The invention discloses a method for automatically positioning webpage Trojan
mount point in a Trojan linked webpage and belongs to the field of
computer security. The method comprises the following steps of: a) determining the Trojan linking webpage; b) acquiring a
style sheet in the Trojan linked webpage, and performing
script analysis on the scripts therein according to a step c); c) acquiringthe scripts in the Trojan linked webpage, outputting the positions of malicious scripts in a father webpage, wherein the malicious characteristics comprise: calling the objects of known bugs, containing malicious codes, opening malicious webpages, redirecting to the malicious webpages, and adding malicious webpages; and d) acquiring an embedded webpage in the Trojan linked webpage, comparing whether the website
domain name is the same as the Trojan linked webpage for the embedded webpage determined to be subjected to Trojan linkage, if so, performing
recursive analysis, otherwise, outputting the position of an embedded
label in the father webpage. The method can be applied to the
computer security, and comprises rapidly positioning the
mount position of the webpage Trojan in the webpage to assist the website management personnel to rapidly remove the malicious contents contained in the webpage.