Michael,

Don't you think perhaps you should be moving your sites to a new server if
he has access to this one and you are unable to block him?
What if he installs some fishing, XSS or other scripts and starts to steal
details form your users.

Russ

On Mon, May 23, 2011 at 1:54 PM, Jenny Gavin-Wear <
[email protected]> wrote:

>
> http://www.ic3.gov/default.aspx
>
> Could this be a place to start? If not, I would call my local police and
> escalate it from there.
>
> My feeling is that you need to get it reported so that some logging starts
> by some kind of police authority so that if you ever do get a chance to get
> this idiot into a court room, you'll have some evidence.
>
> I have no idea exactly how the police would manage a situation like this,
> but if I was in your position, I would be finding out.
>
> I could imagine a situation where you did not report the crime for some
> period and it did go to court, one of the first questions you might be
> asked
> is why you didn't report it as soon as it happened.
>
> >>-----Original Message-----
> >>From: Michael Dinowitz [mailto:[email protected]]
> >>Sent: 23 May 2011 13:21
> >>To: cf-talk
> >>Subject: Re: HOF Site
> >>
> >>
> >>
> >>Have I reported a guy from China to the police? No.
> >>Was I afraid that he would do more damage in retaliation? Yes.
> >>Am I still afraid? Yes, but I'm more angry than afraid so he's in trouble
> >>now.
> >>What am I going to do? First I'm going to get all of the information I
> can
> >>from others who have been effected by him in the past. Then I'm going to
> >>provide that and my own information to the FBI cyber crimes
> >>division and to
> >>Google. This includes his Google adsense account number. Google's already
> >>pulled his adsense account but there may be more they can do as
> >>they have a
> >>presence in China. If there's a way to prosecute him, I'm all for it.
> >>If anyone has contacts at the FBI, at Google, or in China,
> >>especially in the
> >>government and/or police, please contact me off list. I'd love to get
> >>someone over there to get this guy.
> >>If anyone has any other suggestions, please let me know.
> >>
> >>Thanks
> >>
> >>On Mon, May 23, 2011 at 7:45 AM, Jenny Gavin-Wear <
> >>[email protected]> wrote:
> >>
> >>>
> >>> Have you reported this to the police?
> >>>
> >>> >>-----Original Message-----
> >>> >>From: Michael Dinowitz [mailto:[email protected]]
> >>> >>Sent: 23 May 2011 09:24
> >>> >>To: cf-talk
> >>> >>Subject: Re: HOF Site
> >>> >>
> >>> >>
> >>> >>
> >>> >>I have an IP or two and I KNOW that Google has his information as
> >>> >>they've been paying him adsense revenue. Unfortunately, they will not
> >>> >>give that information out. I'm wondering what they need to get access
> >>> >>to the information. Lawyer letter? Court order? FBI warrant?
> >>> >>
> >>> >>As you can probably see, the site is down again and he's asking to
> get
> >>> >>on my domain account so he can get his adsense account back. Like I'm
> >>> >>going to trust him with his behavior.
> >>> >>
> >>> >>On 5/20/11, Raymond Camden <[email protected]> wrote:
> >>> >>>
> >>> >>> You know it's a guy - got a name?
> >>> >>>
> >>> >>> On Fri, May 20, 2011 at 4:57 PM, Michael Dinowitz
> >>> >>> <[email protected]> wrote:
> >>> >>>>
> >>> >>>> Yes and no. It's the same guy who used the hole in Galleon to hack
> >>> into
> >>> >>>> HoF
> >>> >>>> and Forta.com last year. At least he's using the same code. I
> found
> >>> >>>> pieces
> >>> >>>> of it in files around the site, though he didn't get
> >>access through CF
> >>> >>>> this
> >>> >>>> time (that I could see).
> >>> >>>>
> >>> >>>> While I have his adsense ID, Google will not give me any
> >>information
> >>> as
> >>> >>>> to
> >>> >>>> who he is, where, or anything else. I do know that the IP
> >>used to run
> >>> >>>> some
> >>> >>>> of the scripts traces to China and his communications with me are
> >>> >>>> definitely
> >>> >>>> the result of a translation program. If I dedicated the
> >>time to it I
> >>> >>>> could
> >>> >>>> get a better idea of who he is and what else he's done but
> >>> >>it's currently
> >>> >>>> not worth the time and effort on my part.
> >>> >>>>
> >>> >>>> Now if someone wants to sponsor me to investigate further... :)
> >>> >>>>
> >>> >>>>
> >>> >>>
> >>> >>>
> >>> >>
> >>> >>
> >>>
> >>>
> >>
> >>
>
> 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Order the Adobe Coldfusion Anthology now!
http://www.amazon.com/Adobe-Coldfusion-Anthology/dp/1430272155/?tag=houseoffusion
Archive: 
http://www.houseoffusion.com/groups/cf-talk/message.cfm/messageid:344842
Subscription: http://www.houseoffusion.com/groups/cf-talk/subscribe.cfm
Unsubscribe: http://www.houseoffusion.com/groups/cf-talk/unsubscribe.cfm

Reply via email to