|
<div class="f14 mb10" id="read_tpc">
“DedeCMS顽固木马后门专杀工具”为安全联盟站长平台针对DedeCMS爆发的90sec.php等顽固木马后门而定制的专杀工具。在前面我们推出的第一个版本里收到了很多DedeCMS站长的肯定。于是我们决定推出版本升级。于是“DedeCMS顽固木马后门专杀工具 V2.0”诞生了。v2.0 介绍与第一个版本一样,我们继续围绕“一切为加强DedeCMS安全而生!”的中心去开发。主要有如下特点:<span style="display:none"> =ILo`Q~ </span> <br /> 1.扫瞄并修补漏洞,从安全设置上加强DedeCMS自身的安全防御(根本上解决90sec.php等顽固木马的“病因”)<span style="display:none"> },QFyT </span> <br /> 2.清扫数据库(根本上解决90sec.php等顽固木马“复发”问题) <span style="display:none"> BKjPmrZ| </span> <br /> 3.查杀多种网站木马后门及恶意DDos脚本(解决90sec.php等顽固木马基本“症状”)<span style="display:none"> va*>q-QCr </span> <br /> <span style="display:none"> %!hA\S </span> <br />下载地址:<span style="display:none"> G?/8&%8 </span> <br /> http://tool.scanv.com/dede_killer_v2.zip<span style="display:none"> XuAc3~HAd </span> <br /> http://zhanzhang.anquan.org/static/download/dede_killer.zip<span style="display:none"> ABYW1K= </span> <br /> <span style="display:none"> 0#[Nfe* </span> <br />使用教程<span style="display:none"> >8HRnCyp/ </span> <br /> <span style="display:none"> Z_ *ZUN?B </span> <br />1、下载文件到本地,解压后用“编辑器”(可直接用window系统'记事本'打开)打开dede_killer_v2.php 修改密码(默认密码不让登陆!),如果你的dedecms设置了data目录,请对应修改后保存。如下图:<span style="display:none"> %^@0tT </span> <br /> <span style="display:none"> GH)+yD[o </span> <br /><span id="att_42417" class="f12"><span id="td_att42417" onmouSEOver="read.open('menu_att42417','td_att42417');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_1fde5b7100f5765.png?70" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42417" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:1.png</span></p></div></div></span><span style="display:none"> HvfTC<+H </span> <br /> <span style="display:none"> [~r$US </span> <br />2、用ftp等管理软件,把修改后的dede_killer_v2.php 上传到网站(dedecms安装的)跟目录下。用浏览器访问打开。(这里我们建议使用谷歌浏览器chrome或者火狐浏览器firefox访问)地址为:http://你的网站地址/dede_killer_v2.php 如下图:<span style="display:none"> sVl:EVv </span> <br /> <span style="display:none"> sAAIyPJts </span> <br /><span id="att_42418" class="f12"><span id="td_att42418" onmouseover="read.open('menu_att42418','td_att42418');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_fed851dd001525d.png?120" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42418" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:2.png</span></p></div></div></span><span style="display:none"> O!cO/]< </span> <br /> <span style="display:none"> Y?SJQhN6W </span> <br />3、输入密码后,点击登陆。可以看到功能选项 开始专杀之旅了!!<span style="display:none"> Ita!07 </span> <br /> <span style="display:none"> K>p:?w </span> <br /><span id="att_42419" class="f12"><span id="td_att42419" onmouseover="read.open('menu_att42419','td_att42419');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_31907a53e527fc3.png?97" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42419" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:3.png</span></p></div></div></span> <span style="display:none"> .;sPG </span> <br /> <span style="display:none"> y]z#?? </span> <br />Dede安全扫瞄:<span style="display:none"> JG+o~tQC </span> <br /> <span style="display:none"> #[rFep </span> <br /><span id="att_42420" class="f12"><span id="td_att42420" onmouseover="read.open('menu_att42420','td_att42420');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_0643dd7cc2c9ef5.png?177" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42420" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:4.png</span></p></div></div></span><span style="display:none"> g<jK^\eW </span> <br /> <span style="display:none"> *} 4;1OVT </span> <br />快速木马查杀:<span style="display:none"> -kS5mR </span> <br /> <span style="display:none"> s5|)4Zac </span> <br /><span id="att_42421" class="f12"><span id="td_att42421" onmouseover="read.open('menu_att42421','td_att42421');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_d64fc49de0110e7.png?160" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42421" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:5.png</span></p></div></div></span><span style="display:none"> ]V7hl#VO </span> <br /> <span style="display:none"> F,$$N> </span> <br />高级木马查杀配置<span style="display:none"> X~VZ61vNu </span> <br /> <span style="display:none"> 6E%k{ r </span> <br /><span id="att_42422" class="f12"><span id="td_att42422" onmouseover="read.open('menu_att42422','td_att42422');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_df75e01e02fb4dd.png?106" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42422" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:6.png</span></p></div></div></span><span style="display:none"> *wl_8Sis} </span> <br /> <span style="display:none"> VFp)`+8 </span> <br /> <span style="display:none"> gM]/Y6*$b </span> <br />最后演示下怎么通过“高级木马查杀”查找黑链页面。 高级搜索提供了自定义关键词、文件后缀,还支持正则表达式。对于一般站长来说,正则编写可能有难度,我们就使用下关键词扫瞄。在一次修补过程里我们发现黑客挂的页面都有dede.js我们扫瞄一下 如下图:<span style="display:none"> Tfs9<k>G# </span> <br /> <span style="display:none"> ,(b~L<zN& </span> <br /> <span style="display:none"> A)0m~+?{J </span> <br /><span id="att_42423" class="f12"><span id="td_att42423" onmouseover="read.open('menu_att42423','td_att42423');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_593fbed34b01b38.png?213" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42423" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:7.png</span></p></div></div></span><span style="display:none"> KUV{]?' </span> <br /> <span style="display:none"> )u:8Pv </span> <br /> <span style="display:none"> fA,!d J </span> <br />结果如下:<span style="display:none"> Eu_0n6J </span> <br /> <span style="display:none"> Hd}t=6 </span> <br /><span id="att_42424" class="f12"><span id="td_att42424" onmouseover="read.open('menu_att42424','td_att42424');" style="display:inline-block;"><img src="http://bbs.aliyun.com/attachment/thumb/Mon_1309/127_1389672687062277_d2aca53687f1618.png?294" border="0" style="max-width:995px;" onload="if(this.offsetWidth>'995')this.width='995';"></span><div id="menu_att42424" class="pw_menu" style="display:none;"><div style="border:1px solid #ffffff;background:#f3f9fb;padding:5px 10px;"><p><span class="mr10">图片:8.png</span></p></div></div></span><span style="display:none"> K_Gf\x </span> <br />
</div>
</div>
<!--content_read-->
</td>
</tr>
<tr>
|
|