Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

hey #5

Open
donnaken15 opened this issue Apr 12, 2024 · 40 comments
Open

hey #5

donnaken15 opened this issue Apr 12, 2024 · 40 comments

Comments

@donnaken15
Copy link

shut up

@poka-IT
Copy link

poka-IT commented Apr 17, 2024

What is this? Why 24 people stars this helloworld repo?? What is this issue???
So strange...

@donnaken15
Copy link
Author

this user adds a watch to every repo imaginable
jchloos v2

@poka-IT
Copy link

poka-IT commented Apr 17, 2024

ok, he watched my repo too, so I understand, this is how I came here ^^
jchloos v2?

The username is eemailme, so i email him... And probably go to sleep...

@donnaken15
Copy link
Author

jchloos is some random user with their own website who also botted watches on (presumably) thousands of repos
I thought it was someone actually flattering me but I figured out the ruse

@github-staff github-staff deleted a comment from AndreSabbagh Apr 26, 2024
@donnaken15
Copy link
Author

rip bozo packwatch spam bots should be dumped into the ocean

@Ricksanchezx2
Copy link

Ricksanchezx2 commented May 20, 2024 via email

@phanirithvij
Copy link

phanirithvij commented May 22, 2024

jhcloos has 7k followers and this account has 835. My fork of some random 3 star repo has these two guys as watchers. They should be banned.

@Ricksanchezx2
Copy link

Ricksanchezx2 commented May 26, 2024 via email

@donnaken15
Copy link
Author

I've never tried blocking someone on GitHub but you can try that if it takes their watches off of repos you have

@lozanopo
Copy link

lozanopo commented Jun 1, 2024

shut up

@donnaken15
Copy link
Author

no u

@mbostwick
Copy link

Its a bot network..

@mbostwick
Copy link

Well if it is bots then they are smarter than we are

who is the we ?

@ViktorPopp
Copy link

ViktorPopp commented Oct 24, 2024

40 STARS!?!?!

@mbostwick
Copy link

mbostwick commented Oct 24, 2024

yah, it looks like its a manual user. I think there is some setup where the person or persons behind the network is reading specific public code and building A.I tools using the code. There is a real person though who reads the emails. I thought this was connected to a larger criminal network of attorneys I've been dealing with, but the behaviors suggest its more of a fringe company. Everything is white labeled right now, they also appear to be using cut outs to avoid facing legal action. They are not following git hubs terms of service though. I'd say more but I don't want to expose too much yet..

@ViktorPopp
Copy link

Wtf

@1atAlcone
Copy link

😳

@ViktorPopp
Copy link

🧐

@TheGiraffe3
Copy link

43 stars... I wonder why there is no "Downstar" button

@0XDE57
Copy link

0XDE57 commented Dec 4, 2024

this smells (potentially) related?: https://research.checkpoint.com/2024/stargazers-ghost-network/

@TheGiraffe3
Copy link

Not 100% (jhcloos has been around since 2011) and @eemailme doesn't post.

@edouard-sn
Copy link

@0XDE57 trojan url, tries to download powershell script - reported by ESET
@github-staff

@TheGiraffe3
Copy link

Doesn't try to download a powershell script for me.

@0XDE57
Copy link

0XDE57 commented Dec 5, 2024

@0XDE57 trojan url, tries to download powershell script - reported by ESET @github-staff

wut? there is no script for me either. where?

@0XDE57
Copy link

0XDE57 commented Dec 5, 2024

I'm looking all over this site and cant find any "trojan" or script.

Are you misinformed or is this a false positive?

@mbostwick
Copy link

I'm looking all over this site and cant find any "trojan" or script.

Are you misinformed or is this a false positive?

I can confirm I also did not see any improper scripts .. there is an issue that looks like someone was playing around with a powerscript. I'm not sure if thats related ..

@0XDE57
Copy link

0XDE57 commented Dec 5, 2024

Well if you find this alleged script post a gist here so we can all dissect it.

If the github staff arrive tell them to figure out what's up with these bots.

@edouard-sn
Copy link

Maybe its a false positive, if I have time i will try to look into it

@0XDE57
Copy link

0XDE57 commented Dec 5, 2024

What triggered you to claim "trojan" in the first place then if you aren't even gonna bother looking into it?

Are you using an automated scanner? You shouldn't just make baseless claims about trojans and powershell script's without providing source or the script itself, and then run away so we all have to waste time hunting for it...

@edouard-sn
Copy link

My antivirus (ESET) reported it to me

@ViktorPopp
Copy link

My antivirus (ESET) reported it to me

From where?

@edouard-sn
Copy link

Like this
image
Basically says that it detected "Powershell/TrojanDownloader.AgentIJP" and that the access has been blocked, the last line says "Find out more" which redirects to this web page (not very interesting)

@0XDE57
Copy link

0XDE57 commented Dec 6, 2024

Hmm. That's kindof generic message.

I was hoping it would show a path to the file or something more descriptive than that.

I guess false. Let us know if you find the root.

@mbostwick
Copy link

Hmm. That's kindof generic message.

I was hoping it would show a path to the file or something more descriptive than that.

https://www.eset.com/us/business/services/threat-intelligence/?srsltid=AfmBOoohSrUjN4yavxxTdFPkYP_MfZX92erU1l4f2vGS6ubLKy-QGu3M

Someone or something has labeled it a threat . Looking at past issues, is likely the root cause. There is a relationship with Chinese sites. Given regulatory implications with that, the scan choices would make sense.

@0XDE57
Copy link

0XDE57 commented Dec 7, 2024

Also I didn't mean to derail the thread. I only posted that article because I thought maybe it could be something similar to what is going on here.

I noticed this strange account following one of my projects and stumbled here out of curiosity.

¯_(ツ)_/¯

Stay sharp!

@0XDE57
Copy link

0XDE57 commented Dec 9, 2024

edit: actually following all of my projects not just one. in fact he was my first follower in 2017? my account like 10 years oldish? I don't know why I never bothered to try emailing it lol. It's literally in the name... My eyes must have glossed over that a thousand times. I can't believe it took me so long to realize its a bot. Durr.

I still don't want to email you. Leave me alone. If you have something to say, say it publicly. Or tell it to github staff weirdo.

Keep your AI garbage to yourself. LLMS are way over hyped. I can't wait for this hype cycle to pass so GPU prices can normalize... NVIDIA sucks! Copilot is not that useful (no offense github). It's good for one off functions and boilerplate but can't do real work. Stop shoving cloud AI in my face. There is no cloud. Stop forcing subscriptions on everyone.

@mbostwick
Copy link

edit: actually following all of my projects not just one. in fact he was my first follower in 2017? my account like 10 years oldish? I don't know why I never bothered to try emailing it lol. It's literally in the name... My eyes must have glossed over that a thousand times. I can't believe it took me so long to realize its a bot. Durr.

I still don't want to email you. Leave me alone. If you have something to say, say it publicly. Or tell it to github staff weirdo.

Keep your AI garbage to yourself. LLMS are way over hyped. I can't wait for this hype cycle to pass so GPU prices can normalize... NVIDIA sucks! Copilot is not that useful (no offense github). It's good for one off functions and boilerplate but can't do real work. Stop shoving cloud AI in my face. There is no cloud. Stop forcing subscriptions on everyone.

While I think there is a failure of people to understand LLVM's GPU prices are always going to go up, IMO .. the power of geometry in computing is only going to go up .. You can block him on github if you want as well.

Have fun though and let people be people .. the thing I'd say is watch out for people hoping to exploit others for there own profit ..

Robots that can kill you based on your face exist today, nuclear weapons can still wipe us all out .. I would urge eemailme to be more transparent if your not up to any kind of trouble .. Given that evil people used internet tools to exploit children, most technology has lost the ability to hide people ..

@0XDE57
Copy link

0XDE57 commented Dec 9, 2024

Every new accelerator is overhyped. Just look at Ray Tracing. Ill stop now before getting more off topic.

I am not really worried about it. Just want to know what this is.

Evil cannot create anything new, they can only corrupt and ruin what good forces have invented or made.

@codewithpapakwame
Copy link

This is getting confused i get the same thing in the project

@Kreijstal
Copy link

I got watched by this guy

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

16 participants