Thanks guys.
The URL of the first one I found is
http://austin.axg.net - take a look at the "Chickz" forum
I'll post the others up when I get chance, I have other fish to fry at the moment.
Thanks for the info on pennywize, but they don't do much more than I can do myself in PHP/MySQL, and without the overhead of a monthly payment to them. A few machine cycles on a high bandwidth server isn't a big deal, especially when it has access to the info already from the current logon and doesn't need to do much in the way of reverse lookups.
Metaman: Good idea, unfortunately the user/pass setup is all done by Verotel. I'm changing the scripting from that point of view so that users can change the pass when they need to which will allow me to enforce more secure passwords.
I did a lot of digging into the chargeback - the account was used from a kinkos (twice) and then started hitting the lists so I'm guessing that the card number was probably stolen, although it was probably a family member since they had to get at the security number on the card. I'm not going to chase that one too hard, but I am still digging through the lists to find out where auston.agx.net got it from since it was being hit before it was posted there.
Triumph: All depends on your point of view now, doesn't it?