Guest User

Untitled

a guest
Dec 12th, 2012
1,703
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 17.19 KB | None | 0 0
  1. ___ _ _
  2. /___\_ __ /\ /\_ _ _ __ | |_ /\ /\_ _ _ __ | |_ ___ _ __
  3. // // '_ \ / /_/ / | | | '_ \| __|/ /_/ / | | | '_ \| __/ _ \ '__|
  4. / \_//| |_) / __ /| |_| | | | | |_/ __ /| |_| | | | | || __/ |
  5. \___/ | .__/\/ /_/ \__,_|_| |_|\__\/ /_/ \__,_|_| |_|\__\___|_|
  6. |_|
  7.  
  8. ____ __. .__ .__ __ _________
  9. | |/ _| ____ |__| ____ | |___/ |_/ _____/ ____ ____
  10. | < / \| |/ ___\| | \ __\_____ \_/ __ \_/ ___\
  11. | | \| | \ / /_/ > Y \ | / \ ___/\ \___
  12. |____|__ \___| /__\___ /|___| /__|/_______ /\___ >\___ >
  13. \/ \/ /_____/ \/ \/ \/ \/
  14.  
  15. Greetings citizens of the world, We are anonymous, We are KnightSecc. You have followed our resounding success with Op Hunt Hunter. Today we anounce a new target to be added to the campaign. Craig Brittain and Chance Trahan of is anybody down dot com. He also posts addresses enabling stalking, but takes it a step further and uses extortion tactics to take money from the victims.
  16.  
  17.  
  18. Is Anybody Down is a controversial website co-founded by Craig Brittain and Chance Trahan where users can anonymously upload nude photographs along with information identifying the person in the photograph including full names, addresses, phone numbers, and Facebook screenshots. The site also contains a section of nude photographs titled "Anonymous Bounty", where users are offered "free stuff" if they can provide the Facebook or Twitter information of any of the people pictured. In concept, the website recapitulates the now-defunct IsAnyoneUp?, which was shut down in April of 2012, shortly before an FBI investigation into the propriety of the site.
  19.  
  20. For anyone wishing to have their photo removed from Is Anybody Down, the website recommends they enlist the services of the "Takedown Hammer". Prior to November 2nd, this service had been referred to as the "Takedown Lawyer" and required complainants pay between $200 and $300 to the allegedly independent "Takedown Lawyer" to have the offending content removed. It was found that the Takedown Lawyer was none other than Craig Brittain trying to extort money out of the helpless victims, since then the takedown lawyer ahs then been renamed Takedown Hammer and is registered to none other than Craig Brittain.
  21.  
  22. Marc Randazza, a prominent first amendment lawyer, has compiled evidence that the two sites are part of the same operation. He is offering to take the case of anyone whose images were displayed on IsAnybodyDown without permission.
  23.  
  24. Craig Brittain, the founder of Is Anybody Down, stated that people who never gave consent to have their photos displayed are "not really upset about being seen naked" and are "not victims". Brittain claims the site is part of a larger progressive agenda to destigmatize nudity.
  25.  
  26. Anonymous will Hold Craig and those affliated accountable for their actions as we have done and are currently doing to hunter moore during the op hunt hunter campaign. Anonymous will pursue access to his site, and shut it down. Craig Brittain will not extort money from the already struggling public. He will feel the pain others have felt. Craig Brittain, We are anonymous, We are Knight Secc, We do not forgive, we do not forget, expect us.
  27.  
  28.  
  29. how to join the class action lawsuit against them and be represented for free: http://randazza.wordpress.com/2012/10/30/lets-fuck-up-david-blade-attorney-at-law-and-isanybodydown-com-whos-with-me/
  30.  
  31.  
  32. List of all W-P Logins so far: http://pastebin.com/CsDCGZxE
  33.  
  34.  
  35. --------------------------------------=--Begin D0x of Craig Brittain ------------------------------------
  36. D0X OF ISANYBODYDOWN.COM FOUNDER CRAIG BRITTAIN
  37. _____ _ ______ _ _ _ _
  38. / __ \ (_) | ___ \ (_) | | | (_)
  39. | / \/_ __ __ _ _ __ _ | |_/ /_ __ _| |_| |_ __ _ _ _ __
  40. | | | '__/ _` | |/ _` | | ___ \ '__| | __| __/ _` | | '_ \
  41. | \__/\ | | (_| | | (_| | | |_/ / | | | |_| || (_| | | | | |
  42. \____/_| \__,_|_|\__, | \____/|_| |_|\__|\__\__,_|_|_| |_|
  43. __/ |
  44. |___/
  45. Photo: http://a2.ec-images.myspacecdn.com/images02/114/d42836f8276e421188c5b240a302f9b4/l.jpg
  46.  
  47. Name: Craig Brittain
  48. Address: 2732 Kittyhawk Rd
  49. Colorado Springs, CO 80920
  50. United States
  51. Phone: +1 7192913997
  52.  
  53. Social Media:
  54. http://www.myspace.com/unholycraig
  55. http://www.linkedin.com/in/craigbrittain
  56.  
  57. Photo of email to a person - http://adamsteinbaugh.com/wp-content/uploads/2012/10/nocomment.jpg
  58.  
  59. Felony Record:
  60. http://www.popehat.com/wp-content/uploads/2012/10/Craig-Brittain-Felony-Record.pdf
  61.  
  62. Login portal for TakedownHammer: http://takedownhammer.com/wp-login.php?redirect_to=http%3A%2F%2Ftakedownhammer.com%2Fwp-admin%2F&reauth=1
  63.  
  64.  
  65.  
  66.  
  67.  
  68.  
  69. ---------------------------------------Begin D0x of Chance Trahan----------------------------------------
  70. D0X OF ISANYBODYOWN.COM C0-FOUNDER CHANCE TRAHAN
  71. _____ _ _____ _
  72. / __ \ | |_ _| | |
  73. | / \/ |__ __ _ _ __ ___ ___ | |_ __ __ _| |__ __ _ _ __
  74. | | | '_ \ / _` | '_ \ / __/ _ \ | | '__/ _` | '_ \ / _` | '_ \
  75. | \__/\ | | | (_| | | | | (_| __/ | | | | (_| | | | | (_| | | | |
  76. \____/_| |_|\__,_|_| |_|\___\___| \_/_| \__,_|_| |_|\__,_|_| |_|
  77.  
  78.  
  79. FULL NAME: CHANCE BRADFORD TRAHAN
  80. LOCATION: TEMPE, AZ
  81. AGE: 32
  82.  
  83. W3b51t3s:
  84. http://heygreatwebsite.com/chance-trahan/
  85. http://www.kataishin.com
  86. http://ninjatale.com/
  87.  
  88.  
  89. L0g1n p0rtalz :
  90. http://heygreatwebsite.com/wp-login.php
  91.  
  92.  
  93. B4D PR355
  94. http://satiricalcraigbrittain.wordpress.com/2/11/12/chance-trahan-has-an-itch-he-can-not-scratch/
  95. http://www.popehat.com/2012/10/30/the-takedown-lawyer-lets-help-marc-randazza-investigate-a-scammer-shall-we/#more-16564
  96.  
  97. Soc14l n3Tw3rK5:
  98. TWITTER: @KataishinNinja @TalonLives
  99. YOUTUBE: www.youtube.com/user/kataishin
  100. GOOGLE+: https://plus.google.com/117726813386437696115
  101. FACEBOOK PAGE: http://www.facebook.com/pages/Chance-Trahan/487301254621807
  102. SOUNDCLOUD: https://soundcloud.com/kataishin (warning, prepare to drill your ears with a knife)
  103. LAST.FM: http://www.last.fm/music/kataishin
  104. SONGKICK: http://www.songkick.com/artists/6006939
  105. BRANDYOURSELF: http://chancebradfordtrahan.brandyourself.com/
  106. FUNNYORDIE: http://www.funnyordie.com/theninja
  107. MYSPACE: http://www.myspace.com/newestkaraoke
  108.  
  109.  
  110.  
  111.  
  112. He is quite a rager isn't he?
  113.  
  114. http://i.imgur.com/tu8xD.png
  115. http://www.popehat.com/wp-content/uploads/2012/11/ChanceTrahan-480x562.png
  116.  
  117.  
  118. Scan of Kataishin.com reveals that trahan and isanybody down site are hosted on same server, same IP
  119. DDOS the server and both sites down.
  120. ---------------------------------------Begin Scan of http://isanybodydown.com-------------------------------
  121. Login Portal : http://isanybodydown.com:2082/
  122.  
  123. Username:
  124. Password:
  125.  
  126.  
  127. IP Address: 93.114.44.79
  128. Vulnerable Ports:
  129.  
  130.  
  131. Scan Data:
  132.  
  133. NSE: Loaded 93 scripts for scanning.
  134.  
  135. NSE: Script Pre-scanning.
  136.  
  137. Initiating Ping Scan at 17:04
  138.  
  139. Scanning 93.114.44.79 [4 ports]
  140.  
  141. Completed Ping Scan at 17:04, 0.49s elapsed (1 total hosts)
  142.  
  143. Initiating Parallel DNS resolution of 1 host. at 17:04
  144.  
  145. Completed Parallel DNS resolution of 1 host. at 17:04, 0.37s elapsed
  146.  
  147. Initiating SYN Stealth Scan at 17:04
  148.  
  149. Scanning wc19801.webcare360.com (93.114.44.79) [1000 ports]
  150.  
  151. Discovered open port 993/tcp on 93.114.44.79
  152.  
  153. Discovered open port 22/tcp on 93.114.44.79
  154.  
  155. Discovered open port 143/tcp on 93.114.44.79
  156.  
  157. Discovered open port 21/tcp on 93.114.44.79
  158.  
  159. Discovered open port 110/tcp on 93.114.44.79
  160.  
  161. Discovered open port 443/tcp on 93.114.44.79
  162.  
  163. Discovered open port 53/tcp on 93.114.44.79
  164.  
  165. Discovered open port 80/tcp on 93.114.44.79
  166.  
  167. Discovered open port 995/tcp on 93.114.44.79
  168.  
  169. Discovered open port 587/tcp on 93.114.44.79
  170.  
  171. Discovered open port 3306/tcp on 93.114.44.79
  172.  
  173. Discovered open port 16992/tcp on 93.114.44.79
  174.  
  175. Discovered open port 465/tcp on 93.114.44.79
  176.  
  177. Discovered open port 9091/tcp on 93.114.44.79
  178.  
  179. Completed SYN Stealth Scan at 17:05, 6.66s elapsed (1000 total ports)
  180.  
  181. Initiating Service scan at 17:05
  182.  
  183. Scanning 14 services on wc19801.webcare360.com (93.114.44.79)
  184.  
  185. Completed Service scan at 17:05, 25.20s elapsed (14 services on 1 host)
  186.  
  187. Initiating OS detection (try #1) against wc19801.webcare360.com (93.114.44.79)
  188.  
  189. Retrying OS detection (try #2) against wc19801.webcare360.com (93.114.44.79)
  190.  
  191. Initiating Traceroute at 17:05
  192.  
  193. Completed Traceroute at 17:05, 0.05s elapsed
  194.  
  195. Initiating Parallel DNS resolution of 2 hosts. at 17:05
  196.  
  197. Completed Parallel DNS resolution of 2 hosts. at 17:05, 0.01s elapsed
  198.  
  199. NSE: Script scanning 93.114.44.79.
  200.  
  201. Initiating NSE at 17:05
  202.  
  203. Completed NSE at 17:05, 6.65s elapsed
  204.  
  205. Nmap scan report for wc19801.webcare360.com (93.114.44.79)
  206.  
  207. Host is up (0.0075s latency).
  208.  
  209. Not shown: 985 closed ports
  210.  
  211. PORT STATE SERVICE VERSION
  212.  
  213. 21/tcp open ftp Pure-FTPd
  214.  
  215. | ssl-cert: Subject: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  216.  
  217. | Issuer: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  218.  
  219. | Public Key type: rsa
  220.  
  221. | Public Key bits: 2048
  222.  
  223. | Not valid before: 2012-08-27 15:07:54
  224.  
  225. | Not valid after: 2013-08-27 15:07:54
  226.  
  227. | MD5: ac55 5bb4 3a8c d178 ef52 0821 ab0a d377
  228.  
  229. |_SHA-1: 4e5b 573a a215 2188 d8f4 52a6 3ee0 b690 d11e 6f85
  230.  
  231. 22/tcp open ssh OpenSSH 5.3 (protocol 2.0)
  232.  
  233. | ssh-hostkey: 1024 d1:05:ea:d3:68:34:b5:c3:0f:41:1e:ad:3c:88:dd:f9 (DSA)
  234.  
  235. |_2048 80:7d:31:f7:87:86:4e:67:b4:5f:5e:03:cd:38:10:2f (RSA)
  236.  
  237. 25/tcp filtered smtp
  238.  
  239. 53/tcp open domain
  240.  
  241. | dns-nsid:
  242.  
  243. |_ bind.version: 9.8.2rc1-RedHat-9.8.2-0.10.rc1.el6_3.6
  244.  
  245. 80/tcp open http Apache httpd 2.2.22 ((Unix) mod_ssl/2.2.22 OpenSSL/1.0.0-fips mod_bwlimited/1.4 mod_fcgid/2.3.6)
  246.  
  247. | http-methods: GET HEAD POST OPTIONS TRACE
  248.  
  249. | Potentially risky methods: TRACE
  250.  
  251. |_See http://nmap.org/nsedoc/scripts/http-methods.html
  252.  
  253. |_http-title: Site doesn't have a title (text/html).
  254.  
  255. 110/tcp open pop3 Dovecot pop3d
  256.  
  257. |_pop3-capabilities: USER CAPA UIDL TOP OK(K) RESP-CODES PIPELINING STLS SASL(PLAIN LOGIN)
  258.  
  259. 143/tcp open imap Dovecot imapd
  260.  
  261. |_imap-capabilities: LOGIN-REFERRALS QUOTA AUTH=PLAIN LIST-STATUS CHILDREN CONTEXT=SEARCH THREAD=REFERENCES UIDPLUS SORT IDLE MULTIAPPEND CONDSTORE ESEARCH Capability UNSELECT IMAP4rev1 AUTH=LOGIN ID WITHIN QRESYNC LIST-EXTENDED SORT=DISPLAY THREAD=REFS STARTTLSA0001 OK completed SEARCHRES ENABLE I18NLEVEL=1 LITERAL+ ESORT SASL-IR NAMESPACE
  262.  
  263. 443/tcp open http Apache httpd 2.2.22 ((Unix) mod_ssl/2.2.22 OpenSSL/1.0.0-fips mod_bwlimited/1.4 mod_fcgid/2.3.6)
  264.  
  265. |_http-title: Site doesn't have a title (text/html).
  266.  
  267. | http-methods: GET HEAD POST OPTIONS TRACE
  268.  
  269. | Potentially risky methods: TRACE
  270.  
  271. |_See http://nmap.org/nsedoc/scripts/http-methods.html
  272.  
  273. 465/tcp open ssl/smtp Exim smtpd 4.80
  274.  
  275. | smtp-commands: wc19801.webcare360.com Hello adsl-184-43-24-203.bgk.bellsouth.net [184.43.24.203], SIZE 52428800, 8BITMIME, PIPELINING, AUTH PLAIN LOGIN, HELP,
  276.  
  277. |_ Commands supported:
  278.  
  279. | ssl-cert: Subject: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  280.  
  281. | Issuer: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  282.  
  283. | Public Key type: rsa
  284.  
  285. | Public Key bits: 2048
  286.  
  287. | Not valid before: 2012-08-27 15:07:54
  288.  
  289. | Not valid after: 2013-08-27 15:07:54
  290.  
  291. | MD5: 5c69 e26f 4772 d383 6ffd 6ddf 486a b28e
  292.  
  293. |_SHA-1: 3f87 6ca6 e688 111d be48 023c e94f 1fce 056a 460e
  294.  
  295. 587/tcp open smtp Exim smtpd 4.80
  296.  
  297. | smtp-commands: wc19801.webcare360.com Hello adsl-184-43-24-203.bgk.bellsouth.net [184.43.24.203], SIZE 52428800, 8BITMIME, PIPELINING, AUTH PLAIN LOGIN, HELP, STARTTLS,
  298.  
  299. |_ Commands supported: AUTH HELO EHLO MAIL RCPT DATA NOOP QUIT RSET HELP
  300.  
  301. | ssl-cert: Subject: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  302.  
  303. | Issuer: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  304.  
  305. | Public Key type: rsa
  306.  
  307. | Public Key bits: 2048
  308.  
  309. | Not valid before: 2012-08-27 15:07:54
  310.  
  311. | Not valid after: 2013-08-27 15:07:54
  312.  
  313. | MD5: 5c69 e26f 4772 d383 6ffd 6ddf 486a b28e
  314.  
  315. |_SHA-1: 3f87 6ca6 e688 111d be48 023c e94f 1fce 056a 460e
  316.  
  317. 993/tcp open ssl/imap Dovecot imapd
  318.  
  319. |_imap-capabilities: LOGIN-REFERRALS completed OK SORT=DISPLAY Capability UNSELECT AUTH=PLAIN AUTH=LOGINA0001 IMAP4rev1 QUOTA CONDSTORE LIST-STATUS ID SEARCHRES WITHIN CHILDREN LIST-EXTENDED ESORT ESEARCH QRESYNC CONTEXT=SEARCH THREAD=REFS THREAD=REFERENCES I18NLEVEL=1 UIDPLUS NAMESPACE ENABLE SORT LITERAL+ IDLE SASL-IR MULTIAPPEND
  320.  
  321. |_sslv2: server supports SSLv2 protocol, but no SSLv2 cyphers
  322.  
  323. | ssl-cert: Subject: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  324.  
  325. | Issuer: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  326.  
  327. | Public Key type: rsa
  328.  
  329. | Public Key bits: 2048
  330.  
  331. | Not valid before: 2012-08-27 15:07:55
  332.  
  333. | Not valid after: 2013-08-27 15:07:55
  334.  
  335. | MD5: eac5 2a12 98a0 00a6 6386 8273 ac91 d7bc
  336.  
  337. |_SHA-1: bfa6 fc66 17f2 7ea2 0bbe 1b68 048d 77dc 11af c28a
  338.  
  339. 995/tcp open ssl/pop3 Dovecot pop3d
  340.  
  341. |_sslv2: server supports SSLv2 protocol, but no SSLv2 cyphers
  342.  
  343. | ssl-cert: Subject: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  344.  
  345. | Issuer: commonName=wc19801.webcare360.com/organizationName=Unknown/stateOrProvinceName=Unknown/countryName=US
  346.  
  347. | Public Key type: rsa
  348.  
  349. | Public Key bits: 2048
  350.  
  351. | Not valid before: 2012-08-27 15:07:55
  352.  
  353. | Not valid after: 2013-08-27 15:07:55
  354.  
  355. | MD5: eac5 2a12 98a0 00a6 6386 8273 ac91 d7bc
  356.  
  357. |_SHA-1: bfa6 fc66 17f2 7ea2 0bbe 1b68 048d 77dc 11af c28a
  358.  
  359. |_pop3-capabilities: OK(K) CAPA RESP-CODES UIDL PIPELINING USER TOP SASL(PLAIN LOGIN)
  360.  
  361. 3306/tcp open mysql MySQL (unauthorized)
  362.  
  363. 9091/tcp open xmltec-xmlmail?
  364.  
  365. 16992/tcp open http Intel Active Management Technology User Notification Service httpd 7.1.3
  366.  
  367. | http-title: Intel&reg; Active Management Technology
  368.  
  369. |_Requested resource was http://93.114.44.79/logon.htm
  370.  
  371. OS fingerprint not ideal because: Host distance (28 network hops) is greater than five
  372.  
  373. No OS matches for host
  374.  
  375. Uptime guess: 2.687 days (since Sun Dec 09 00:37:04 2012)
  376.  
  377. Network Distance: 2 hops
  378.  
  379. TCP Sequence Prediction: Difficulty=260 (Good luck!)
  380.  
  381. IP ID Sequence Generation: All zeros
  382.  
  383.  
  384.  
  385. TRACEROUTE (using port 80/tcp)
  386.  
  387. HOP RTT ADDRESS
  388.  
  389. 1 4.00 ms home (192.168.1.254)
  390.  
  391. 2 2.00 ms wc19801.webcare360.com (93.114.44.79)
  392.  
  393.  
  394.  
  395. NSE: Script Post-scanning.
  396.  
  397. Initiating NSE at 17:05
  398.  
  399. Completed NSE at 17:05, 0.00s elapsed
  400.  
  401. Read data files from: C:\Program Files (x86)\Nmap
  402.  
  403. OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/ .
  404.  
  405. Nmap done: 1 IP address (1 host up) scanned in 48.67 seconds
  406.  
  407. Raw packets sent: 1097 (50.520KB) | Rcvd: 1118 (47.089KB)
  408.  
  409.  
  410. --------------------------------Proof TakedownHammer is Brittains----------------------------------------
  411. WHOIS:
  412.  
  413. domain: takedownhammer.com
  414. reg_created: 2012-10-31 05:46:42
  415. expires: 2013-10-31 05:46:42
  416. created: 2012-10-31 06:46:43
  417. changed: 2012-10-31 06:53:23
  418. transfer-prohibited: yes
  419. ns0: ns1.takedownhammer.com 93.114.44.79
  420. owner-c:
  421. nic-hdl: CB9188-GANDI
  422. organisation: ~
  423. person: Craig Brittain
  424. obfuscated: Obfuscated by Gandi
  425. address: (Gandi) 63-65 boulevard Massena
  426. zipcode: (Gandi) 75013
  427. city: (Gandi) Paris
  428. country: (Gandi) France
  429. phone: (Gandi) +33.170377666
  430. fax: (Gandi) +33.143730576
  431. email:
  432. lastupdated: 2012-06-19 21:19:48
  433. admin-c:
  434. nic-hdl: CB9188-GANDI
  435. organisation: ~
  436. person: Craig Brittain
  437. obfuscated: Obfuscated by Gandi
  438. address: (Gandi) 63-65 boulevard Massena
  439. zipcode: (Gandi) 75013
  440. city: (Gandi) Paris
  441. country: (Gandi) France
  442. phone: (Gandi) +33.170377666
  443. fax: (Gandi) +33.143730576
  444. email:
  445. lastupdated: 2012-06-19 21:19:48
  446. tech-c:
  447. nic-hdl: CB9188-GANDI
  448. organisation: ~
  449. person: Craig Brittain
  450. obfuscated: Obfuscated by Gandi
  451. address: (Gandi) 63-65 boulevard Massena
  452. zipcode: (Gandi) 75013
  453. city: (Gandi) Paris
  454. country: (Gandi) France
  455. phone: (Gandi) +33.170377666
  456. fax: (Gandi) +33.143730576
  457. email:
  458. lastupdated: 2012-06-19 21:19:48
  459. bill-c:
  460. nic-hdl: CB9188-GANDI
  461. organisation: ~
  462. person: Craig Brittain
  463. obfuscated: Obfuscated by Gandi
  464. address: (Gandi) 63-65 boulevard Massena
  465. zipcode: (Gandi) 75013
  466. city: (Gandi) Paris
  467. country: (Gandi) France
  468. phone: (Gandi) +33.170377666
  469. fax: (Gandi) +33.143730576
  470. email:
  471. lastupdated: 2012-06-19 21:19:48
Advertisement
Add Comment
Please, Sign In to add comment