If you are implying that he changed the email, then you are wrong. The only changes was the dns entries. Here is the diff:
5c5
< Updated Date: 2014-07-25T08:02:24Z
---
> Updated Date: 2014-10-10T06:29:08Z
50,53c50,53
< Name Server: ns-1940.awsdns-50.co.uk
< Name Server: ns-312.awsdns-39.com
< Name Server: ns-1107.awsdns-10.org
< Name Server: ns-717.awsdns-25.net
---
> Name Server: host314419.venus.orderbox-dns.com
> Name Server: host314419.mercury.orderbox-dns.com
> Name Server: host314419.earth.orderbox-dns.com
> Name Server: host314419.mars.orderbox-dns.com
No, I just meant that he used fake info on that one and used variations of 1337 for the phone number. jpcdice and darkdice were using private reg.
I think I know who T04D is too, just a hunch though. Can't really prove anything....yet.
**BTW, DiceMasterFlash was what was used for the 3 sites and was the username they tried to scrub from the internet, but FlashMasterDice is his main username and is still widely used. Not very creative on that one if the end goal was to scam people out of thousands of dollars. I think the odds of a non-connected person using both names and then deleting almost all references of the matching one around the same time as the sites going down is pretty astronomical.