I just HATE theives!!!

Status
Not open for further replies.

CleverLdy

Wickedest WF Woman
May 27, 2007
47
5
0
57
Canada
I've been on a merry-go-round with this idiot for months...

Short version:
I created a site and graphics for someone and they copied the site over to their own server, changed a few colours and cut me off - didn't pay me for my work, nothing.

I haven't got a "real" name for this jerk, their address is a PO Box in Florida and their host is a friend of theirs.

I'm at a loss on where to go with this mess. Any ideas?

It's not even about the money...
I just REALLY hate being screwed over, and I refuse to just "let it go", chalk it up to experience.

I SO want this asshole to burn.
 


site + graphics design work should be sent to the customer as a preview JPG with watermarks through it.

If they absolutely demand a live HTML version to be shown to them, watermark all header and other graphic elements.

These days, you gotta treat all new customers as thieves.

That being said, post the URL of the offender here. WF members will take care of it for you.
 
Post his URL and maybe his server will magically crash.

Seconded. Post the URL.

PS - Cease and Desist letters usually get someone listening. Depending on the type of site, public humiliation is another one. Grab #1 on Google for his site name exposing his "business ethics" and you've got something better than taking down his site, you ruined his entire image - legitly.
 
Yeah post the url etc.. you'll know his details soon enough!

If his friend doing the hosting is a reseller - go to the actual company that owns the servers.
 
If he posts the url I will almost feel sorry for the douche bag that stole the site. Some of the members here are l33t hAx0rs.
 
If you can find an XSS vuln in his site you can actually send spam through it. So find one, spam a little bit, then report to his host that hes been spamming.

Try phishing his WHM details via a forged email from his host. Then go into each site and create an FTP account, upload a PHP shell script. Fuck everything up, wait for him to change is passwords, then log in via FTP or run commands via shell and fuck everything up again.
 
Sorry - net issues for a few hours...
The URL is masterresellrightsblowout.com
The owner is K Smith (she is real paranoid about anyone knowing her real name)
Normally for a site I do the work on my own server, but the script I was using had to be licensed and "live" on the proper domain. I did have full access, then I was shut out.
Other domains I know of:
mrrboo.com
productereview.com
She also utilizes various subdomains.
The domain (MRRB) is registered I think under William Brooks, and he has been called - pretends to have no clue what I'm talking about.
He also owns the hosting.
If you see the site, she's completely screwed the entire thing anyway, messing with the graphics, trying to change them without the source and now people who know I did it think it's MY awful work!
I WISH I could find a security issue - I'm no techie, unfortunately.
Dammit.
 
I have also made sure that anyone remotely connected to the site gets an email, letting them know that they are dealing with a thief and why.

One interesting tidbit is apparently she has some connection to a "cult".
Can't confirm that yet, but I am working on it.
 
Ewwwww.

That script lets you enter a duplicate email, and every time you do it it sends an email to you. I imagine if it had to do that 1000 times in a couple minutes the server wouldn't like it very much. ;)

It might be even worse if that email address triggered an autoresponder......hmmmm? ;)

Here's the email header:

Code:
Delivered-To: chatmasta@gmail.com
Received: by 10.100.10.13 with SMTP id 13cs182763anj;
        Thu, 7 Jun 2007 12:08:59 -0700 (PDT)
Received: by 10.90.96.7 with SMTP id t7mr2025607agb.1181243336060;
        Thu, 07 Jun 2007 12:08:56 -0700 (PDT)
Return-Path: <informat@tacoma.dnsdc4.com>
Received: from tacoma.dnsdc4.com (170.123.232.72.static.reverse.layeredtech.com [72.232.123.170])
        by mx.google.com with ESMTP id 2si1326239aga.2007.06.07.12.08.55;
        Thu, 07 Jun 2007 12:08:56 -0700 (PDT)
Received-SPF: neutral (google.com: 72.232.123.170 is neither permitted nor denied by best guess record for domain of informat@tacoma.dnsdc4.com)
Received: from informat by tacoma.dnsdc4.com with local (Exim 4.63)
    (envelope-from <informat@tacoma.dnsdc4.com>)
    id 1HwNN1-0007DC-7O
    for chatmasta@gmail.com; Thu, 07 Jun 2007 14:10:07 -0500
Content-Disposition: inline
Content-Length: 828
Content-Transfer-Encoding: binary
Content-Type: text/plain
MIME-Version: 1.0
X-Mailer: MIME::Lite 3.01 (F2.73; A1.74; B3.07; Q3.07)
Date: Thu, 7 Jun 2007 19:10:07 UT
From: "MRRB2" <mrrb@masterresellrightsblowout.com>
To: "Ew" <chatmasta@gmail.com>
Subject: Please Confirm Your Request For More Information
X-Identifier: 101388-1
X-Ip: 24.34.181.116
Message-Id: <E1HwNN1-0007DC-7O@tacoma.dnsdc4.com>
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - tacoma.dnsdc4.com
X-AntiAbuse: Original Domain - gmail.com
X-AntiAbuse: Originator/Caller UID/GID - [32842 500] / [47 12]
X-AntiAbuse: Sender Address Domain - tacoma.dnsdc4.com
X-Source: /usr/bin/perl
X-Source-Args: /usr/bin/perl optin.cgi 
X-Source-Dir: informationspecialistplus.info:/public_html/cgi-bin/pb

It looks like the email is coming from informationspecialistplus.info (registered to K Smith) from a layeredtech server.

There ya go, do what you want. :rasta:
 
More fucking ebooks? Hhmmm.....wonder where that should be posted......hehe
 
Status
Not open for further replies.