Tsab ntawv teev npe
Yuav luag 90% yog tshwm sim los ntawm "malicious code".
WordPressNtau tshaj 80% ntawm cov vev xaib yog plugins uas coj cov cai tsis zoo rau hauv lub vev xaib nyiaj (muaj cov vev xaib raug cai plugins, online streaming plugins, thiab lwm yam).
Lwm qhov yog tias lub ntsiab lus (tshwj xeeb version, pirated ntsiab lus) yog "cov cai phem" lossis "rov qab Trojan nees" uas nkag mus rau lub server kom kis kev puas tsuaj.
tam sim no,Chen WeiliangYuav qhia koj li cas kom pom nws ua ntej los ntawm kev txheeb xyuas lub ntsiab lus WordPress?
Tshawb xyuas thiab tshem tawm cov kab mob phem hauv function.php
Qhov ntau tshaj plaws txog "kev phem code" hauv WordPress yog kev ua haujlwm (s).php hauv cov ntsiab lus qhia.
Thaum kawg ntawm cov ntaub ntawv function.php, feem ntau yog kaw lus zoo li no:
//全部结束 ?>
Yog tias koj pom tias tsis muaj cov lus kaw zoo li no ces koj yeej paub tseeb tias koj cov ntaub ntawv function.php tau raug cuam tshuam nrog thiab koj yuav tsum tau kuaj xyuas nws.
Lub ntsiab lus phem ntawm WordPress yog dab tsi?
Piv txwv li, kab hauv qab no code:
- muaj nuj nqi _checkactive_widgets
- muaj nuj nqi _check_active_widget
- muaj nuj nqi _get_allwidgets_cont
- muaj nuj nqi _get_all_widgetcont
- muaj nuj nqi stripos
- muaj nuj nqi strripos
- muaj nuj nqi scandir
- muaj nuj nqi _getprepare_widget
- muaj nuj nqi _prepared_widget
- muaj nuj nqi __popular_posts
- add_action("admin_head", "_checkactive_widgets");
- add_action("init", "_getprepare_widget");
- _verify_isactivate_widgets
- _check_isactive_widget
- _get_allwidgetscont
- _prepare_widgets
- __popular_posts
- Txhua kab yog ywj siab.
- Yog tias koj muaj ib qho ntawm cov cai saum toj no hauv functions.php ces koj yuav raug tus kab mob siab phem.
- Ntawm lawv, muaj nuj nqi, add_action, thiab lwm yam yog feem ntau code uas belongs rau "malicious code" thiab "kev npaj ua si".
Yuav ua li cas tshem tawm function.php malicious virus code?
Nws kuj yog ib qho yooj yim los ntxuav.
Tsuas yog hauv cov ntaub ntawv function.php, nrhiav cov cai saum toj no thiab tshem tawm nws.
Tab sis ib zaug kis tus kab mob, tag nrho cov ntsiab lus hauv cov ntsiab lus yuav raug kis.
Yog li koj tsuas paub tias cov ntsiab lus siv tam sim no tsis raug, thiab ib zaug tshem tawm, nws yuav raug tsim tawm sai heev.
Tom qab ntxuav lub ntsiab lus, teeb tsa cov ntaub ntawv functions.php rau 444 kev tso cai thiab tom qab ntawd ntxuav lwm cov ntsiab lus.
Thaum kawg, koj puas xav tau hloov cov kev tso cai rov qab mus rau yav dhau los functions.php cov ntaub ntawv,Chen WeiliangNws raug pom zoo tias 444 kev tso cai muaj kev nyab xeeb heev.
Thaum koj xav hloov kho, nws yog qhov zoo los hloov nws ces.
Cia siab Chen Weiliang Blog ( https://www.chenweiliang.com/ ) qhia "Dab tsi yog qhov phem code ntawm WordPress ntsiab?Website Malicious Code Analysis" los pab koj.
Zoo siab txais tos los qhia qhov txuas ntawm kab lus no:https://www.chenweiliang.com/cwl-1579.html
Zoo siab txais tos rau Telegram channel ntawm Chen Weiliang blog kom tau txais qhov hloov tshiab tshiab!
📚 Daim ntawv qhia no muaj nuj nqis loj, 🌟Qhov no yog lub sijhawm tsis tshua muaj, tsis txhob nco nws! ⏰⌛💨
Share thiab like yog tias koj nyiam!
Koj qhov kev sib koom thiab kev nyiam yog peb qhov kev txhawb nqa tas mus li!