Announcement

Collapse
No announcement yet.

Ripped MMA / exfatkid / ryansrippedcombo / stevegotripped Supplements Scam

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    Ripped MMA / exfatkid / ryansrippedcombo / stevegotripped Supplements Scam

    I found this through the sponsored ads on the top of bullshido, these ads have been all over myspace too. Getting sick of seeing them so I'm starting to investigate now that they have crossed the line into Martial Arts BS

    Feeder Domains:
    ryansrippedcombo.com
    rippedmma.com
    exfatkid.com
    stevegotripped.com

    Target Domains:
    trymusclemight.com
    acaiforcemax.com
    maxacaiboost.com
    safetrialoffers.com/bigtime

    I have contacted GSP & Thiago Alves' agents to inform them about the likely unauthorized uses of their images, as well as Ryan Reynolds.

    The real scam here as far as I can see it detects your location and says that "Ryan/Keven/Steve/Chris" are near you (note they all say some town in colorado).

    Also, the testimonials are identical between the sites, with the names changed to fit the template. Snakes.

    Strongly discourage anybody from purchasing products marketed in such a dishonest way.
    Attached Files

    #2
    More attachments.
    Attached Files

    Comment


      #3
      Here is the absolutely slimy fine print at the bottom of their sites, bold mine
      TERMS AND CONDITIONS CAREFULLY READ AND AGREE TO PURCHASE TERMS BELOW BEFORE ORDERING:

      This webpage is an advertisement. This page is a fictious demonstration of what an individual who uses the advertised products could potentially experience.

      All celebrity images were found on and obtained from public websites and are believed to be in public domain. Images posted are believed to be posted within our rights in accordance with the U.S. Copyright Fair Use Act (title 17, U.S. Code.). If you are the rightful owner and copyright holder of any celebrity content, please contact us and the infringing material, if any, will be removed as soon as possible. Celebrities neither endorse nor sponsor any of the products and/or services.

      The statements made on this website have not been evaluated by the Food & Drug Administration. The FDA only evaluates foods and drugs, not supplements like these products. These products are not intended to diagnose, prevent, treat, or cure any disease.

      Results may vary. If you are pregnant, nursing, taking other medications, have a serious medical condition, or have a history of heart conditions we suggest consulting with a physician before using a nitric oxide supplement. The information contained in this Website is provided for general informational purposes only. It is not intended as and should not be relied upon as medical advice. The information may not apply to you and before you use any of the information provided in the site, you should contact a qualified medical, dietary, fitness or other appropriate professional. If you utilize any information provided in this site, you do so at your own risk and you specifically waive any right to make any claim against the author and publisher of this Website and materials as the result of the use of such information.

      * S&H charges do apply. Results will vary by person, and the special offers may only be available for a limited time. Some of the products described on this site have terms regarding continued billing after the trial period ends.Additionally, for your fourteen-day and twenty-eight day trials to World Club Fitness and Weight Loss Resources you will be charged $6.95 and $8.95 a month thereafter (shows as "VH ACCESS" and "HEALTHMEMBER")Farend Services Ltd.
      PO Box 10276
      Des Moines, Iowa
      50381
      United States


      Full Advertiser Terms & Conditions

      *Muscle Might T&C:CAREFULLY READ AND AGREE TO PURCHASE TERMS BELOW BEFORE ORDERING:

      How it Works! By clicking Rush MY ORDER I am agreeing to receive BigTime for a 12-day trial period for $3.95 billed to my credit Card(please allow 7 days for the shipping process and 5 days to try the product). If you enjoy BigTime, simply do nothing. On the 13th day my credit card will automatically be charged $92.31 for a 30 day supply and every month, thereafter, unless I cancel by calling 1-877-350-8480 M F, 8am-7pm PAC. No Hassle, Cancel Anytime! And Yes, as our gift to you...we are sending you a 30 day supply for your trial period. As a special bonus gift, we're offering you a 21-day Trial Memberships to MyFitnessHub and CostKings. These are 21-day trials, with no obligation to continue. You can cancel at any time during your 21-day by calling 1-877-495-1183 M-F, 9am-9pm, EST and you will be charged nothing. If you like your memberships simply do nothing and you'll automatically be charged only $39.95 a month for MyFitnessHub and $2.97 a month for CostKings memberships. You will receive your MP3 player upon completion of your first month's billing. Remember, you will not be charged for the 21-day trials, and you can cancel at any time. By clicking "Order", you also represent that you have read and agree to the terms of this offer.

      BigTime
      630 West 9560 South
      Suite C
      Sandy, UT 84070

      Full Advertiser Terms & Conditions

      Comment


        #4
        That is some industrial grade bullshido right there. Good on you to go after them BSD. Rep incoming.
        Originally posted by pauli
        i was once told that "do" means wrecking people's shit for your own philosophical betterment.

        Originally posted by melvin_peebles
        I could be mistaking dumbness for delusion. I'll have to go dig out my DSM IV. It's great to have stumbled upon this site. The rich fauna and flora of mental dysfunction that exists in the martial arts is amazing. It's like the Galapagos.

        Comment


          #5
          Excellent writeup, very definitive. Any action items, or should we get right to putting this into .org format?
          What a disgrace it is for a man to grow old without ever seeing the beauty and strength of which his body is capable. -Xenophon's Socrates

          Comment


            #6
            Another Feeder Domain

            http://www.formerfatkid.info/

            FormerFatKid.net is an affiliate website, owned by Mega Media Inc representing products available from "Acai Force Max" and "Get Big" health supplement products. Mega Media Inc does business out of the USA.
            Interesting to see that the terms of different feeder sites indicated different ownerships:

            ExFatKid.com is an affiliate website, owned by Sun Debt Solutions LLC representing products available from "Acai Force Max" and "Get Big" health supplement products. Sun Debt Solutions LLC does business out of the USA and can be reached via [email protected].
            more from T&C:
            We are pleased to offer you customer service 24 hours a day, 365 days a year.
            You may contact us can learn more about our products 24 hours a day at our website or at this address:

            S.E. SPEEDMASTER ENTERPRISES LIMITED
            3 Athinodorou Street, 2025 Dasoupoli
            Strovolos, Nicosia, Cyprus
            Here is a ripoff report link:
            http://www.ripoffreport.com/Weightlo...edma-67765.htm

            And more domains by this lovely conglomerate:

            http://www.acaiberryreviewsblog.com
            http://www.advancedprobiotic.com
            http://www.celebritysmilesecrets.com
            http://www.celebswhiteteeth.com
            http://www.celluliteselect.com
            http://www.cellulitevanish.com
            http://www.clearliftultra.com
            http://www.exfolskin.com
            http://www.gojiberrydietsystem.com
            http://www.healthlycleansepro.com
            http://www.moutfujiteagreendiet.com
            http://www.niterelief.com
            http://www.pheramoan.com
            http://www.pomegranatedietsystem.com
            http://www.pomegranatefruitdetox.com
            http://www.powerclearacne.com
            http://www.quickacaidietsource.com
            http://www.resveratrolagesolution.com
            http://www.sexyceleblips.com
            http://www.totalcleansesystem.com
            http://www.tryadvancedcleanse.com
            http://www.tryadvancedcleanse.com
            http://www.trypainology.com
            http://www.ultracleanseplus.com
            http://www.veinadril.com
            http://www.wiseshoppingcart.com
            http://www.youthkit.com

            This is turning into a real bullshit goldmine!
            Attached Files

            Comment


              #7
              Originally posted by 1point2 View Post
              Excellent writeup, very definitive. Any action items, or should we get right to putting this into .org format?
              Well among other things:

              * Identifying the people in the pictures, informing them of their stolen images
              * Filing complaints with the FTC
              * Contacting their ISP in attempt to get their web servers taken down
              * Contacting MySpace and Google in attempts to have their advertising accounts suspended
              * Going to Cyprus and leaving flaming bag of poop on their doorstep

              Comment


                #8
                awesome work! +rep
                Fight Film Friday
                Watching violence on film, violently.
                Click here to donate!

                Comment


                  #9
                  "All celebrity images were found on and obtained from public websites and are believed to be in public domain. Images posted are believed to be posted within our rights in accordance with the U.S. Copyright Fair Use Act (title 17, U.S. Code.). If you are the rightful owner and copyright holder of any celebrity content, please contact us and the infringing material, if any, will be removed as soon as possible. Celebrities neither endorse nor sponsor any of the products and/or services."

                  utter bullshit
                  "Fair use" would not apply in this case
                  In fact they are probably guilty of "passing off" regarding the celebrity photos
                  http://en.wikipedia.org/wiki/Passing_off


                  I would expect them to be hearing from m' learned friends in due course

                  Comment


                    #10
                    This seems to be the source:

                    http://farendservices.com/

                    Farend Services Ltd.
                    PO Box 10276
                    Des Moines, Iowa
                    50381
                    United States

                    But their site says:

                    3 Athinodorou Street
                    2025 Dasoupoli, Strovolos
                    Nicosia, Cyprus

                    Phone Number (atlanta georgia area code)
                    770-571-8351

                    same phone number as this: http://www.contactcenter.com/ indicates it's an "offshore conract center"

                    Found another feeder site, this one is distinctly different, but the same shit:

                    http://johngotripped.com/

                    The #1 objective I think would be to try to Identify persons responsible for this in the states. All the domains I've checked have private whois records

                    Lets dig into that server johngotripped.com by doing a bing search for "ip:69.65.39.219"

                    Other sites on the server:

                    howtolose30pounds.net
                    acaiberrydietscam.net
                    thequickestwaytoloseweight.net
                    howtolosetummy.net
                    governmentgrantskit.net
                    multiplestreamsofincomescam.net
                    easytweetprofits.org
                    governmentgrantsfordebt.net
                    bingprofitking.net
                    acaiberriesblog.net
                    washingtonnewsdaily.com - feeds to other sites on this server
                    acaiberryandcoloncleansediet.net
                    briteteethproreview.net


                    Lets inform google of these, they won't take kindly to it and have way more power to do something about it:

                    easygoogleprofitscam.org
                    easygoogleprofitscam.net
                    googlemoneysystemscam.net
                    googlemoneysystemscam.org
                    makemoneyongoogle.org
                    googlestartupkit.org
                    googlemoneyprofit.net

                    This is just 1 server, more to come

                    Comment


                      #11
                      the server is NOT offshore, its located in Illinois:
                      $ whois 69.65.39.219

                      OrgName: GigeNET
                      OrgID: ECOMD
                      Address: 545 E. Algonquin Rd
                      Address: Suite D
                      City: Arlington Heights
                      StateProv: IL
                      PostalCode: 60005
                      Country: US

                      ReferralServer: rwhois://rwhois.servernap.net:4321

                      NetRange: 69.65.0.0 - 69.65.63.255
                      CIDR: 69.65.0.0/18
                      NetName: IPNAP
                      NetHandle: NET-69-65-0-0-1
                      Parent: NET-69-0-0-0-0
                      NetType: Direct Allocation
                      NameServer: NS1.SERVERNAP.COM
                      NameServer: NS2.SERVERNAP.COM
                      NameServer: NS3.IAD.SERVERNAP.COM
                      Comment: www.gigenet.com
                      RegDate: 2003-07-30
                      Updated: 2006-01-23

                      OrgTechHandle: IPADM152-ARIN
                      OrgTechName: IP Administrator
                      OrgTechPhone: +1-800-561-2656
                      OrgTechEmail: [email protected]

                      Comment


                        #12
                        207.210.125.34

                        RippedMMA.com

                        # whois 207.210.125.34
                        Spoiler:

                        OrgName: Global Net Access, LLC
                        OrgID: GNAL-2
                        Address: 1100 White St SW
                        City: Atlanta
                        StateProv: GA
                        PostalCode: 30310
                        Country: US

                        ReferralServer: rwhois://rwhois.gnax.net:4321

                        NetRange: 207.210.64.0 - 207.210.127.255
                        CIDR: 207.210.64.0/18
                        OriginAS: AS3595, AS16626
                        NetName: GNAXNET
                        NetHandle: NET-207-210-64-0-1
                        Parent: NET-207-0-0-0-0
                        NetType: Direct Allocation
                        NameServer: DNS1.GNAX.NET
                        NameServer: DNS2.GNAX.NET
                        NameServer: NS1.GNAX.NET
                        NameServer: NS2.GNAX.NET
                        Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
                        Comment: ********************************************
                        Comment: Reassignment information for this block is
                        Comment: available at rwhois.gnax.net port 4321
                        Comment: ********************************************
                        RegDate: 2005-04-12
                        Updated: 2007-06-01

                        RAbuseHandle: ABUSE745-ARIN
                        RAbuseName: GNAX ABUSE
                        RAbusePhone: +1-404-230-9150
                        RAbuseEmail: [email protected]

                        RNOCHandle: ENGIN7-ARIN
                        RNOCName: GNAX ENGINEERING
                        RNOCPhone: +1-404-230-9150
                        RNOCEmail: [email protected]

                        RTechHandle: ENGIN7-ARIN
                        RTechName: GNAX ENGINEERING
                        RTechPhone: +1-404-230-9150
                        RTechEmail: [email protected]

                        OrgAbuseHandle: ABUSE745-ARIN
                        OrgAbuseName: GNAX ABUSE
                        OrgAbusePhone: +1-404-230-9150
                        OrgAbuseEmail: [email protected]

                        OrgNOCHandle: ENGIN7-ARIN
                        OrgNOCName: GNAX ENGINEERING
                        OrgNOCPhone: +1-404-230-9150
                        OrgNOCEmail: [email protected]

                        OrgTechHandle: ENGIN7-ARIN
                        OrgTechName: GNAX ENGINEERING
                        OrgTechPhone: +1-404-230-9150
                        OrgTechEmail: [email protected]

                        # ARIN WHOIS database, last updated 2009-10-09 20:00


                        bing ip:207.210.125.34

                        Lots of legit sites, must be a shared server, some not so legit sounding:

                        # whois leetcash.com
                        Spoiler:


                        Whois Server Version 2.0

                        Domain names in the .com and .net domains can now be registered
                        with many different competing registrars. Go to http://www.internic.net
                        for detailed information.

                        Domain Name: LEETCASH.COM
                        Registrar: ENOM, INC.
                        Whois Server: whois.enom.com
                        Referral URL: http://www.enom.com
                        Name Server: NS1.HOSTINGZOOM.COM
                        Name Server: NS2.HOSTINGZOOM.COM
                        Status: clientTransferProhibited
                        Updated Date: 07-aug-2009
                        Creation Date: 20-dec-2007
                        Expiration Date: 20-dec-2009

                        >>> Last update of whois database: Sat, 10 Oct 2009 01:04:21 UTC <<<

                        NOTICE: The expiration date displayed in this record is the date the
                        registrar's sponsorship of the domain name registration in the registry is
                        currently set to expire. This date does not necessarily reflect the expiration
                        date of the domain name registrant's agreement with the sponsoring
                        registrar. Users may consult the sponsoring registrar's Whois database to
                        view the registrar's reported date of expiration for this registration.

                        TERMS OF USE: You are not authorized to access or query our Whois
                        database through the use of electronic processes that are high-volume and
                        automated except as reasonably necessary to register domain names or
                        modify existing registrations; the Data in VeriSign Global Registry
                        Services' ("VeriSign") Whois database is provided by VeriSign for
                        information purposes only, and to assist persons in obtaining information
                        about or related to a domain name registration record. VeriSign does not
                        guarantee its accuracy. By submitting a Whois query, you agree to abide
                        by the following terms of use: You agree that you may use this Data only
                        for lawful purposes and that under no circumstances will you use this Data
                        to: (1) allow, enable, or otherwise support the transmission of mass
                        unsolicited, commercial advertising or solicitations via e-mail, telephone,
                        or facsimile; or (2) enable high volume, automated, electronic processes
                        that apply to VeriSign (or its computer systems). The compilation,
                        repackaging, dissemination or other use of this Data is expressly
                        prohibited without the prior written consent of VeriSign. You agree not to
                        use electronic processes that are automated and high-volume to access or
                        query the Whois database except as reasonably necessary to register
                        domain names or modify existing registrations. VeriSign reserves the right
                        to restrict your access to the Whois database in its sole discretion to ensure
                        operational stability. VeriSign may restrict or terminate your access to the
                        Whois database for failure to abide by these terms of use. VeriSign
                        reserves the right to modify these terms at any time.

                        The Registry database contains ONLY .COM, .NET, .EDU domains and
                        Registrars.
                        =-=-=-=
                        Visit AboutUs.org for more information about leetcash.com
                        <a href="http://www.aboutus.org/leetcash.com">AboutUs: leetcash.com</a>

                        Registration Service Provided By: NameCheap.com
                        Contact: [email protected]
                        Visit: http://www.namecheap.com/

                        Domain name: leetcash.com

                        Registrant Contact:
                        WhoisGuard
                        WhoisGuard Protected ()

                        Fax:
                        8939 S. Sepulveda Blvd. #110 - 732
                        Westchester, CA 90045
                        US

                        Administrative Contact:
                        WhoisGuard
                        WhoisGuard Protected ([email protected] rd.com)
                        +1.6613102107
                        Fax: +1.6613102107
                        8939 S. Sepulveda Blvd. #110 - 732
                        Westchester, CA 90045
                        US

                        Technical Contact:
                        WhoisGuard
                        WhoisGuard Protected ([email protected] rd.com)
                        +1.6613102107
                        Fax: +1.6613102107
                        8939 S. Sepulveda Blvd. #110 - 732
                        Westchester, CA 90045
                        US

                        Status: Locked

                        Name Servers:
                        ns1.hostingzoom.com
                        ns2.hostingzoom.com

                        Creation date: 20 Dec 2007 18:05:57
                        Expiration date: 20 Dec 2009 18:05:57



                        Same server, same DNS privacy provider. However, even the legit sites on that server use the same one on Sepulveda.



                        scan & trace
                        Spoiler:
                        # nmap -A -T5 -F -PN 207.210.125.34

                        Starting Nmap 4.52 ( http://insecure.org ) at 2009-10-09 19:16 MDT
                        Warning: Giving up on port early because retransmission cap hit.
                        Interesting ports on 207.210.125.34:
                        Not shown: 1140 closed ports, 124 filtered ports
                        PORT STATE SERVICE VERSION
                        21/tcp open ftp PureFTPd
                        25/tcp open smtp Exim smtpd 4.69
                        | SMTP: Responded to EHLO command
                        | barker.hostingzoom.com Hello example.org [REDACTED]
                        | SIZE 52428800
                        | PIPELINING
                        | AUTH PLAIN LOGIN
                        | STARTTLS
                        | 250 HELP
                        | Responded to HELP command
                        | Commands supported:
                        |_ AUTH STARTTLS HELO EHLO MAIL RCPT DATA NOOP QUIT RSET HELP
                        53/tcp open domain
                        80/tcp open http Apache httpd 2.2.10
                        |_ HTML title: Shag Daddy Homepage<title><meta http-equiv="Content-Type" cont...
                        110/tcp open pop3 Courier pop3d
                        143/tcp open imap Courier Imapd (released 2008)
                        443/tcp open http Apache httpd 2.2.10
                        |_ HTML title: cPanel&reg;
                        465/tcp open ssl/smtp Exim smtpd 4.69
                        993/tcp open ssl/imap Courier Imapd (released 2008)
                        995/tcp open ssl/pop3 Courier pop3d
                        3306/tcp open mysql MySQL 5.0.81-community
                        | MySQL Server Information: Protocol: 10
                        | Version: 5.0.81-community
                        | Thread ID: 5576344
                        | Some Capabilities: Connect with DB, Compress, Transactions, Secure Connection
                        | Status: Autocommit
                        |_ Salt: Jlc-Q4MhBQOx2-)''0WH
                        Aggressive OS guesses: Linux 2.6.9 (92%), Linux 2.6.9 (CentOS 4.4 or ClarkConnect) (90%), Infoblox NIOS Release 4.1r2-5-22263 (89%), Linux 2.6.20 (Ubuntu 7.04 server, x86) (89%), Linksys WAP54G WAP (88%), HP 4200 PSA (Print Server Appliance) model J4117A (88%), Buffalo TeraStation NAS device (87%), Broadband router (Actiontec GT701-WG or GT724-WG; BeWAN 770G ADSL2+; D-Link 500T; Linksys WAG54G, WAG354G, or RTP300; Netgear DG834G, or WELL PTI-850G) (87%), Actiontec MI-424-WR wireless broadband router (Linux 2.4.21), HP Brocade 4100 switch, or Netgear WNR834B wireless broadband router (87%), Telkom Mega 100 WR DSL modem (Linux 2.4.17_mvl21-malta-mips_fp_le) (87%)
                        No exact OS matches for host (test conditions non-ideal).
                        Uptime: 45.401 days (since Tue Aug 25 09:40:25 2009)
                        Network Distance: 10 hops
                        Service Info: Host: barker.hostingzoom.com

                        TRACEROUTE (using port 21/tcp)
                        HOP RTT ADDRESS
                        1 0.57 [REDACTED]
                        2 24.95 [REDACTED]
                        3 24.98 [REDACTED]
                        4 52.63 chp-brdr-03.inet.qwest.net (67.14.8.190)
                        5 50.88 chi-bb1-link.telia.net (213.248.85.29)
                        6 94.28 dls-bb1-link.telia.net (80.91.248.209)
                        7 79.15 atl-bb1-link.telia.net (80.91.248.214)
                        8 81.47 globalnet-127291-atl-bb1.c.telia.net (213.248.90.54)
                        9 81.42 atl-core-g-g1-6.gnax.net (63.247.69.178)
                        10 97.22 209.51.131.90
                        11 81.41 207.210.125.34

                        OS and Service detection performed. Please report any incorrect results at http://insecure.org/nmap/submit/ .
                        Nmap done: 1 IP address (1 host up) scanned in 63.886 seconds


                        So the actual host name of the server is barker.hostingzoom.com

                        We'll need to contact that ISP's abuse department once we've gathered enough information.

                        They have a pretty strict terms of service:

                        http://www.hostingzoom.com/aup.php

                        So its reasonable to assume that hostingzoom would be able to identify the perpetrators if they were served a subpoena.

                        What I'm afraid of, is that tricking people into accepting fine print is not necessarily illegal, credit card companies do it every day. However running such a massive scam from a Cyprus tax haven almost certainly will cause some concern in some government agency. I fully intend to see to the feds getting on this case and shut these bastards down, there must be a large number of victims out there considering the scale of the scheme.
                        Last edited by BSDaemon; 10/09/2009 7:30pm, .

                        Comment


                          #13
                          As a side note, their comment about having found the pictures and believing them to be in the public domain isn't really the issue.

                          If, in fact, the celebrities pictured in these ads didn't consent to the use of their picture then they very well could have a claim for misappropriation of their image. Granted, a lot more information would be needed, but it wouldn't be a novel claim apart from the possible international flavor depending on where the company is actually located. I just liked how they threw that in there, as if it indemnifies them from liability.

                          Just my .02 (and yeah I'm a lawyer but I don't do litigation, and the law changes from state to state so your results may vary blah blah blah)

                          Comment


                            #14
                            So it's an offshore company, misappropriating the likeness and image of celebrities as well as ordinary people, attempting to lure unsuspecting people who don't read the fine print in to large recurring credit card billing situations for questionable products & services. Run out of Cyprus, with web servers in Indiana and Atlanta, post office boxes in Utah.

                            My wild ass guess is that there is somebody in Utah running this, not Cyprus.

                            Comment


                              #15
                              Originally posted by Iainkelt View Post
                              As a side note, their comment about having found the pictures and believing them to be in the public domain isn't really the issue.
                              rights of publicity/image vary, depending where you are, but there's no right to commercially use likenesses of celebs unless specifically granted contractually.

                              What a reasonable person would induce, is the standard for false adv. There's a potential phat law suit in this, for the entity that controls likeness rights (be it, fighter, agent, mgr, promoter etc).

                              In contracts, for music gigs, it's in there that likeness/name/tradmarks will be used to promote said event. Even under contract for services, there's no blanket use of image/brand etc unless granted formally.
                              sigpic

                              Comment

                              Collapse

                              Edit this module to specify a template to display.

                              Working...
                              X