As I read it, they had a function to grab various bits of data from a specific machine that was linked to a specific cracker. Did it misfire and started to pilfer data from other unrelated machines?
Edit - for the record, the original post title was somehing like "Flightsimlabs attempts to explain their password-stealing DRM malware".