website page is tampered with (such as Trojans) after the site is
EndurerOriginal1Version
The message board page of this website:/------/
Implanted code:/------/Hxxp: // cool ***. 4*7*5 *** 55.com/k3.htm contains three malicious codes.
Malicious Code Segment 1:/------/
Hxxp: // cool ***. 4*7*5 *** 55.com/9.gifHack. suspiciousani) Contains information: "by mr. OWEN [F. s.t]", using the ani vulnerability to download xx.exe
File Description: D:/test/xx.exeAttribute: ---An error occurred while obtaining the file version
For this, we hereby declare that we will not put the Trojan to the site above, we can be assured access.
And we have a security check on the server have been black, also did not hang horses, the most is because of some advertising problems.
The above is 360 detection, they are only the domain name for the poison, our website through their detection is non-toxic.
The recent 360 crackdown period, a lot
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.