I think I may have solved part of the PhF 'problem', and it doesn't look legal.
I was on #distributed there now when a person came along saying that a dnet trojan was on his system. Here is what was said - around 11:15GMT.
<< <TomG> Er, I said that already.
<}}FUBAR{{> not good
<{FDISK}> }}FUBAR{{: in the directory where the client was installed, there should be a file, dnetc.ini
<}}FUBAR{{> There is
<{FDISK}> }}FUBAR{{: if you open it, you can find who did it
<}}FUBAR{{> Distributed Computing Technologies, Inc.
<dctievent> RC5: Current distributed.net rate is 118.93 Gkeys/sec.
<}}FUBAR{{> er no
<{FDISK}> lemme tell you want to look for
<}}FUBAR{{> virgedx@home.com
<}}FUBAR{{> Ring a bell to anyone?
<TomG> Fubar: Someone cracked your computer, and installed the distributed.net client. Report the e-mail address listed in the client to the distributed.net staffers.
<TomG> This behaviour is not allowed.
<}}FUBAR{{> Okie
<{FDISK}> noyes, report it
<}}FUBAR{{> Thanks for helping...
<{FDISK}> erm, yes.
<TomG> The program is not harmful, it uses idle CPU time to work on cracking RC5-64.
<{FDISK}> thats most likely the ID of ther person who did it
<}}FUBAR{{> Okie..thanks
<}}FUBAR{{> I've been cracked somehow...dunno how...but I guess I better find out
<}}FUBAR{{> Thanks for all the help
<{FDISK}> FUBAR: if you can come back later, you should be able to talk to a d.net staffer here
<TomG> Not a problem
<}}FUBAR{{> Okay...Will do >>
This seems to be ViRGE's email, and may be one of the infected machines.
I'll save all the text from the irc sessian in case you want it all.
Brendan
I was on #distributed there now when a person came along saying that a dnet trojan was on his system. Here is what was said - around 11:15GMT.
<< <TomG> Er, I said that already.
<}}FUBAR{{> not good
<{FDISK}> }}FUBAR{{: in the directory where the client was installed, there should be a file, dnetc.ini
<}}FUBAR{{> There is
<{FDISK}> }}FUBAR{{: if you open it, you can find who did it
<}}FUBAR{{> Distributed Computing Technologies, Inc.
<dctievent> RC5: Current distributed.net rate is 118.93 Gkeys/sec.
<}}FUBAR{{> er no
<{FDISK}> lemme tell you want to look for
<}}FUBAR{{> virgedx@home.com
<}}FUBAR{{> Ring a bell to anyone?
<TomG> Fubar: Someone cracked your computer, and installed the distributed.net client. Report the e-mail address listed in the client to the distributed.net staffers.
<TomG> This behaviour is not allowed.
<}}FUBAR{{> Okie
<{FDISK}> noyes, report it
<}}FUBAR{{> Thanks for helping...
<{FDISK}> erm, yes.
<TomG> The program is not harmful, it uses idle CPU time to work on cracking RC5-64.
<{FDISK}> thats most likely the ID of ther person who did it
<}}FUBAR{{> Okie..thanks
<}}FUBAR{{> I've been cracked somehow...dunno how...but I guess I better find out
<}}FUBAR{{> Thanks for all the help
<{FDISK}> FUBAR: if you can come back later, you should be able to talk to a d.net staffer here
<TomG> Not a problem
<}}FUBAR{{> Okay...Will do >>
This seems to be ViRGE's email, and may be one of the infected machines.
I'll save all the text from the irc sessian in case you want it all.
Brendan