First thing they did was withdraw.php removal, so nobody can withdraw money.
Why would you do that?
Isn't normal thing to disable logons while fixing database and site?
Can you provide some evidence of your claim that CM is honest?
From their actions I (and most of people, I think) can see exactly opposite.
The fact that there are some servers behind cloudflare.. well.. they don't care about it. Why to even bother to shut them down?
In my opinion these servers are just rebooting themselves occasionally and some of them are dead.
Do you have any theory about domain registration?
Why owner details now changed from some fake Netherlands address to Japan, I guess?
Is current assigned to domain registration reminds you something? If not use google. Will help you identify previous cases with that suppose to be "domain owner".
PS. I didn't loose that much money on CM, so I'm laughing at situation, how naive people are thinking CM is not scam and they will come back. and some posting fake screenshots with some suppose to be recent transfers. Can't even comment on that. However, that shows level of people who threw lot of money there. Easy to play around this type of individuals, it seems.
>Why remove withdraw.php
To disable withdrawal of the coins. IF database is corrupted, and there were evidence of that it was, then in some cases users might have incorrect amount of coins recorded in the database. Last time I was able to login (almost three weeks ago), I had a negative buy order for amount of -0.0005 BTC. Where did it came from I have no idea, but it affected my total BTC balance. Some people in trollbox reported that they had more coins that they supposed to.
Their website is a piece of shit written by amateurs. It's not like they can easily disable user logging in or withdrawal of coins by switching a toggle in admin panel. It is clear that their website just doesn't have those basic functions. That's why they have physically removed the file from server and shut down mail server, but people still were able to login because of cookies. Hell it took them 2 days to disable trading...
>Can you provide some evidence of your claim that CM is honest?
I never said that they were honest. In opposite, I've always said that they are NOT being honest about the extent of issues with their website and what they are actually doing right now.
>In my opinion these servers are just rebooting themselves occasionally and some of them are dead.
I can assure you that is not the case. I've been monitoring their servers and wallets from the beginning of this mess. And at this point I'm pretty sure that they are reading this thread too. Pretty much every security vulnerability that has been made public in this thread is fixed. (For example the info.php scripts physically removed from the servers after those got published here, etc)
>Do you have any theory about domain registration?
It's a common practice to use fake information for domain registration. I myself in past registered a domain for pre-school group under Michael Jackson's name and adress as a joke.
When Gandi set domain status to clientonHold and TransferProhibited, I guess CM just negotiated release of the domain and transfered it to another registrar using fake contact details. For Gandi holding on to that domain was pointless and only attracting complaints, so they were happy to get rid of it. And new registrar seems to not give a flying fuck about complaints sent to them. They could've registered domain to Satoshi Nakamoto with the same result.