Welcome to the Hack Shack!

For Every Hacker there is an equal and opposite Hacker.
 

We are that Hacker.

Getting Started


 
 
 
 
 

Chat transcript

 
 

Name: scottprovost

 

Account Username: Platinum Staffing dot net

 
 
     
 
 
 
  Ian Sun, 11/11/18 12:38:35 pm America/Chicago  
 
 
Hello, scottprovost. How may I help you today?
 
 
 
 
 
  scottprovost 12:39:37 pm  
 
 
platinumstaffing.net DNC Holdings, Inc Valid 08-nov-2019 362
Your system says it is valid until 2019 362 days from now. Why are you reporting false information?
 
 
 
 
 
  Ian 12:39:53 pm  
 
 
Where do you see that information?
 
 
 
 
 
  scottprovost 12:41:14 pm  
 
 
Whois command.
[user1@hamster work]$ platinumstaffing.net DNC Holdings, Inc Valid 08-nov-2019 362
bash: platinumstaffing.net: command not found...
[user1@hamster work]$ whois platinumstaffing.net
Domain Name: PLATINUMSTAFFING.NET
Registry Domain ID: 92036677_DOMAIN_NET-VRSN
Registrar WHOIS Server: whois.directnic.com
Registrar URL: http://www.directnic.com
Updated Date: 2018-11-11T07:18:35Z
Creation Date: 2002-11-08T23:00:12Z
Registry Expiry Date: 2019-11-08T23:00:12Z
Registrar: DNC Holdings, Inc.
Registrar IANA ID: 291
Registrar Abuse Contact Email:
Registrar Abuse Contact Phone:
Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
Name Server: EXPIRED-DOMAIN-NS50.DIRECTNIC.COM
Name Server: EXPIRED-DOMAIN-NS51.DIRECTNIC.COM
DNSSEC: unsigned
URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
>>> Last update of whois database: 2018-11-11T18:40:44Z <<<
 
 
 
 
 
  Ian 12:42:38 pm  
 
 
Do you have an invoice that would prove that the domain was paid for until then?
 
 
 
 
 
  scottprovost 12:43:35 pm  
 
 
I am sure we do. Verisign and you have differing information.
 
 
 
 
 
  Ian 12:45:13 pm  
 
 
If you are able to provide one, I will be happy to investigate further. As per records, the domain expired on 11/8/2018 and there have been no payments received for the renewal of that domain. This information can be found in the Directnic account as well as verifyable using various WHOIS search databases.
Can I help you with anything else?
 
 
 
 
 
  scottprovost 12:46:08 pm  
 
 
We use software that monitors thousands of domains.
The standard whois that reads data from Varisign.
This data is out of sync with your system and no notices were sent from you to the domain holder.
It is likely your data or systems are hacked releasing false information. You must fix this hack.
 
 
 
 
 
  Ian 12:48:43 pm  
 
 
That is an interesting theory. Can you login to the Directnic account now?
 
 
 
 
 
  scottprovost 12:49:09 pm  
 
 
I am looking at the whois record now.
I can send you an image if you like.
 
 
 
 
 
  Ian 12:49:54 pm  
 
 
Can you login to the Directnic account now?
 
 
 
 
 
  scottprovost 12:51:34 pm  
 
 
I can have staff contact you. I have to prepare the report for ARIN.
Remember the law requires that publicly report you have been hacked.
 
 
 
 
 
  Ian 12:52:34 pm  
 
 
Can you login to the Directnic account now?
 
 
 
 
 
  scottprovost 12:54:33 pm  
 
 
I need the data that I use to verify domains to be accurate. You must fix the hack. We monitor thousands of domains and the data must be accurate. This has nothing to do with the one domain noted here.
ICANN is revolking registrars that can not maintain security.
If you fix this now I can include an explanation in my report to ICANN.
 
 
 
 
 
  Ian 12:56:47 pm  
 
 
If you are unable to answer my question, I will assume that you are maliciously trying to gain access to information in this account. I will not be able to support you otherwise.
 
 
 
 
 
  scottprovost 12:57:50 pm  
 
 
I am not trying to get any information about any account. Your whois data is false and conflicting. This may be the case with thousands of accounts.
We are not talking about any one account. We are talking about your system being hacked.
Whois
Registry Expiry Date: 2019-11-08T23:00:12Z

your web site
Registrar Registration Expiration Date: 2018-11-08T17:00:12Z
This is all public information and because it is wrong atleast one domain expired with your system not sending any notice out.
 
 
 
 
 
  Ian 01:02:05 pm  
 
 
Although your theory is interesting, all your assumptions are incorrect. I will need you logged into the Directnic account so that I can further assist you.
 
 
 
 
 
  scottprovost 01:03:03 pm  
 
 
No. No need. Just do a whois as I did and compare it to your information. Denying being hacked is a felony. Hacks must be reported.
I an not asking you to help me.
You are the one that is hacked.
 
 
 
 
 
  Ian 01:04:56 pm  
 
 
Since you are unwilling/unable to login to the Directnic account, I will assume you to have malicious intentions towards one of our customer's accounts. As such, I will be closing this chat and cease providing assistance. Thank you for contacting Directnic. Have a great day.
 
 
 
 
 
  Duration: 26m 21s
 
  Chat started on: https://directnic.com/whois
 
 
 
   

E-mail from LiveChat