-
cohcho
Is it possible to load randomx library into memory the same way as it is being done for jit inside randomx (mmap with RWX)?
-
cohcho
Of course, it's possible but i've failed with staticaly compiled randomx-tests (received SEGV at free_meme function).
-
sech1
Do you mean compile it as .dll/.so and load? Yes.
-
cohcho
randomx_elf = open(...).read(); mem_ptr = mmap(...); memcpy(mem_ptr, randomx_elf); init_cache_f = mem_ptr + offset; cache_ptr = init_cache_f(...);
-
cohcho
Something like this^
-
cohcho
Do you understand my aim?
-
cohcho
Since it's difficult to implement general purpose solution for "load shared library into memory from buffer", i've decided to implement "load static executable into memory from buffer in order to call it's functions"
-
sech1
You can do this, but you need to do all the work that OS already does for you.
-
sech1
You can't simply copy dll/so file into memory
-
cohcho
It's easier to load isolated assembly functions but i don't have isolated assembly functions that implement randomx.h
-
cohcho
If you think it isn't feasible in reasonable amount of time then skip my question.
-
sech1
There is a code to load DLL into memory for Windows, it does everything OS loader does.
-
sech1
Maybe something for Linux exists too. Or you can just take it from OS sources.
-
tevador
Windows: LoadLibrary, Linux: dlopen
-
cohcho
dlopen from buffer*
-
cohcho
not file
-
tevador
the easiest way is probably to dump the buffer to /tmp and dlopen()
-
tevador
87% of blocks in the last day are voting for v12
-
sech1
So most pools have updated by now
-
tevador
-
tevador
feel free to test
-
tevador
Windows only
-
sech1
"CC0"?
-
tevador
public domain
-
tevador
-
sech1
To be most effective, this sniffer should automatically ask for elevated privileges if it's not run as administrator
-
sech1
Hidden miners can disable access to their threads
-
tevador
run it in elevated cmd.exe
-
tevador
it's only meant as PoC, not for actual use
-
sech1
I guess AV software can add this heuristic quickly
-
sech1
Maybe we should even contact AV companies
-
tevador
yeah I've been thinking about that
-
sech1
The better heuristic would be to probe suspicious process twice and check if their rounding modes change
-
sech1
and if different threads have different rounding modes
-
tevador
yeah, there are better heuristics, but the vast majority of processes only use the default mode
-
gingeropolous
nice
-
Inge-
I wonder how 3970x and 3990x will be to cool.
-
Inge-
3900x is pretty hard to cool with 280mm AIO as it is
-
gingeropolous
moneros gonna burn the world down
-
rottensox
climate change!!!
-
nioc
360mm is recommended for 3970x
-
nioc
wen 3990x release
-
rottensox
soon^(tm(
-
rottensox
soon^(tm)
-
nioc
I have a NH-14US for my 3900x
-
nioc
75C at 100% cpu
-
nioc
stock
-
rottensox
you're burning that little guy.
-
rottensox
y tho.
-
Inge-
nioc: how much more cooling do you get from 360mm ws 280mm?
-
Inge-
according to a simple back-of-envelope calculation of surface areas (120*120*3 vs 14*14*2), the 360mm radiator is 10% larger
-
nioc
that was a recommendation from a YT channel tester
-
Inge-
"stock" is extremely misleading - as mine would then pump 1.3 - 1.45v through the CPU ...
-
nioc
yeah I just started running it and haven't changed anything
-
nioc
can't even figure out how to set the # of threads in xmrig lol
-
nioc
I can for wowrx
-
nioc
or rx
-
nioc
but cn/r isn't listed
-
gingeropolous
glad your mining nioc !
-
nioc
gingeropolous: thx lol, my roi is the heat death of the universe
-
gingeropolous
aye, me too
-
gingeropolous
whats the power consumption on the polaris compared to cnr?
-
gingeropolous
im debating if I should switchover some miners remotely....
-
tevador
-
tevador
not sure how old those numbers are
-
sech1
OpenCL code haven't changed much since summer
-
sech1
You can always set power limit for your GPUs, I don't see a problem here.
-
gingeropolous
im using hiveos. i wonder if its even doable. looks like they're slacking when it comes to randomx. which makes sense. its a gpu rig thing
-
sech1
I'll be mining with my Vega 64 in the first day or two by the way
-
sech1
Electricity is included in rent, so why not?
-
sech1
and it'll make a nice space heater in this cold weather
-
tevador
it's best keep mining and see what happens
-
gingeropolous
yeah my vegas are managed by mmpos
-
needmonero90
-
needmonero90
Is this a scam?
-
needmonero90
I thought browser mining wasn't a thing
-
selsta
maybe not updated for randomx?
-
needmonero90
Five year old account with zero karma posted it on /r/monero
-
needmonero90
It got hit by our karma filter
-
needmonero90
And I'm just feeling very strange about it
-
needmonero90
Can someone look into this for me? :)
-
needmonero90
I want to know if we should approve, or if it's sketchy
-
tevador
it's probably just cryptonight, so will be on the wrong chain soon
-
needmonero90
This is new tho
-
needmonero90
I've never seen the site before
-
» needmonero90 wonders if it's a virus or possibly randomx
-
needmonero90
Releasing a day before the fork makes me hesitant to assume it's CN
-
selsta
I’d ask for more info on it first
-
selsta
before accepting
-
needmonero90
I think it is CN
-
needmonero90
The leaderboard on the site says they distributed the tokens for september
-
» needmonero90 is just confused at this point
-
sech1
Web mining for RandomX is in the realm of "fairy tales" now
-
tevador
-
tevador
doesn't support randomx
-
moneromooo
That website looks like what I'd love to see using the pay-for-service thing and primo.
-
needmonero90
Thank you tevador
-
tevador
btw I sent an email to avast, microsoft, eset, avira, kaspersky and trendmicro
-
tevador
and symantec*
-
sech1
I think they all just add every new xmrig release to their bases automatically and call it a day. Don't expect much.
-
sech1
-
tevador
that's very easy to circumvent
-
tevador
but also most hackers are lazy, so it may just be enough
-
cohcho
What does it mean to add xmrig release into antivirus?
-
cohcho
binary hash sum?
-
sech1
Freshly compiled xmrig also triggers AV, so they have some generic signature for it
-
tevador
probably machine learning
-
sech1
nah, probably they search for AES tables + Groestl/Blake/JH/Skein code
-
cohcho
At least two instances of xmrig are required in order to know the price and quality of their detection.
-
sech1
if everything is there => trigger alarm
-
cohcho
two instances that maps to {detected, undetected}
-
tevador
so if you strip down xmrig to just randomx, it probably won't be detected
-
sech1
yes
-
sech1
I actually tested it
-
sech1
Pure RandomX doesn't trigger AV... yet...
-
sech1
But it'll change next week, lol
-
sech1
Out of all major pools, xmrpool.eu, minergate.com, c3pool.com, dwarfpool.com are still not updated
-
sech1
These 4 pools are 9 MH/s combined
-
moneromooo
Feel free not to help minergate and dwarfpool if they request help to do so.
-
moneromooo
Hmm. Actually... Even if they're scammers, it still adds some degree of decentralization as a whole... Hmm. Hrm. Interesting conendrum...
-
sech1
Personally I don't want to have minergate around
-
sech1
I'm sure they'll update. More than 95% of blocks are v11.12 already, so not a big deal.
-
needmonero90
-
needmonero90
Tevador pls knock some sense into them
-
» needmonero90 sighs
-
needmonero90
Do I let it through? Is mining altcoins and converting to Monero Monero enough for the sub?
-
needmonero90
I suspect that they're referring to minergate, it's a multiminer right?
-
sech1
It might be MoneroOcean
-
sech1
they can use it to do exactly that
-
needmonero90
Basically. I need to know if this is legit and whether to approve. But I'm not deep enough into the mining scene to know, other than to see red flags
-
sech1
"in fact, they mine altcoins and turn them into XMR on the fly" sound like MoneroOcean to me
-
sech1
They need to describe better where exactly they mine, what algorithms and who converts it to XMR for them
-
tevador
yeah, if they are mining some CN shitcoins on MoneroOcean and converting to XMR, that could work
-
tevador
or it could be a scam, who knows
-
tevador
even if it's legit, it's likely their rewards will gradually decrease to 0 as CN is phased out
-
needmonero90
-
needmonero90
Pls confirm
-
hyc
yes
-
hyc
all the girls and boys
-
tevador