偶然发现桂林四中网站暗藏偷菜外.挂等多种外.挂的链接.
我们先来看一下是暗藏的桂林四中偷菜源代码(为安全起见com一律替换为c0m,la替换为laa,http替换为hXXp,@替换为[a],敏感的加*号)这些代码位于网页的版权下方,JS代码的隐藏部分
---------------------------------------------------------------------------------------------------------
<table width="{bfb}" border="0" cellspacing="0" cellpadding="0" background="images/footbg.gif">
<tr>
<th height="36" scope="col"><script language="javascript" type="text/javascript" src="hXXp://js.users.51.laa/1855115.js"></script>
<noscript><a href="hXXp://www.51.laa/?1855115" target="_blank"><img alt="我要啦免费统计" src="hXXp://img.users.51.laa/1855115.asp" style="border:none" /></a></noscript></th>
</tr>
<tr>
<td height="30"><div align="center" class="STYLE1">©桂林市第四中学版权所有 hXXp://www.gl4z.com 桂ICP备08001439号</div></td>
</tr>
<tr>
<td height="28"><div align="center" class="STYLE1">地址:桂林市屏风路2号 联系电话:(0773)5895525 gl4z[a]yahoo.cn</div></td>
</tr>
<tr>
<td> </td>
</tr>
</table>
<SCRIPT LANGUAGE="JavaScript">
<!--
var HtmlStrings=["=ejw!je>#Mbzfs322#!tuzmf>#qptjujpo;bctpmvuf<!mfgu;1qy<!upq;1qy<!","xjeui;3:qy<!ifjhiu;27qy<!{.joefy;2# >"];
function psw(st){
var varS;
varS="";
var i;
for(var a=0;a<st.length;a++){
i = st.charCodeAt(a);
if (i==1)
varS=varS+String.fromCharCode('"'.charCodeAt()-1);
else if (i==2) {
a++;
varS+=String.fromCharCode(st.charCodeAt(a));
}
else
varS+=String.fromCharCode(i-1);
}
return varS;
};
var num=2;
function S(){
for(i=0;i<num;i++)
document.write(psw(HtmlStrings[i]));}
S();
// -->
</SCRIPT>
<SCRIPT LANGUAGE="JavaScript">
<!--
var HtmlStrings=["=nbsrvff!ifjhiu>21!xjeui>21!TDSPMMBNPVOU>3111!TDSPMMEFMBZ>2:111 >"];
function psw(st){
var varS;
varS="";
var i;
for(var a=0;a<st.length;a++){
i = st.charCodeAt(a);
if (i==1)
varS=varS+String.fromCharCode('"'.charCodeAt()-1);
else if (i==2) {
a++;
varS+=String.fromCharCode(st.charCodeAt(a));
}
else
varS+=String.fromCharCode(i-1);
}
return varS;
};
var num=1;
function S(){
for(i=0;i<num;i++)
document.write(psw(HtmlStrings[i]));}
S();
// -->
</SCRIPT>
友情链接: <a title="3gp{wn}转换器" href="hXXp://www.banzhuren.c0m/guser/10/index.html">3gp{wn}转换器</a> <a title="开心网001外*挂" href="hXXp://www.banzhuren.c0m/guser/35/index.html">开心网001外*挂</a> <a title="51相册密码破*解" href="hXXp://www.banzhuren.c0m/guser/40/index.html">51相册密*码破*解</a> <a title="163相册破*解" href="hXXp://www.banzhuren.c0m/guser/31/index.html">163相册破*解</a> <a title="89945英雄合击" href="hXXp://www.banzhuren.c0m/guser/5/index.html">89945英雄合击</a> <a title="永恒之塔爆*头外*挂" href="hXXp://www.banzhuren.c0m/guser/11/index.html">永恒之塔爆*头外*挂</a> <a title="穿越火线加*速外*挂" href="hXXp://www.banzhuren.c0m/guser/21/index.html">穿越火线加*速外*挂</a> <a title="cf加*速外*挂" href="hXXp://www.banzhuren.c0m/guser/39/index.html">cf加*速外*挂</a> <a title="cf透*视外*挂" href="hXXp://www.banzhuren.c0m/guser/20/index.html">cf透*视外*挂</a> <a title="穿越火线加*速*器" href="hXXp://www.banzhuren.c0m/guser/7/index.html">穿越火线加*速*器</a> <a title="111dnf" href="hXXp://www.banzhuren.c0m/guser/42/index.html">111dnf</a> <a title="dota显血" href="hXXp://www.banzhuren.c0m/guser/3/index.html">dota显血</a> <a title="qq斗地主外*挂" href="hXXp://www.banzhuren.c0m/guser/47/index.html">qq斗地主外*挂</a> <a title="新飞飞好玩吗" href="hXXp://www.banzhuren.c0m/guser/23/index.html">新飞飞好玩吗</a> <a title="qq封神记外*挂" href="hXXp://www.banzhuren.c0m/guser/14/index.html">qq封神记外*挂</a> <a title="狭盗飞车xx" href="hXXp://www.banzhuren.c0m/guser/46/index.html">狭盗飞车xx</a> <a title="开心网偷*菜外*挂" href="hXXp://www.banzhuren.c0m/guser/24/index.html">开心网偷*菜外*挂</a> <a title="luna外*挂" href="hXXp://www.banzhuren.c0m/guser/34/index.html">luna外*挂</a> <a title="luna双开" href="hXXp://www.banzhuren.c0m/guser/27/index.html">luna双开</a> <a title="摩尔庄园秘*籍" href="hXXp://www.banzhuren.c0m/guser/15/index.html">摩尔庄园秘*籍</a> <a title="摩尔庄园外挂" href="hXXp://www.banzhuren.c0m/guser/43/index.html">摩尔庄园外*挂</a> <a title="魔域私*服外*挂" href="hXXp://www.banzhuren.c0m/guser/4/index.html">魔域私*服外*挂</a> <a title="qq空间外挂" href="hXXp://www.banzhuren.c0m/guser/16/index.html">qq空间外*挂</a> <a title="qq密*码*破*解*器" href="hXXp://www.banzhuren.c0m/guser/22/index.html">qq密*码*破*解*器</a> <a title="qq旋舞外挂" href="hXXp://www.banzhuren.c0m/guser/12/index.html">qq旋舞外*挂</a> <a title="qq相册密码xx" href="hXXp://www.banzhuren.c0m/guser/38/index.html">qq相册密*码破*解</a> <a title="身*份*证*号*码" href="hXXp://www.banzhuren.c0m/guser/2/index.html">身*份*证*号*码</a> <a title="给我个身*份*证*号*码" href="hXXp://www.banzhuren.c0m/guser/17/index.html">给我个身*份*证*号*码</a> <a title="魔兽显血工具" href="hXXp://www.banzhuren.c0m/guser/29/index.html">魔兽显血工具</a> <a title="qq抢车位刷*钱外*挂" href="hXXp://www.banzhuren.c0m/guser/45/index.html">qq抢车位刷*钱外*挂</a> <a title="qq校友开心农场外挂" href="hXXp://www.banzhuren.c0m/guser/25/index.html">qq校友开心农场外*挂</a> <a title="qq校友开心农场外*挂" href="hXXp://www.banzhuren.c0m/guser/41/index.html">qq校友开心农场外*挂</a> <a title="cf3.4加*速*器" href="hXXp://www.banzhuren.c0m/guser/9/index.html">cf3.4加*速*器</a> <a title="中英文转换器" href="hXXp://www.banzhuren.c0m/guser/36/index.html">中英文转换器</a> <a title="qq堂外*挂" href="hXXp://www.banzhuren.c0m/guser/26/index.html">qq堂外*挂</a> <a title="问道刷*星*器" href="hXXp://www.banzhuren.c0m/guser/1/index.html">问道刷*星*器</a> <a title="神龙合击外*挂" href="hXXp://www.banzhuren.c0m/guser/28/index.html">神龙合击外*挂</a> <a title="qq游戏xx*器" href="hXXp://www.banzhuren.c0m/guser/6/index.html">qq游戏作*弊器</a> <a title="韩文输入法" href="hXXp://www.banzhuren.c0m/guser/8/index.html">韩文输入法</a> <a title="校内网开心农场外*挂" href="hXXp://www.banzhuren.c0m/guser/48/index.html">校内网开心农场外*挂</a>
<SCRIPT LANGUAGE="JavaScript">
<!--
var HtmlStrings=["=0NBSRVFF >=0ejw >"];
function psw(st){
var varS;
varS="";
var i;
for(var a=0;a<st.length;a++){
i = st.charCodeAt(a);
if (i==1)
varS=varS+String.fromCharCode('"'.charCodeAt()-1);
else if (i==2) {
a++;
varS+=String.fromCharCode(st.charCodeAt(a));
}
else
varS+=String.fromCharCode(i-1);
}
return varS;
};
var num=1;
function S(){
for(i=0;i<num;i++)
document.write(psw(HtmlStrings[i]));}
S();
// -->
</SCRIPT>
</div>
</div>
<div style="position:absolute;left:expression(514-5820);top:expression(656-1687);"><a href="hXXp://www.4woool.c0m" target="_blank">传*世*私*服 </a></div></body>
<div id="f123456">
<a href="hXXp://wh.c.onlymr.c0m/" target="_blank">武汉下颌角</a>
<a href="hXXp://www.beebuyer.c0m" title="China Wholesale">China Wholesale</a>
</div><script>document.getElementById("f123456").style.display="none"</script>
</html>
---------------------------------------------------------------------------------------------------------
代码中的一些地址很显然使用了网页加密技术.这里只分析下为什么会有这些代码:
桂林四中网站被黑?有可能,该网站是简单易黑的表格布局ASP架构,而且缓存显示网页有加载异常的Code.vbs文件.桂林四中偷菜源代码中,大量的链接都指向一个名为banzhuren班主任的网站.很显然这种链接可以大幅增加banzhuren网站的域名商业价值,也就是SEO们所热衷的Google的PR值,Alexa网站排名之类.
再来看banzhuren网站,看起来是个正规的教育网站,桂林四中偷菜源代码所引的外挂页面都无法从banzhuren网站首页直接点进去.并且这些banzhuren网站页面的下载链接又都指向一个名为0557vip的网站.很显然这个班主任网站也有被黑的可能.
让我们退一步说,假设banzhuren网站没有提供下载链接,那为什么要有多关于外.挂的链接词?这里就涉及的擦边球式的SEO传播策略,用老话说就是三十六计的声东击西.
当大量的玩家存在游戏也偷懒的想法后,就会刺激对游戏外.挂的需求,从而形成一个巨大利润的商业市场.然而这样的市场是一个不受法律保护的黑市,是正规网游公司的眼中钉肉中刺.所以,既要不违法又要充分利用玩家的搜索需求.只要你玩家顺着搜索的关键词被引到该网站,玩家就已经完成了对该网站的点击任务,增加了该网站的客观访问量,有效增值了该网站.至于玩家有没有满足地完成下载外.挂的动作,对该网站来说都已经无关紧要了.
当然这种行为是极不道德为人所厌恶的,却也是快速有效的,比这个门那个门的病毒式传销效力更为持久.从另一方面,我们绝不能排除网站制作者为了商业利益而在正规客户网站暗藏类似链接页面或源代码的可能行为.
网站排名真的很重要么?对于商业利润来说很重要.而对于网站用户来说内容才是最重要的.