htaccess File via Registration ? appreciate any advice - Joomla! Forum - community, help and support


hi have website .htaccess file has been hacked redirect links online shop found via google amp warning

i have removed coded , elements site site joomla 3.x totally date shop k2 , k2 store , components etc updated.

the site seems being attacked via registrations process currently, has 30 of 40 people registering day. spurious in reality site may several new actual customers quarterly. also, surge in registration occurred directly removed malicious code.

attached of coded .htacces file , list of files removed site

can suggest can prevent happening

code: select all


rewriteengine on
rewritecond %{query_string} ^view=(login|registration)$
rewriterule ^index.php/component/users(/)?$ - [f,l]
rewritecond %{query_string} ^option=com_users&view=(login|registration)$
rewriterule ^index.php$ - [f,l]
rewriterule ^jcontent-2/2012-10-25-21-52-18/registration-form.html$ - [f,l]

# 301 redirect 7
rewritecond %{query_string}  ^oscsid=cgn3rgkqne4pll9gjs8f09ovs5(&.*)?$ [nc]
rewriterule ^product_info\.php/cpath/24/products_id/69$ /legend-shop/historical-instructional/item/343-advanced-kata-vol-2-enoeda.html?%1 [r=301,ne,nc,l]

# 301 redirect 8
rewritecond %{query_string}  ^oscsid=ljc9etgnfusm3cce09fgk7qg43(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/133$ /legend-shop/historical-instructional/item/354-vol-4-shotokan-weapons-and-ippon-kumite.html?%1 [r=301,ne,nc,l]

# 301 redirect 9
rewritecond %{query_string}  ^oscsid=n8fi1j57c87ii2bmuoevl12dv4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/132$ /legend-shop/historical-instructional/item/366-vol-3-shotokan-self-defence.html?%1 [r=301,ne,nc,l]

# 301 redirect 10
rewritecond %{query_string}  ^oscsid=se1n9kb8ocecdo9i20hft1snp4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/131$ /legend-shop/historical-instructional/item/365-vol-2-shotokan-kata-bunkia-2.html?%1 [r=301,ne,nc,l]

# 301 redirect 11
rewritecond %{query_string}  ^oscsid=cm8hlr9md1at10ga118v6o4v07(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/130$ /legend-shop/historical-instructional/item/353-vol-1-shotokan-kata-bunkai-1.html?%1 [r=301,ne,nc,l]

# 301 redirect 12
rewritecond %{query_string}  ^oscsid=mdo5doprud80g8qsugv4t6pa15(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/129$ /k2-shop-2/k2-shop-2/k2-item.html?%1 [r=301,ne,nc,l]

# 301 redirect 13
rewritecond %{query_string}  ^oscsid=gg01at40cogmmvgrmhcum0el67(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/118$ /legend-shop/historical-instructional/item/371-kanazawa-kata.html?%1 [r=301,ne,nc,l]

# 301 redirect 14
rewritecond %{query_string}  ^oscsid=8q1687bg407q1ep37kel106kr4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/117$ /legend-shop/historical-instructional/item/372-kanazawa-kihon.html?%1 [r=301,ne,nc,l]

# 301 redirect 15
rewritecond %{query_string}  ^oscsid=8fetc0lku29vi55he1cils5n72(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/116$ /legend-shop/historical-instructional/item/363-old-jka-films.html?%1 [r=301,ne,nc,l]

# 301 redirect 16
rewritecond %{query_string}  ^oscsid=tigmh0d223n4fk4d3dvgfifh94(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/115$ /legend-shop/historical-instructional/item/362-jka-masters-of-the-70s.html?%1 [r=301,ne,nc,l]

# 301 redirect 17
rewritecond %{query_string}  ^oscsid=hddg02aq6uakg0o11bhqehgmg7(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/114$ /legend-shop/historical-instructional/item/361-jka-masters-of-the-60s.html?%1 [r=301,ne,nc,l]

# 301 redirect 18
rewritecond %{query_string}  ^oscsid=46g46cea85p402m50n6fl7rt20(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/113$ /legend-shop/historical-instructional/item/360-jka-masters-of-the-50s.html?%1 [r=301,ne,nc,l]

# 301 redirect 19
rewritecond %{query_string}  ^oscsid=1iosal0uu476upatlvljc9iku6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/112$ /legend-shop/historical-instructional/item/359-eisuke-akamine.html?%1 [r=301,ne,nc,l]

# 301 redirect 20
rewritecond %{query_string}  ^oscsid=ftgk07j6q1c2omftv14bpf37u6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/111$ /legend-shop/documentaries/item/337-budo-the-art-of-killing.html?%1 [r=301,ne,nc,l]

# 301 redirect 21
rewritecond %{query_string}  ^oscsid=f3fvl6pt7mv6mihk5amh3pg8h6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/110$ /legend-shop/historical-instructional/item/358-power-training.html?%1 [r=301,ne,nc,l]

# 301 redirect 22
rewritecond %{query_string}  ^oscsid=nmg4tmhgj3e58oet8pbperoen1(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/109$ /legend-shop/documentaries/item/339-1986-kugb-championships.html?%1 [r=301,ne,nc,l]

# 301 redirect 23
rewritecond %{query_string}  ^oscsid=gfklievc3dlq3ru0pgce76i124(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/105$ /legend-shop/documentaries/item/335-the-shotokan-legacy.html?%1 [r=301,ne,nc,l]

# 301 redirect 24
rewritecond %{query_string}  ^oscsid=n4ik4bp3pudqpuv9cef94th2g5(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/104$ /legend-shop/competition-events/item/313-2nd-shoto-world-cup.html?%1 [r=301,ne,nc,l]

# 301 redirect 25
rewritecond %{query_string}  ^oscsid=p4f26cqmdbe0gm1ildseuvaj32(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/102$ /legend-shop/profiles/item/352-randy-williams-a-profile.html?%1 [r=301,ne,nc,l]

# 301 redirect 26
rewritecond %{query_string}  ^oscsid=kpsm6q8enldu7s39l2v43jr7n0(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/101$ /legend-shop/profiles/item/351-george-best-a-profile.html?%1 [r=301,ne,nc,l]

# 301 redirect 27
rewritecond %{query_string}  ^oscsid=nrklh92i5ojsome099ct0l7h30(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/100$ /legend-shop/profiles/item/350-ronnie-christopher-a-profile.html?%1 [r=301,ne,nc,l]

# 301 redirect 28
rewritecond %{query_string}  ^oscsid=pvglijdqq6n3ese3elij2gbt23(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/98$ /legend-shop/profiles/item/349-elwyn-hall-looks-back.html?%1 [r=301,ne,nc,l]

# 301 redirect 29
rewritecond %{query_string}  ^oscsid=bptms755o43rq51ohlhj0q8sm4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/95$ /legend-shop/historical-instructional/item/370-kata-the-heart-of-karate.html?%1 [r=301,ne,nc,l]

# 301 redirect 30
rewritecond %{query_string}  ^oscsid=hqk4qtijqa1qjmfb9sndnuvsd2(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/90$ /legend-shop/historical-instructional/item/367-the-legend.html?%1 [r=301,ne,nc,l]

# 301 redirect 31
rewritecond %{query_string}  ^oscsid=k3ens4u1bt3s31uvktcab8mkc1(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/83$ /legend-shop/historical-instructional/item/355-jka-standard-kata-all-three-volumes.html?%1 [r=301,ne,nc,l]

# 301 redirect 32
rewritecond %{query_string}  ^oscsid=089o7ur871lr98pgp0lpags2r5(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/82$ /legend-shop/historical-instructional/item/355-jka-standard-kata-all-three-volumes.html?%1 [r=301,ne,nc,l]

# 301 redirect 33
rewritecond %{query_string}  ^oscsid=vv1n9nfa95ejolpdcehfv42gl1(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/81$ /legend-shop/historical-instructional/item/355-jka-standard-kata-all-three-volumes.html?%1 [r=301,ne,nc,l]

# 301 redirect 34
rewritecond %{query_string}  ^oscsid=meof6lcalobjn41a6j04i2rg83(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/80$ /legend-shop/historical-instructional/item/355-jka-standard-kata-all-three-volumes.html?%1 [r=301,ne,nc,l]

# 301 redirect 35
rewritecond %{query_string}  ^oscsid=5vsoqb6e6dvbs501n838th9b60(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/79$ /legend-shop/competition-events/item/338-the-art-of-war.html?%1 [r=301,ne,nc,l]

# 301 redirect 36
rewritecond %{query_string}  ^oscsid=g25k7198h74urjqhsqoehq1sa0(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/22$ /legend-shop/competition-events/item/338-the-art-of-war.html?%1 [r=301,ne,nc,l]

# 301 redirect 37
rewritecond %{query_string}  ^oscsid=q7vj4o214kdk2gc48qevau8nj1(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/21$ /legend-shop/competition-events/item/338-the-art-of-war.html?%1 [r=301,ne,nc,l]

# 301 redirect 38
rewritecond %{query_string}  ^oscsid=bc0dnf444c7umt3s03sob79uu4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/20$ /legend-shop/competition-events/item/338-the-art-of-war.html?%1 [r=301,ne,nc,l]

# 301 redirect 39
rewritecond %{query_string}  ^oscsid=op2r6roq3cld4jgvfhsj0jkn94(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/19$ /legend-shop/competition-events/item/338-the-art-of-war.html?%1 [r=301,ne,nc,l]

# 301 redirect 40
rewritecond %{query_string}  ^oscsid=gj7ka08kocjei72j2p9jl4luc0(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/76$ /legend-shop/historical-instructional/item/364-funakoshi-gichin.html?%1 [r=301,ne,nc,l]

# 301 redirect 41
rewritecond %{query_string}  ^oscsid=via45fsqr911l3jeks42e5q0h4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/75$ /legend-shop/profiles/item/379-chibana-chosen.html?%1 [r=301,ne,nc,l]

# 301 redirect 42
rewritecond %{query_string}  ^oscsid=dosrml6nk7jgtqs7an888q5dv0(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/73$ /legend-shop/historical-instructional/item/373-master-text-kata-vol-1-5-enoeda.html?%1 [r=301,ne,nc,l]

# 301 redirect 43
rewritecond %{query_string}  ^oscsid=8vfq6ilrot4v63j9j211nq1062(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/72$ /legend-shop/historical-instructional/item/332-advanced-kata-vol-5-enoeda.html?%1 [r=301,ne,nc,l]

# 301 redirect 44
rewritecond %{query_string}  ^oscsid=jst09bciau5l25fo28knlpald2(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/71$ /legend-shop/historical-instructional/item/331-advanced-kata-vol-4-enoeda.html?%1 [r=301,ne,nc,l]

# 301 redirect 45
rewritecond %{query_string}  ^oscsid=st4dhu9k3vhvmcp61l0fr1asn5(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/70$ /legend-shop/historical-instructional/item/330-advanced-kata-vol-3-enoeda.html?%1 [r=301,ne,nc,l]

# 301 redirect 46
rewritecond %{query_string}  ^oscsid=4qug5cq6qrbk4p0fo6q8vmpg67(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/69$ /legend-shop/historical-instructional/item/343-advanced-kata-vol-2-enoeda.html?%1 [r=301,ne,nc,l]

# 301 redirect 47
rewritecond %{query_string}  ^oscsid=nqih9eanmi3854gb6b9b1jsrh2(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/68$ /legend-shop/historical-instructional/item/318-enoeda-shotokan-master-vol-1-advanced-kata-series.html?%1 [r=301,ne,nc,l]

# 301 redirect 48
rewritecond %{query_string}  ^oscsid=v64772vkmhdtccbm7e4of4q9g7(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/65$ /legend-shop/historical-instructional/item/377-all-three-volumes-applied-karate.html?%1 [r=301,ne,nc,l]

# 301 redirect 49
rewritecond %{query_string}  ^oscsid=jl7ejvo052f5djoe3v6ch7rbt2(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/64$ /legend-shop/historical-instructional/item/374-applied-karate-vol-1.html?%1 [r=301,ne,nc,l]

# 301 redirect 50
rewritecond %{query_string}  ^oscsid=c4smlioje8d891clnefct7ul91(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/63$ /legend-shop/historical-instructional/item/376-applied-karate-vol-3.html?%1 [r=301,ne,nc,l]

# 301 redirect 51
rewritecond %{query_string}  ^oscsid=j025ccn9s4jlgs85cosage9om6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/62$ /legend-shop/historical-instructional/item/375-applied-karate-vol-2.html?%1 [r=301,ne,nc,l]

# 301 redirect 52
rewritecond %{query_string}  ^oscsid=ct9krs1cp110llk6c35l9in5c4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/43$ /legend-shop/profiles/item/347-gary-harford-a-profile.html?%1 [r=301,ne,nc,l]

# 301 redirect 53
rewritecond %{query_string}  ^oscsid=2vrr282guttult45rre7v6vet2(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/42$ /legend-shop/historical-instructional/item/356-classical-forms-of-shotokan-karate.html?%1 [r=301,ne,nc,l]

# 301 redirect 54
rewritecond %{query_string}  ^oscsid=iim7i12tpb46o19vb1dnnc33m6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/37$ /legend-shop/competition-events/item/315-skdun-international.html?%1 [r=301,ne,nc,l]

# 301 redirect 55
rewritecond %{query_string}  ^oscsid=7fns91gn7j8s5oijr9u4495dq6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/32$ /legend-shop/historical-instructional/item/369-the-karate-athlete.html?%1 [r=301,ne,nc,l]

# 301 redirect 56
rewritecond %{query_string}  ^oscsid=9kju40t21d4ki58tv2q4ms3bb4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/31$ /legend-shop/competition-events/item/312-1997-1998-shotokan-open-london.html?%1 [r=301,ne,nc,l]

# 301 redirect 57
rewritecond %{query_string}  ^oscsid=4mn3hrr178t6j36dgnuk2rfs26(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/30$ /legend-shop/profiles/item/346-ian-roberts-a-profile.html?%1 [r=301,ne,nc,l]

# 301 redirect 58
rewritecond %{query_string}  ^oscsid=u2ui7hfbl2nt156ggtd1sj7p35(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/29$ /legend-shop/documentaries/item/333-women-in-combat.html?%1 [r=301,ne,nc,l]

# 301 redirect 59
rewritecond %{query_string}  ^oscsid=aoq9hbpv4ksl1qdl2okkr5nv83(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/28$ /legend-shop/competition-events/item/308-unity-the-1st-e-k-g-b-championships-1991.html?%1 [r=301,ne,nc,l]

# 301 redirect 60
rewritecond %{query_string}  ^oscsid=t36dncqj394038pkd2ue1tirs7(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/27$ /legend-shop/documentaries/item/340-enoeda-the-ultimate-aim.html?%1 [r=301,ne,nc,l]

# 301 redirect 61
rewritecond %{query_string}  ^oscsid=4q769921gmcpps86o4b3jcn0f7(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/26$ /legend-shop/historical-instructional/item/368-the-heat-of-battle.html?%1 [r=301,ne,nc,l]

# 301 redirect 62
rewritecond %{query_string}  ^oscsid=6vn0a83thadqm08br81rcesa53(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/25$ /legend-shop/competition-events/item/317-the-big-hitters.html?%1 [r=301,ne,nc,l]

# 301 redirect 63
rewritecond %{query_string}  ^oscsid=gg4ihmqoffcprste9lioe3k2d2(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/1$ /legend-shop/competition-events/item/310-1st-legend-championships-2002.html?%1 [r=301,ne,nc,l]

# 301 redirect 64
rewritecond %{query_string}  ^oscsid=fku3cvei3pj87rbv0av291lik5(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/3$ /legend-shop/competition-events/item/311-1st-wtko-uk-championships.html?%1 [r=301,ne,nc,l]

# 301 redirect 65
rewritecond %{query_string}  ^oscsid=jb9shistp06jnebdac465ij4o4(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/4$ /legend-shop/profiles/item/344-frank-brennan-a-profile.html?%1 [r=301,ne,nc,l]

# 301 redirect 66
rewritecond %{query_string}  ^oscsid=sj01atdc7vjaojsp6ads8nkfe3(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/5$ /legend-shop/historical-instructional/item/357-cardio-kumite.html?%1 [r=301,ne,nc,l]

# 301 redirect 67
rewritecond %{query_string}  ^oscsid=fufoo2ta2o0n60v9m28mk8r5i6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/6$ /legend-shop/competition-events/item/306-classic-demonstrations.html?%1 [r=301,ne,nc,l]

# 301 redirect 68
rewritecond %{query_string}  ^oscsid=9lcrhf9biuhul0dqmcutuo6896(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/8$ /legend-shop/profiles/item/345-legend-productions-face-to-face.html?%1 [r=301,ne,nc,l]

# 301 redirect 69
rewritecond %{query_string}  ^oscsid=k3rhentppgp6grpt87d974j082(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/10$ /legend-shop/documentaries/item/334-martial-arts-television.html?%1 [r=301,ne,nc,l]

# 301 redirect 70
rewritecond %{query_string}  ^oscsid=cb5t1tj53pj3rpd6bltf7klm76(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/11$ /legend-shop/documentaries/item/336-masters-of-the-art.html?%1 [r=301,ne,nc,l]

# 301 redirect 71
rewritecond %{query_string}  ^oscsid=sgrjuljoj6qe84o6o7t41vv1f5(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/13$ /legend-shop/competition-events/item/316-shotokan-raw-power.html?%1 [r=301,ne,nc,l]

# 301 redirect 72
rewritecond %{query_string}  ^oscsid=ihe62qdsssc0jl4abgu7jnrfu5(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/14$ /legend-shop/profiles/item/348-tanaka-the-master.html?%1 [r=301,ne,nc,l]

# 301 redirect 73
rewritecond %{query_string}  ^oscsid=1l4rnidi7rnq14dupsv6jqbbp0(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/18$ /legend-shop/competition-events/item/240-the-2000-gichin-funakoshi-championship.html?%1 [r=301,ne,nc,l]

# 301 redirect 74
rewritecond %{query_string}  ^oscsid=54su3dms3th0cdmvmnnlhffks7(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/2$ /legend-shop.html?%1 [r=301,ne,nc,l]

# 301 redirect 75
rewritecond %{query_string}  ^oscsid=askbclqkacidsn3mnfqkmh8kc6(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/15$ /legend-shop.html?%1 [r=301,ne,nc,l]

# 301 redirect 76
rewritecond %{query_string}  ^oscsid=pamh2h33vavorku7tpeiu94di7(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/16$ /legend-shop.html?%1 [r=301,ne,nc,l]

# 301 redirect 77
rewritecond %{query_string}  ^oscsid=tocdv4nd47ifblrkb45904pr51(&.*)?$ [nc]
rewriterule ^product_info\.php/products_id/17$ /legend-shop.html?%1 [r=301,ne,nc,l]


some of files removed

i scanned through site files , found , removed following malicious files:

libraries/joomla/object/utf8-ce.php
media/com_contenthistory/backup-50e.php
administrator/components/com_acymailing/extensions/conf-7cf.php
administrator/components/com_menus/views/item/cgi-5e3.php
libraries/joomla/form/archives.php
administrator/components/com_k2store/liveupdate/language/en-gb/sort-5e3.php
components/com_jxtceasyimage/images/prettyphoto/light_square/cache-7c.php media/kunena/images/cp1251-50e.php
modules/mod_jxtc_k2contentwall/buttons/blue/sort-ce3.php modules/mod_jxtc_socializerwall/buttons/round_green/sort-c6e.php
modules/mod_jxtc_newspro/buttons/lg_chevron_up_down/cgi-34.php

the files had altered timestamps match directories in i'm not sure when uploaded. wonder these removed if solve amp warning?

what site before updated ?
i assume had recaptcha installed
follow
viewtopic.php?f=714&t=757645
viewtopic.php?f=714&t=946026





Comments

Popular posts from this blog

Falang and too many redirects - Joomla! Forum - community, help and support

Infinite loop detected in JErrorInfinite loop detected in JError - Joomla! Forum - community, help and support

logged out from joomla! - Joomla! Forum - community, help and support