DedeCMS顽固木马后门专杀工具 V 2.0 发布及使用教程|云服务器 ECS - 开发者论坛

[复制链接]
查看: 21|回复: 0

22

主题

22

帖子

70

积分

注册会员

Rank: 2

积分
70
发表于 2019-2-15 22:56:27 | 显示全部楼层 |阅读模式

<div class="f14 mb10" id="read_tpc">
“DedeCMS顽固木马后门专杀工具”为安全联盟站长平台针对DedeCMS爆发的90sec.php等顽固木马后门而定制的专杀工具。在前面我们推出的第一个版本里收到了很多DedeCMS站长的肯定。于是我们决定推出版本升级。于是“DedeCMS顽固木马后门专杀工具 V2.0”诞生了。v2.0 介绍与第一个版本一样,我们继续围绕“一切为加强DedeCMS安全而生!”的中心去开发。主要有如下特点:<span style="display:none"> =ILo`Q~ </span>&nbsp;<br />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;1.扫瞄并修补漏洞,从安全设置上加强DedeCMS自身的安全防御(根本上解决90sec.php等顽固木马的“病因”)<span style="display:none"> },QFyT </span>&nbsp;<br />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;2.清扫数据库(根本上解决90sec.php等顽固木马“复发”问题) <span style="display:none"> BKjPmrZ| </span>&nbsp;<br />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;3.查杀多种网站木马后门及恶意DDos脚本(解决90sec.php等顽固木马基本“症状”)<span style="display:none"> va*>q-QCr </span>&nbsp;<br /> <span style="display:none"> %!hA\S </span>&nbsp;<br />下载地址:<span style="display:none"> G?/8&%8 </span>&nbsp;<br />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;http://tool.scanv.com/dede_killer_v2.zip<span style="display:none"> XuAc3~HAd </span>&nbsp;<br />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;http://zhanzhang.anquan.org/static/download/dede_killer.zip<span style="display:none"> ABYW1K= </span>&nbsp;<br /> <span style="display:none"> 0#[Nfe* </span>&nbsp;<br />使用教程<span style="display:none"> >8HRnCyp/ </span>&nbsp;<br /> <span style="display:none"> Z_        *ZUN?B </span>&nbsp;<br />1、下载文件到本地,解压后用“编辑器”(可直接用window系统&#39;记事本&#39;打开)打开dede_killer_v2.php 修改密码(默认密码不让登陆!),如果你的dedecms设置了data目录,请对应修改后保存。如下图:<span style="display:none"> %^@0tT </span>&nbsp;<br /> <span style="display:none"> GH)+yD[o </span>&nbsp;<br /><span id="att_42417" class="f12"><span id="td_att42417" onmouSEOver="read.open('menu_att42417','td_att42417');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_1fde5b7100f5765.png?70" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42417" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:1.png</span></p></div></div></span><span style="display:none"> HvfTC&lt;+H </span>&nbsp;<br /> <span style="display:none"> [~r $US </span>&nbsp;<br />2、用ftp等管理软件,把修改后的dede_killer_v2.php 上传到网站(dedecms安装的)跟目录下。用浏览器访问打开。(这里我们建议使用谷歌浏览器chrome或者火狐浏览器firefox访问)地址为:http://你的网站地址/dede_killer_v2.php 如下图:<span style="display:none"> sVl:EVv </span>&nbsp;<br /> <span style="display:none"> sAAIyPJts </span>&nbsp;<br /><span id="att_42418" class="f12"><span id="td_att42418" onmouseover="read.open('menu_att42418','td_att42418');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_fed851dd001525d.png?120" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42418" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:2.png</span></p></div></div></span><span style="display:none"> O!cO/]&lt; </span>&nbsp;<br /> <span style="display:none"> Y?SJQhN6W </span>&nbsp;<br />3、输入密码后,点击登陆。可以看到功能选项 开始专杀之旅了!!<span style="display:none"> Ita!07 </span>&nbsp;<br /> <span style="display:none"> K>p:?w </span>&nbsp;<br /><span id="att_42419" class="f12"><span id="td_att42419" onmouseover="read.open('menu_att42419','td_att42419');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_31907a53e527fc3.png?97" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42419" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:3.png</span></p></div></div></span> <span style="display:none">  .;sPG </span>&nbsp;<br /> <span style="display:none"> y]z#?? </span>&nbsp;<br />Dede安全扫瞄:<span style="display:none"> JG+o~tQC </span>&nbsp;<br /> <span style="display:none"> #[ rFep         </span>&nbsp;<br /><span id="att_42420" class="f12"><span id="td_att42420" onmouseover="read.open('menu_att42420','td_att42420');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_0643dd7cc2c9ef5.png?177" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42420" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:4.png</span></p></div></div></span><span style="display:none"> g&lt;jK^\e W </span>&nbsp;<br /> <span style="display:none"> *} 4;1OVT </span>&nbsp;<br />快速木马查杀:<span style="display:none"> -kS5mR </span>&nbsp;<br /> <span style="display:none"> s5|)4Z ac </span>&nbsp;<br /><span id="att_42421" class="f12"><span id="td_att42421" onmouseover="read.open('menu_att42421','td_att42421');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_d64fc49de0110e7.png?160" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42421" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:5.png</span></p></div></div></span><span style="display:none"> ]V7hl#VO </span>&nbsp;<br /> <span style="display:none"> F,$$N> </span>&nbsp;<br />高级木马查杀配置<span style="display:none"> X~VZ61vNu </span>&nbsp;<br /> <span style="display:none"> 6E%k{ r </span>&nbsp;<br /><span id="att_42422" class="f12"><span id="td_att42422" onmouseover="read.open('menu_att42422','td_att42422');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_df75e01e02fb4dd.png?106" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42422" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:6.png</span></p></div></div></span><span style="display:none"> *wl_8Sis} </span>&nbsp;<br /> <span style="display:none"> VFp)`+8 </span>&nbsp;<br /> <span style="display:none"> gM]/Y6 *$b </span>&nbsp;<br />最后演示下怎么通过“高级木马查杀”查找黑链页面。 高级搜索提供了自定义关键词、文件后缀,还支持正则表达式。对于一般站长来说,正则编写可能有难度,我们就使用下关键词扫瞄。在一次修补过程里我们发现黑客挂的页面都有dede.js我们扫瞄一下 如下图:<span style="display:none"> Tfs9&lt; k>G# </span>&nbsp;<br /> <span style="display:none"> ,(b~L&lt;zN& </span>&nbsp;<br /> <span style="display:none"> A)0m~+?{J </span>&nbsp;<br /><span id="att_42423" class="f12"><span id="td_att42423" onmouseover="read.open('menu_att42423','td_att42423');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_593fbed34b01b38.png?213" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42423" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:7.png</span></p></div></div></span><span style="display:none"> KUV{]?' </span>&nbsp;<br /> <span style="display:none"> )u:8Pv </span>&nbsp;<br /> <span style="display:none"> fA,!d        J </span>&nbsp;<br />结果如下:<span style="display:none"> Eu_0n6J </span>&nbsp;<br /> <span style="display:none"> Hd}t=6 </span>&nbsp;<br /><span id="att_42424" class="f12"><span id="td_att42424" onmouseover="read.open('menu_att42424','td_att42424');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_d2aca53687f1618.png?294" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42424" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:8.png</span></p></div></div></span><span style="display:none"> K_Gf\x </span>&nbsp;<br />
</div>
</div>
<!--content_read-->
</td>
</tr>
<tr>
腾讯云
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

精彩图文



在线客服(工作时间:9:00-22:00)
400-600-6565

内容导航

微信客服

Copyright   ©2015-2019  云服务器社区  Powered by©Discuz!  技术支持:尊托网络     ( 湘ICP备15009499号-1 )