Kuchengetedzwa kweWordPress · Forensics

Ziva chaizvo zvakaitika kune webhusaiti yako.

Armory Security ndiyo toolkit yaunowana kana webhusaiti yeWordPress yakanganiswa - kana kuti ingave - yakakanganiswa. Inotora baseline yeSHA-256 integrity, inoongorora macheki epakati neplugin, inotsvaga mawebhu-shells uye PHP yakavharika, uye inoongorora nzvimbo dzekuvanda dzinofarirwa nemurwisi. Kuverenga chete uye forensics - kutanga: inokuudza zvakaitika. pamberi unochinja chero chinhu.

Tora Premium — $49/gore Ona zvinhu zviri mukati Musoro wemahara · Yepamusoro $49 pagore
🔍 SHA-256 integrity baseline 🐚 Muvhimi wegoko rewebhu 👻 Kuonekwa kweGhost-admin 🧾 Kutumira humbowo kunze kwenyika 🔒 Kuverenga chete nekusingaperi
yoursite.com/wp-admin · Kuchengetedzwa kwezvombo
# kuongorora zvombo — kusimba kwefaira + kutsvaira kwewebhu-shell
macheki makuru ✓ yakasimbiswa (WordPress 6.x, 0 kusawirirana)
macheki eplugin 1 yakagadziriswa! akismet/akismet.php
kuvhima ganda rewebhu ⚠ 1 kuwanikwa wp-zviri mukati/zvakaiswa/2026/04/.cache.php
eval yakavharika (base64_decode( … )) · Yakafambiswa nePOST
vatungamiriri vemweya ⚠ 1 yakavanzika mushandisi “wp-svc” · akagadzirwa 03:14 UTC
nzira dzematsotsi ✓ hapana
cron yakaipa ✓ hapana
ma-plugins/drop-ins ✓ kuchenesa
# hwakachengetedzwa hwepakutanga · bundle reuchapupu ragadzirira kutumirwa kunze kwenyika
$

Ratidza zvakaitika, wobva wazvigadzirisa

Nzira yakakwana yekuongorora zviitiko — kwete imwe scanner inoti "ungangove uine hutachiona".

🧬

Huwandu hwekutanga hwemafaira

Nhamba yeSHA-256 yefaira rega rega, ine diff on demand — ona chaizvo zvakawedzerwa, zvakachinjwa kana zvakabviswa kubva pawakanga wakachena.

Macheki epakati neplugin

Simbisa mafaira eWordPress core ne plugin uchienzaniswa nema checksum epamutemo kuti uwane kodhi yakakanganiswa ipapo ipapo.

🐚

Muvhimi we malware weWeb-shell & PHP

Signature + heuristic engine inowana ma web-shells ne obfuscated PHP — ma eval/base64/POST patterns attackers anovanda muma uploads.

👻

Kuonekwa kweGhost-admin

Mutongi wepachivande anotaura kuti murwisi akawedzerwa chinyararire kuti arambe akamira.

🛣️

Nzira isina kunaka uye kuongorora kwecron

Ongorora nzira dzeREST/AJAX dzine njodzi, zviitiko zve cron zvakarongwa, ma mu-plugins uye ma drop-ins anoshandiswa kuti zvirambe zviripo.

📡

C2 / kuburitswa kwedhomeini inobuda

Bvisa ma domain ane kodhi dzakaoma uye anobuda kubva mumafaira anofungirwa kuti uwane runyorwa rwema block-list ako uye kuenderana kweIOC.

👮

Kuvimba nechikamu cheAdmin & kurwisa

Ona kuti ndiani apinda, kubva kupi IP uye mudziyo upi, neruzivo rwekurwiswa kwechokwadi rwemasaini ekukumbira kupinda.

🛡️

Kuomesa nekudzvanya kamwe chete uye kuvharira vanhu vari vega

Isa simba rekushanda, vhara nzvimbo yacho woisa mafaira ekufungidzira muchivande — zviito zvaunotonga nemaune, zvinodzokororwa.

🧾

Kutumira humbowo hwakadhindwa nenguva

Tumira kunze bundle rehumbowo rakaiswa nguva (ZIP/CSV) — rekodhi yakachena yezvakawanikwa zvemushumo wako kana wemugamuchiri wako.

Kuwanikwa kwemahara. Kupindura kweprimiyamu.

Nzira yekuona data haina muripo zvachose — baseline, checksums, web-shell hunting, ghost-admin uye persistence audits. Premium inoshandura Armory kubva pa "chii chakaitika?" kuita "kubata": kutarisa nguva dzose, zviziviso zvenguva chaiyo uye humbowo hwakagadzirira kudare.

  • Zviziviso zvekutanga zvakarongwa uye zviziviso zvekusvetuka
  • Kutarisa-akaundi yekutonga nehurongwa panguva chaiyo
  • Kufananidza kwechiratidzo chekubvumirana (IOC)
  • Mapaketi ehumbowo ane nguva uye nguva yakatarwa
yoursite.com/wp-admin · Rezinesi & Ronga
# yemahara vs yepamusoro
MAHARA kuchengetedzeka · musimboti · mapulagini · goko · polyglot
htaccess · db · mu · nguva yekumhanya · chiitiko
Yepamusoro-soro purogiramu · tarisa · murindi · chikafu · misangano
kuomesa · kuvharirwa · kuunganidzwa · nguva yakatarwa
madomeni · nzira · authhooks · perms · cron
ioc · ai
# kusimudzira kuripo kubva kuWP Admin → Rezinesi & Chirongwa
$

Kubva pa "pamwe zvakabiwa" kusvika pamhinduro

Hapana vamiririri, hapana mafaira ako anoiswa mu "cloud upload". Zvese zvinofamba mukati meWordPress yako.

Isa scanner yemahara

Isa plugin woivhura. Nzira yekuona inoshanda ipapo ipapo — hapana kiyi inodiwa.

Nheyo yekutanga & skena

Bata SHA-256 baseline, simbisa macheki uye mhanyisa web-shell, ghost-admin uye persistence sweep.

Pindura & ratidza

Kuisa muchivande, kusimbisa uye kutumira kunze kwenyika bundle reuchapupu rine nguva. Wedzera kune yepamusoro-soro yekutarisa uye yekuzivisa.

Tanga mahara nhasi

Chinoongorora che forensic chakazara hachina muripo zvachose. Wedzera mhinduro yepamusoro uye kutarisa kwe $49 pagore — simudzira kubva kuWP Admin chero nguva.

Mahara
$0 zvachose
Funnel yekuona zvizere · nzvimbo dzese
  • SHA-256 integrity baseline & diffuse
  • Kuongororwa kweCore & plugin checksum
  • Web-shell & obfuscated-PHP hunter
  • Ghost-admin, nzira, cron & mu-plugin audit
  • Kutumira humbowo kunze kwenyika (ZIP/CSV)
Wana chiziviso chekutangisa
Yepamusoro-soro
$49 /gore
Mhinduro · kutarisa · humbowo · Nzvimbo 1
  • Zvese zviri muMahara
  • Zviziviso zvekutanga zvakarongwa uye zviziviso zvekusvetuka
  • Kutarisa hutungamiriri hwenguva chaiyo uye nguva
  • Kurwisa kwehupenyu hwese uye kufananidza kweIOC
  • Kuomesa nekudzvanya kamwe chete, kugara wega uye nguva yakatarwa

Kubhadhara kwakachengeteka kuburikidza neStripe · dzima chero nguva

Wava kukundikana izvozvi uye unoda rubatsiro rwekubatsira? Bvunza nezvemhinduro yenyanzvi pachiitiko →

ROkuverenga chete

Kuongororwa kwemhosva - kutanga, kusakuvadza zvachose

Armory inotora humbowo uye inokuudza zvakaitika usati wabata chero chinhu. Kuomesa, kugara wega uye kuvharirwa mudzimba zviito zvakajeka, nemaune zvaunosarudza kuita - hazvimboiti kuti zviitike kamwe kamwe.

🔒

Inomhanya paserver yako

Mafaira ako haamboiswa kune mumwe munhu wechitatu. Ongororo inoitika mukati meWordPress yako.

🧾

Uchapupu hwakagadzirira kudare

Zvawanikwa zvine nguva uye zvinokwanisa kutumirwa kunze kwenyika zvaunogona kupa kune mutariri wako kana mushumo wako.

🧩

Inoshanda neWAF yako

Inowedzera mafirewall akaita seWordfence — inoratidza uye inogadzirisa, kwete mablock chete.

Kutanga mahara

Nzira yekuona zvese haina muripo. Gadziridza kuti upindure uye utarise kana wagadzirira.

Mibvunzo, yakapindurwa

Ko kuchengetedzwa kwezvombo hakuna muripo here?

Ehe — core forensic scanner haina muripo: SHA-256 integrity baseline, core/plugin checksum verification, web-shell uye obfuscated-PHP hunting, ghost-admin detection nezvimwe zvese zve detection funnel. Premium inowedzera live response, monitoring uye proof features.

Zvichachinja here kana kuti zvichakanganisa webhusaiti yangu?

Kwete. Armory inotanga nekuongorora mafambiro emhosva uye inongoverengwa chete: inokuudza chaizvo zvakaitika usati wachinja chero chinhu. Kuomesa musoro, kugara wega uye kuvharirwa mujeri zviito zvakajeka, zvaunozvikonzera wega.

Ndingaimhanyisa pamwe chete neWordfence kana imwe plugin yekuchengetedza here?

Ehe. Nzvimbo yezvombo inovakwa panguva iyo nzvimbo iri - kana kuti ingave - yakakanganiswa, ichibatsirana nefirewall/WAF pane kuitsiva. Inotarisa pakuratidza zvakachinja uye kuwana humbowo, kwete pakuvharira traffic.

Chii chinowedzera chirongwa che premium?

Premium inovhura divi remhinduro nekutarisa: mabhenefiti akarongwa, kutarisa kweaccount yenguva chaiyo uye session, feed yekurwisa mhenyu, kuomesa kamwe chete, kugara wega, kufananidza chiratidzo chekubvumirana uye mabundle euchapupu ane nguva.

Mari yeprimiyamu inodhura zvakadii uye ndinoitenga sei?

Yepamusoro-soro ndeye $49 pagore kune imwe saiti, inobhadhariswa zvakachengeteka kuburikidza neStripe — kanzura chero nguva. Mushure mekubhadhara unowana kiyi yako yerezinesi neemail ipapo ipapo; ishandise kubva mukati meWP Admin pasi pe Kuchengetedzwa kweZvekushandisa → Rezinesi & Ronga.

Gara wakagadzirira usati wabvumiranazve.

Tora ruzivo rwakachena, ziva nguva iyo chero chinhu chinochinja, uye ratidza zvakaitika. Tanga mahara, wedzera kuPremium nemadhora makumi mana nemapfumbamwe pagore kana uchida kutariswa uye kupindurwa.

Tora Premium — $49/gore