How CommentLuv Can Help Find HackersTuesday, November 18th |
So yesterday I was catching up with what was going around on the various blogs I visit, trying out a few new ones to see how they fit and feel, when I noticed that I was having a problem with comment-luv. Now the problem wasn’t on my site, but rather it was an error when I was attempting to leave comments on others websites – simply put, I was receiving an ‘XML error’ instead of comment-luv displaying my latest post!
XML error: Invalid document end at line 261, column 1
Obviously me being the loving person that I am, and not being just out for the links (I am such an angel), I continued posting and thought of it as just a glitch…oh how wrong I was…
I logged onto my computer again today and proceeded to look around the blogging world to drop my comments – yet again I was receiving the XML error. This time I decided to investigate into the matter at hand. I first went to comment-luv to check that the correct feed name had been placed in – which it had. I then proceeded to load up my feed, on which I discovered it wouldn’t load. So I went to my feed provider (which is the google owned feedburner), and proceeded to do a ‘feed check’. This repeated the error that comment-luv brought up for me, as well as all the source for my feed! On scrolling down, I found that someone had lovingly put links to various pornographic websites at the bottom of my feed, which was preventing it from loading.
Now I had discovered the issue, it was a matter of where they had put the data so that I could remove it. I logged on to my server and checked my ’index.php’ file first – and to my surprise it was just at the bottom of that file. I promptly deleted the lines of code that had been added, and my feed was restored (once I reloaded it via feedburner). I reported the attempt to my web hosting provider (who then proceeded to break my website without asking…but that’s another story), and everything was back to normal!
So what do I recomend to protect yourself from this type of hacking attempt? Well, firstly download Comment-Luv as soon as you can, and comment frequently – you’ll notice any problems with your feed instantly. Even if its not the same problem, and you can’t figure out what is happening, there is a handy forum over there also you can ask questions in! Comment-Luv is a great way of keeping a good hold on your feed, as you would never normally check it yourself – why would you need to? As well as using this plugin, you may just want to check your index.php file, just to be sure that nothing had slipped its way in.
Be safe out there guys!
Dan



That’s amazing that you were able to remove the hacked code easily. I can’t believe someone would bother to hack your feed. At any rate, thanks for the tip! The more often you comment on sites with CommentLuv enabled, the more closely you can monitor your feed.
Reply to this comment
Luckily it was just a few lines at the end of my index.php file – I know a bit about HTML and PHP so knew I could safely delete it without any issue, but most people should be able to do it if thats the issue they face – thanks for visiting
Reply to this comment
Huh, that is cool and sort of scary too. Who is your hosting provider?
Talinas last blog post..Preparing for turkey day and such…
Reply to this comment
I’m hosted with a UK company called Web-Mania. I have gone with them as it is pretty cheap for a whole year, and normally they are very good, but as of late its been a different matter sadly :\
Reply to this comment
Thank God that you have controlled the situation before it goes out of hand. My friend’s blog was hacked and she lost it all
Riyannes last blog post..Case Study: Increase your blog statistics through blog contest 3
Reply to this comment
Hey, I’m really sorry to hear that! I wrote a post a while back about protecting your blog from unwanted attacks, which you can find at
http://www.raceforamillion.co.uk/security-the-root-of-the-issue/
Reply to this comment
bloody hackers! i like the idea of using comment luv for monitoring
kinda cool
Underdogbloggers last blog post..Anchor text is the most important thing
Reply to this comment
lol yeah I thought so – just a nifty little trick to keep you on your toes (and keep ya commenting
)
Reply to this comment
that’s the first time I’ve seen CommentLuv used as a security application! lol
It’s nice to see someone go the detective route when they see an error come back, you should see some of the demands I get by email from people who assume it’s because commentluv is broken!
Andy Baileys last blog post..PlayGroupsAreNoPlaceForChildren.com : Featured Site
Reply to this comment
Lol, well I do try to find out whats wrong myself ideally first – it’s only when I don’t have a clue no matter what I do that I go crying to others
lol!
Thanks for visiting Andy!!
Reply to this comment
Thanks for the slick detective work. I’m going to check my index.php file to see if anything’s amiss — Nervous Norman that I am!
Larrys last blog post..Today I began a new journey
Reply to this comment
Haha, I’m sure you’ll be ok, but its worth checking anyway!
Reply to this comment
Excellent information, Dan. It shows your creativity. If you are looking for an excellent web hosting service, mine rocks.
I went to school with the guy who runs it, and he is very helpful, and certainly available.
witchypoos last blog post..Skinny Bitch Gets Dumped
Reply to this comment
Hey thanks
I might possibly be getting hosting with a friend of mine who is starting up his own type of hosting business, but I’ll see how that goes – may have to take you up on that offer!!
Reply to this comment
Wow, that’s a great idea. I actually monitor my feeds in three different venues already, but I’m kind of anal about that stuff. Nice job!
Jeffs last blog post..“Heroes” hits bottom and grabs for the shovel
Reply to this comment
Cheers! I haven’t seen the latest heroes yet so I can’t read your latest blog post til this weekend, damn you
Reply to this comment
ha hah…. sorry.
Jeffs last blog post..“Heroes” hits bottom and grabs for the shovel
Dan-
Glad you were able to resolve the attack successfully. Is there an advantage to using your feed URL rather than your regular url? I’ve been commenting with commentluv using my regular url but have noticed others using their feed addresses as of late. Is there an advantage / rationale either way?
Jeremy
Jeremys last blog post..Bumper Stickers, and Why I Loathe Them
Reply to this comment
Well, the immediate advantage I can see is that it might be quicker in finding your past posts – it doesnt have to find your feed via visiting your website, but can rather go direct to your feed. It could also potentially still work if something is wrong with your site, however I wouldn’t like to say that for definate!
Other than those reasons I don’t know I’m afraid
Reply to this comment
WOW, that’s interesting. I don’t know that I understand what you said, but I am impressed
Spookygirls last blog post..I am all about making the holidays easier!
Reply to this comment
Haha, no worries…the jist is, if you see the stuff I mentioned above on commentluv instead of your posts, then you might have been hacked! In which case drop me a line and I’ll walk you through it, lol!
Reply to this comment
Im not hacked! Im glad im not hacked… i didnt even know people could hack comment luv.. weird. Does comment luv know about the issue?
Alexs last blog post..Tip – Remove Spyware Weekly
Reply to this comment
Lol, its not a comment-luv issue – as in you don’t get hacked through it. Comment-luv can just be used (in this case) as a way of checking that your feed has been hacked or not!
Reply to this comment
I’ve been using commentluv and little did I realize that you could use it as to pinpoint any hacks. Great tip and thanks for sharing it, Dan.
Yan
Blog for Beginnerss last blog post..Michael Dunlop – Young Entrepreneur Making Money Online
Reply to this comment
No problem Yan, glad you found it of some use
Reply to this comment
I knew I kept commentluv as part of my blogs for more than just repaying my commentators for taking the trouble to leave a comment. I never thought it would come in handy as a hacker warning. Good find Dan.
Sires last blog post..What Type Of Commentator Do You Aspire To Be?
Reply to this comment
Hey, I came back ’cause I just noticed my web host, HostPC.com, is running an amazing sale that might be what you need. Not sure what your requirements are, but you ought to check them out. They’ve been exceptional for me.
And hey! I won! Not sure if it’s a valid win, though. I don’t remember commenting much today…
Jeffs last blog post..CommentLuv Winner Notification. Comment author just won a prize!
Reply to this comment
Wow well done! I wanted to win a prize
lol. Glad it was my blog you won it on though!
Reply to this comment
Jeff: confirmed winner! 25$ on the way to you, leave me a message via the help desk or forum with your paypal address and I’ll send you the money.
well done!
Andy Baileys last blog post..Mashable voting opened and CommentLuv is a nominee!
Reply to this comment
Maybe the winners are found on blogs after you comment on them Andy
You bring the magic!
Reply to this comment
I’m glad you caught your main problem, but you might still have an issue. I thought I’d already subscribed to your blog, found I hadn’t so I just subscribed. Then I went to click on a link sitting there that should have brought me to this page, and instead it almost took me to a bad hacker site; Firefox warned me about it, and I was saved. So, you might still have some work to do.
Mitchs last blog post..Stuff You Probably Missed
Reply to this comment
Well that’s a way that I never would have thought about using CommentLuv. Good to know. I’ll have to keep up with it. Thanks a million.
Spyware Blockerss last blog post..Spyware Blockers
Reply to this comment
Pretty crazy to be hacked simply for backlinks to a porn site! I hope that doesn’t happen to me, but if it does I’ll know what to do
Also I am going to setup CommentLuv as it definitely increases blog traffic and great blog browsing experience.
Wynter Joness last blog post..SiteFlipU.com – Bought, Sold, Bought, Sold
Reply to this comment
commentluv is def the way forward
Reply to this comment
Whatever women do they must do twice as well as men to be thought half as good. Luckily this is not difficult.
Reply to this comment
i am actually having a problem with my feeds showing up on my posts,what can i do to solve em.please reply
Reply to this comment