Oh no! Where's the JavaScript?
Your Web browser does not have JavaScript enabled or does not support JavaScript. Please enable JavaScript on your Web browser to properly view this Web site, or upgrade to a Web browser that does support JavaScript.
Not a member yet? Click here to register.
Forgot Password?

linkfeed - what is it?

Asked Modified Viewed 3,645 times
E
enimal
E
enimal 10
  • Member, joined since
  • Contributed 117 posts on the community forums.
  • Started 26 threads in the forums
  • Started this discussions
asked
Member

does anyone know what this is?

found a file linkfeed.php in a folder with a long name made up of numbers n letters

in it there was this too

var $lc_server = 'db.linkfeed.ru';


i did a search and a bunch of russian websites came up.
0 replies

3 posts

H
HobbyMan
H
Just some Guy
  • Veteran Member, joined since
  • Contributed 1,486 posts on the community forums.
  • Started 91 threads in the forums
answered
Veteran Member

Without more info, it's looks like a hack.

site version?

link?
0 replies
P
PolarFox
P
  • Veteran Member, joined since
  • Contributed 1,633 posts on the community forums.
  • Started 29 threads in the forums
answered
Veteran Member

RSS cache?
0 replies
— 1 year later —
W
waiters
W
  • Newbie, joined since
  • Contributed 1 post on the community forums.
answered
Newbie

Sorry for replying to such an old topic, but there is not much information on this so figured people still aren't sure what it is.

linkfeed.php will be found on servers hacked with, usually an xss exploit. Usually the file "linkfeed.php" and "linkfeed.links.db" files wll be found in /images/something/[somethingbiglongandrandomlotsoflettersnumbers], sometimes it will be found in /incldues also, among other folders.

additionally you will find your index file , in the end, will have a lot of base64 stuff.

this is a way that spammers use to generate links for high google serps.

the base64 stuff you can decode online, it usually will contain the document root, location of linkfeed files, username of the hacker, etc etc.

even if your website was hacked doesn't mean the links will be visible as its automatic and doesn't "check" after the hack, it just moves on - view source.

ALSO, they will in general install (or try to) install a backdoor.

this attack from what i can tell is 100% automatic and not personal.

If you were hacked, you need to patch + clean up.

a few websites that use the xss scanning robot to hack/exploit and spam links:

ordercustompaper.com
academicexperts.us
advancedwriters.com
affordablepapers.com
bestessaytopics.com
blogscribes.com
buycollegepaper.com
buyessay.org
buyresearchpaper.net
buytermpaper.net
custom-writings.com
customwritings.com
customwritingservice.com
it-doctor.com.ua
essay-answers.com
essayforyou.com
essaylib.com
essaymoney.com
essaymonitoring.com
essaysexperts.com[DND*]
gpalabs.com
gradelancer.com
historypapers.org
lawpapers.net
stim.kiev.ua
livepaperhelp.com
mastersthesiswriting.com
midterm.us
ordercustompaper.com
orderessay.net
plagiarismdetect.com
primewriters.com
revisionlabs.com
thepensters.com
arenda.com.ua
0 replies

Labels

None yet

Statistics

  • Views 0 views
  • Posts 3 posts
  • Votes 0 votes
  • Topic users 4 members

4 participants

H
H
Just some Guy
  • Veteran Member, joined since
  • Contributed 1,486 posts on the community forums.
  • Started 91 threads in the forums
P
P
  • Veteran Member, joined since
  • Contributed 1,633 posts on the community forums.
  • Started 29 threads in the forums
E
E
enimal 10
  • Member, joined since
  • Contributed 117 posts on the community forums.
  • Started 26 threads in the forums
  • Started this discussions
W
W
  • Newbie, joined since
  • Contributed 1 post on the community forums.

Notifications

Track thread

You are not receiving notifications from this thread.

Related Questions

Not yet