Guest User

Untitled

a guest
Oct 31st, 2014
131
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 11.10 KB | None | 0 0
  1. # BEGIN Better WP Security
  2. Options +FollowSymLinks
  3. Options -Indexes
  4.  
  5.  
  6.  
  7. # Begin HackRepair.com Blacklist
  8. RewriteEngine on
  9. # Abuse Agent Blocking
  10. RewriteCond %{HTTP_USER_AGENT} ^BlackWidow [NC,OR]
  11. RewriteCond %{HTTP_USER_AGENT} ^Bolt\ 0 [NC,OR]
  12. RewriteCond %{HTTP_USER_AGENT} ^Bot\ mailto:craftbot\@yahoo\.com [NC,OR]
  13. RewriteCond %{HTTP_USER_AGENT} CazoodleBot [NC,OR]
  14. RewriteCond %{HTTP_USER_AGENT} ^ChinaClaw [NC,OR]
  15. RewriteCond %{HTTP_USER_AGENT} ^Custo [NC,OR]
  16. RewriteCond %{HTTP_USER_AGENT} ^Default\ Browser\ 0 [NC,OR]
  17. RewriteCond %{HTTP_USER_AGENT} ^DIIbot [NC,OR]
  18. RewriteCond %{HTTP_USER_AGENT} ^DISCo [NC,OR]
  19. RewriteCond %{HTTP_USER_AGENT} discobot [NC,OR]
  20. RewriteCond %{HTTP_USER_AGENT} ^Download\ Demon [NC,OR]
  21. RewriteCond %{HTTP_USER_AGENT} ^eCatch [NC,OR]
  22. RewriteCond %{HTTP_USER_AGENT} ecxi [NC,OR]
  23. RewriteCond %{HTTP_USER_AGENT} ^EirGrabber [NC,OR]
  24. RewriteCond %{HTTP_USER_AGENT} ^EmailCollector [NC,OR]
  25. RewriteCond %{HTTP_USER_AGENT} ^EmailSiphon [NC,OR]
  26. RewriteCond %{HTTP_USER_AGENT} ^EmailWolf [NC,OR]
  27. RewriteCond %{HTTP_USER_AGENT} ^Express\ WebPictures [NC,OR]
  28. RewriteCond %{HTTP_USER_AGENT} ^ExtractorPro [NC,OR]
  29. RewriteCond %{HTTP_USER_AGENT} ^EyeNetIE [NC,OR]
  30. RewriteCond %{HTTP_USER_AGENT} ^FlashGet [NC,OR]
  31. RewriteCond %{HTTP_USER_AGENT} ^GetRight [NC,OR]
  32. RewriteCond %{HTTP_USER_AGENT} ^GetWeb! [NC,OR]
  33. RewriteCond %{HTTP_USER_AGENT} ^Go!Zilla [NC,OR]
  34. RewriteCond %{HTTP_USER_AGENT} ^Go-Ahead-Got-It [NC,OR]
  35. RewriteCond %{HTTP_USER_AGENT} ^GrabNet [NC,OR]
  36. RewriteCond %{HTTP_USER_AGENT} ^Grafula [NC,OR]
  37. RewriteCond %{HTTP_USER_AGENT} GT::WWW [NC,OR]
  38. RewriteCond %{HTTP_USER_AGENT} heritrix [NC,OR]
  39. RewriteCond %{HTTP_USER_AGENT} ^HMView [NC,OR]
  40. RewriteCond %{HTTP_USER_AGENT} HTTP::Lite [NC,OR]
  41. RewriteCond %{HTTP_USER_AGENT} HTTrack [NC,OR]
  42. RewriteCond %{HTTP_USER_AGENT} ia_archiver [NC,OR]
  43. RewriteCond %{HTTP_USER_AGENT} IDBot [NC,OR]
  44. RewriteCond %{HTTP_USER_AGENT} id-search [NC,OR]
  45. RewriteCond %{HTTP_USER_AGENT} id-search\.org [NC,OR]
  46. RewriteCond %{HTTP_USER_AGENT} ^Image\ Stripper [NC,OR]
  47. RewriteCond %{HTTP_USER_AGENT} ^Image\ Sucker [NC,OR]
  48. RewriteCond %{HTTP_USER_AGENT} Indy\ Library [NC,OR]
  49. RewriteCond %{HTTP_USER_AGENT} ^InterGET [NC,OR]
  50. RewriteCond %{HTTP_USER_AGENT} ^Internet\ Ninja [NC,OR]
  51. RewriteCond %{HTTP_USER_AGENT} ^InternetSeer\.com [NC,OR]
  52. RewriteCond %{HTTP_USER_AGENT} IRLbot [NC,OR]
  53. RewriteCond %{HTTP_USER_AGENT} ISC\ Systems\ iRc\ Search\ 2\.1 [NC,OR]
  54. RewriteCond %{HTTP_USER_AGENT} ^Java [NC,OR]
  55. RewriteCond %{HTTP_USER_AGENT} ^JetCar [NC,OR]
  56. RewriteCond %{HTTP_USER_AGENT} ^JOC\ Web\ Spider [NC,OR]
  57. RewriteCond %{HTTP_USER_AGENT} ^larbin [NC,OR]
  58. RewriteCond %{HTTP_USER_AGENT} ^LeechFTP [NC,OR]
  59. RewriteCond %{HTTP_USER_AGENT} libwww [NC,OR]
  60. RewriteCond %{HTTP_USER_AGENT} libwww-perl [NC,OR]
  61. #RewriteCond %{HTTP_USER_AGENT} ^Link [NC,OR]
  62. RewriteCond %{HTTP_USER_AGENT} LinksManager.com_bot [NC,OR]
  63. RewriteCond %{HTTP_USER_AGENT} linkwalker [NC,OR]
  64. RewriteCond %{HTTP_USER_AGENT} lwp-trivial [NC,OR]
  65. RewriteCond %{HTTP_USER_AGENT} ^Mass\ Downloader [NC,OR]
  66. RewriteCond %{HTTP_USER_AGENT} ^Maxthon$ [NC,OR]
  67. RewriteCond %{HTTP_USER_AGENT} MFC_Tear_Sample [NC,OR]
  68. RewriteCond %{HTTP_USER_AGENT} ^microsoft\.url [NC,OR]
  69. RewriteCond %{HTTP_USER_AGENT} Microsoft\ URL\ Control [NC,OR]
  70. RewriteCond %{HTTP_USER_AGENT} ^MIDown\ tool [NC,OR]
  71. RewriteCond %{HTTP_USER_AGENT} ^Mister\ PiX [NC,OR]
  72. RewriteCond %{HTTP_USER_AGENT} Missigua\ Locator [NC,OR]
  73. RewriteCond %{HTTP_USER_AGENT} ^Mozilla\.*Indy [NC,OR]
  74. RewriteCond %{HTTP_USER_AGENT} ^Mozilla\.*NEWT [NC,OR]
  75. RewriteCond %{HTTP_USER_AGENT} ^MSFrontPage [NC,OR]
  76. RewriteCond %{HTTP_USER_AGENT} ^Navroad [NC,OR]
  77. RewriteCond %{HTTP_USER_AGENT} ^NearSite [NC,OR]
  78. RewriteCond %{HTTP_USER_AGENT} ^NetAnts [NC,OR]
  79. RewriteCond %{HTTP_USER_AGENT} ^NetSpider [NC,OR]
  80. RewriteCond %{HTTP_USER_AGENT} ^Net\ Vampire [NC,OR]
  81. RewriteCond %{HTTP_USER_AGENT} ^NetZIP [NC,OR]
  82. RewriteCond %{HTTP_USER_AGENT} ^Nutch [NC,OR]
  83. RewriteCond %{HTTP_USER_AGENT} ^Octopus [NC,OR]
  84. RewriteCond %{HTTP_USER_AGENT} ^Offline\ Explorer [NC,OR]
  85. RewriteCond %{HTTP_USER_AGENT} ^Offline\ Navigator [NC,OR]
  86. RewriteCond %{HTTP_USER_AGENT} ^PageGrabber [NC,OR]
  87. RewriteCond %{HTTP_USER_AGENT} panscient.com [NC,OR]
  88. RewriteCond %{HTTP_USER_AGENT} ^Papa\ Foto [NC,OR]
  89. RewriteCond %{HTTP_USER_AGENT} ^pavuk [NC,OR]
  90. RewriteCond %{HTTP_USER_AGENT} PECL::HTTP [NC,OR]
  91. RewriteCond %{HTTP_USER_AGENT} ^PeoplePal [NC,OR]
  92. RewriteCond %{HTTP_USER_AGENT} ^pcBrowser [NC,OR]
  93. RewriteCond %{HTTP_USER_AGENT} PHPCrawl [NC,OR]
  94. RewriteCond %{HTTP_USER_AGENT} PleaseCrawl [NC,OR]
  95. RewriteCond %{HTTP_USER_AGENT} ^psbot [NC,OR]
  96. RewriteCond %{HTTP_USER_AGENT} ^RealDownload [NC,OR]
  97. RewriteCond %{HTTP_USER_AGENT} ^ReGet [NC,OR]
  98. RewriteCond %{HTTP_USER_AGENT} ^Rippers\ 0 [NC,OR]
  99. RewriteCond %{HTTP_USER_AGENT} SBIder [NC,OR]
  100. RewriteCond %{HTTP_USER_AGENT} ^SeaMonkey$ [NC,OR]
  101. RewriteCond %{HTTP_USER_AGENT} ^sitecheck\.internetseer\.com [NC,OR]
  102. RewriteCond %{HTTP_USER_AGENT} ^SiteSnagger [NC,OR]
  103. RewriteCond %{HTTP_USER_AGENT} ^SmartDownload [NC,OR]
  104. RewriteCond %{HTTP_USER_AGENT} Snoopy [NC,OR]
  105. RewriteCond %{HTTP_USER_AGENT} Steeler [NC,OR]
  106. RewriteCond %{HTTP_USER_AGENT} ^SuperBot [NC,OR]
  107. RewriteCond %{HTTP_USER_AGENT} ^SuperHTTP [NC,OR]
  108. RewriteCond %{HTTP_USER_AGENT} ^Surfbot [NC,OR]
  109. RewriteCond %{HTTP_USER_AGENT} ^tAkeOut [NC,OR]
  110. RewriteCond %{HTTP_USER_AGENT} ^Teleport\ Pro [NC,OR]
  111. RewriteCond %{HTTP_USER_AGENT} ^Toata\ dragostea\ mea\ pentru\ diavola [NC,OR]
  112. RewriteCond %{HTTP_USER_AGENT} URI::Fetch [NC,OR]
  113. RewriteCond %{HTTP_USER_AGENT} urllib [NC,OR]
  114. RewriteCond %{HTTP_USER_AGENT} User-Agent [NC,OR]
  115. RewriteCond %{HTTP_USER_AGENT} ^VoidEYE [NC,OR]
  116. RewriteCond %{HTTP_USER_AGENT} ^Web\ Image\ Collector [NC,OR]
  117. RewriteCond %{HTTP_USER_AGENT} ^Web\ Sucker [NC,OR]
  118. RewriteCond %{HTTP_USER_AGENT} Web\ Sucker [NC,OR]
  119. RewriteCond %{HTTP_USER_AGENT} webalta [NC,OR]
  120. RewriteCond %{HTTP_USER_AGENT} ^WebAuto [NC,OR]
  121. RewriteCond %{HTTP_USER_AGENT} ^[Ww]eb[Bb]andit [NC,OR]
  122. RewriteCond %{HTTP_USER_AGENT} WebCollage [NC,OR]
  123. RewriteCond %{HTTP_USER_AGENT} ^WebCopier [NC,OR]
  124. RewriteCond %{HTTP_USER_AGENT} ^WebFetch [NC,OR]
  125. RewriteCond %{HTTP_USER_AGENT} ^WebGo\ IS [NC,OR]
  126. RewriteCond %{HTTP_USER_AGENT} ^WebLeacher [NC,OR]
  127. RewriteCond %{HTTP_USER_AGENT} ^WebReaper [NC,OR]
  128. RewriteCond %{HTTP_USER_AGENT} ^WebSauger [NC,OR]
  129. RewriteCond %{HTTP_USER_AGENT} ^Website\ eXtractor [NC,OR]
  130. RewriteCond %{HTTP_USER_AGENT} ^Website\ Quester [NC,OR]
  131. RewriteCond %{HTTP_USER_AGENT} ^WebStripper [NC,OR]
  132. RewriteCond %{HTTP_USER_AGENT} ^WebWhacker [NC,OR]
  133. RewriteCond %{HTTP_USER_AGENT} ^WebZIP [NC,OR]
  134. RewriteCond %{HTTP_USER_AGENT} Wells\ Search\ II [NC,OR]
  135. RewriteCond %{HTTP_USER_AGENT} WEP\ Search [NC,OR]
  136. RewriteCond %{HTTP_USER_AGENT} ^Wget [NC,OR]
  137. RewriteCond %{HTTP_USER_AGENT} ^Widow [NC,OR]
  138. RewriteCond %{HTTP_USER_AGENT} ^WWW-Mechanize [NC,OR]
  139. RewriteCond %{HTTP_USER_AGENT} ^WWWOFFLE [NC,OR]
  140. RewriteCond %{HTTP_USER_AGENT} ^Xaldon\ WebSpider [NC,OR]
  141. RewriteCond %{HTTP_USER_AGENT} zermelo [NC,OR]
  142. RewriteCond %{HTTP_USER_AGENT} ^Zeus [NC,OR]
  143. RewriteCond %{HTTP_USER_AGENT} ^Zeus\.*Webster [NC,OR]
  144. RewriteCond %{HTTP_USER_AGENT} ZyBorg [NC]
  145. RewriteRule ^.* - [F,L]
  146. # Abuse bot blocking rule end
  147. # End HackRepair.com Blacklist
  148. <files .htaccess>
  149. Order allow,deny
  150. Deny from all
  151. </files>
  152.  
  153. <files readme.html>
  154. Order allow,deny
  155. Deny from all
  156. </files>
  157.  
  158. <files readme.txt>
  159. Order allow,deny
  160. Deny from all
  161. </files>
  162.  
  163. <files install.php>
  164. Order allow,deny
  165. Deny from all
  166. </files>
  167.  
  168. <files wp-config.php>
  169. Order allow,deny
  170. Deny from all
  171. </files>
  172.  
  173. <IfModule mod_rewrite.c>
  174. RewriteEngine On
  175. RewriteRule ^wp-admin/includes/ - [F,L]
  176. RewriteRule !^wp-includes/ - [S=3]
  177. RewriteCond %{SCRIPT_FILENAME} !^(.*)wp-includes/ms-files.php
  178. RewriteRule ^wp-includes/[^/]+\.php$ - [F,L]
  179. RewriteRule ^wp-includes/js/tinymce/langs/.+\.php - [F,L]
  180. RewriteRule ^wp-includes/theme-compat/ - [F,L]
  181.  
  182. RewriteCond %{REQUEST_METHOD} ^(TRACE|DELETE|TRACK) [NC]
  183. RewriteRule ^(.*)$ - [F,L]
  184.  
  185. RewriteCond %{REQUEST_METHOD} POST
  186. RewriteCond %{REQUEST_URI} ^(.*)wp-comments-post\.php*
  187. RewriteCond %{HTTP_REFERER} !^(.*).*
  188. RewriteCond %{HTTP_REFERER} !^http://jetpack\.wordpress\.com/jetpack-comment/ [OR]
  189. RewriteCond %{HTTP_USER_AGENT} ^$
  190. RewriteRule ^(.*)$ - [F,L]
  191.  
  192. RewriteCond %{QUERY_STRING} \.\.\/ [NC,OR]
  193. RewriteCond %{QUERY_STRING} ^.*\.(bash|git|hg|log|svn|swp|cvs) [NC,OR]
  194. RewriteCond %{QUERY_STRING} etc/passwd [NC,OR]
  195. RewriteCond %{QUERY_STRING} boot\.ini [NC,OR]
  196. RewriteCond %{QUERY_STRING} ftp\: [NC,OR]
  197. RewriteCond %{QUERY_STRING} http\: [NC,OR]
  198. RewriteCond %{QUERY_STRING} https\: [NC,OR]
  199. RewriteCond %{QUERY_STRING} (\<|%3C).*script.*(\>|%3E) [NC,OR]
  200. RewriteCond %{QUERY_STRING} mosConfig_[a-zA-Z_]{1,21}(=|%3D) [NC,OR]
  201. RewriteCond %{QUERY_STRING} base64_encode.*\(.*\) [NC,OR]
  202. RewriteCond %{QUERY_STRING} ^.*(\[|\]|\(|\)|<|>|ê|"|;|\?|\*|=$).* [NC,OR]
  203. RewriteCond %{QUERY_STRING} ^.*("|'|<|>|\|{||).* [NC,OR]
  204. RewriteCond %{QUERY_STRING} ^.*(%24&x).* [NC,OR]
  205. RewriteCond %{QUERY_STRING} ^.*(%0|%B|%C|%E|%F|127\.0).* [NC,OR]
  206. RewriteCond %{QUERY_STRING} ^.*(globals|encode|localhost|loopback).* [NC,OR]
  207. RewriteCond %{QUERY_STRING} ^.*(request|select|concat|insert|union|declare).* [NC]
  208. RewriteCond %{QUERY_STRING} !^loggedout=true
  209. RewriteCond %{QUERY_STRING} !^action=rp
  210. RewriteCond %{HTTP_COOKIE} !^.*wordpress_logged_in_.*$
  211. RewriteCond %{HTTP_REFERER} !^http://maps\.googleapis\.com(.*)$
  212. RewriteRule ^(.*)$ - [F,L]
  213.  
  214. RewriteRule ^login/?$ /var/www/leumi-v2/wp-login.php?ks6ozakczspg0kyt11zvk [R,L]
  215.  
  216. RewriteCond %{HTTP_COOKIE} !^.*wordpress_logged_in_.*$
  217. RewriteRule ^admin/?$ /var/www/leumi-v2/wp-login.php?ks6ozakczspg0kyt11zvk&redirect_to=/var/www/leumi-v2/wp-admin/ [R,L]
  218.  
  219. RewriteRule ^admin/?$ /var/www/leumi-v2/wp-admin/?ks6ozakczspg0kyt11zvk [R,L]
  220.  
  221. RewriteRule ^register/?$ /var/www/leumi-v2/wp-login.php?ks6ozakczspg0kyt11zvk&action=register [R,L]
  222.  
  223. RewriteCond %{SCRIPT_FILENAME} !^(.*)admin-ajax\.php
  224. RewriteCond %{HTTP_REFERER} !^(.*)/var/www/leumi-v2/wp-admin
  225. RewriteCond %{HTTP_REFERER} !^(.*)/var/www/leumi-v2/wp-login\.php
  226. RewriteCond %{HTTP_REFERER} !^(.*)/var/www/leumi-v2/login
  227. RewriteCond %{HTTP_REFERER} !^(.*)/var/www/leumi-v2/admin
  228. RewriteCond %{HTTP_REFERER} !^(.*)/var/www/leumi-v2/register
  229. RewriteCond %{QUERY_STRING} !^ks6ozakczspg0kyt11zvk
  230. RewriteCond %{QUERY_STRING} !^action=logout
  231. RewriteCond %{QUERY_STRING} !^action=rp
  232. RewriteCond %{QUERY_STRING} !^action=register
  233. RewriteCond %{QUERY_STRING} !^action=postpass
  234. RewriteCond %{HTTP_COOKIE} !^.*wordpress_logged_in_.*$
  235. RewriteRule ^.*wp-admin/?|^.*wp-login\.php /var/www/leumi-v2/404 [R,L]
  236.  
  237. RewriteCond %{QUERY_STRING} ^loggedout=true
  238. RewriteRule ^.*$ /var/www/leumi-v2/wp-login.php?ks6ozakczspg0kyt11zvk [R,L]
  239. </IfModule>
  240. # END Better WP Security
  241.  
  242. # BEGIN WordPress
  243. <IfModule mod_rewrite.c>
  244. RewriteEngine On
  245. RewriteBase /var/www/leumi-v2/
  246. RewriteRule ^index\.php$ - [L]
  247. RewriteCond %{REQUEST_FILENAME} !-f
  248. RewriteCond %{REQUEST_FILENAME} !-d
  249. RewriteRule . /var/www/leumi-v2/index.php [L]
  250. </IfModule>
  251. <IfModule mod_rewrite.c>
  252. RewriteEngine On
  253. RewriteBase /
  254. RewriteRule ^index\.php$ - [L]
  255. RewriteCond %{REQUEST_FILENAME} !-f
  256. RewriteCond %{REQUEST_FILENAME} !-d
  257. RewriteRule . /index.php [L]
  258. </IfModule>
  259.  
  260. # END WordPress
Add Comment
Please, Sign In to add comment