[nmglug] Sony RootKit

Lee lee at dosmanosjewelry.com
Fri Nov 4 17:42:18 PST 2005


It installs driver filters which prevent you from making more than one 
copy of the CD. The ugly part is that it also installs a root kit which 
hides the driver filters in a very stupid way. The rootkit conceals any 
directory, file or application with a name which begins with $SYS$, not 
limited to the driver filters, so once you are rooted, you are wide open 
to the world for malware.

You can remove the rootkit, but once you do, your CDROM drive will be 
inoperative until you also remove the driver filters. Or so I have 
read.  I guess Sony has a website which will remove the rootkit and 
filters, but how much trust should you place in a corporation that roots 
its customers in the first place?

Sony should be sued!

Lee

Ravi Kumar wrote:

>Actually what does the rootkit do ? Does it scan the harddisk for
>information and send it back to sony or something? I am a linux user
>and so I couldn't know.
>
>Ravi
>--
>http://linuxhelp.blogspot.com
>
>On 11/5/05, Ken Long <KenGLong at comcast.net> wrote:
>  
>
>>I've been checking into this and it seems that Sony is now
>>offering a tool to remove the rootkit and all software that was
>>installed after inserting a protected audio CD in a Windows PC.
>>You have to fill out a web-based form with your email info and
>>the reason you want to remove the software from your PC. I said
>>something to the effect that I no longer trust Sony Music and I
>>don't want their software on my PC for any reason.
>>
>>This tool is only available online and uses Active X controls so
>>you need Internet Explorer to use it. I don't actually have the
>>software on my PC and the tool gave me an error message when I
>>tried to use it. I was hoping to download a utility that could
>>be run multiple times on different PCs but it seems they're
>>rather paranoid and want to maintain some measure of control
>>over the uninstall (my opinion.)
>>
>>Ken Long
>>Albuquerque
>>
>>
>>On 3 Nov 2005 at 9:39, Andres Paglayan wrote:
>>
>>    
>>
>>>good reading on why to use Linux instead,
>>>
>>>http://www.theinquirer.net/?article=27426
>>>      
>>>
>>_______________________________________________
>>nmglug mailing list
>>nmglug at nmglug.org
>>http://www.nmglug.org/mailman/listinfo/nmglug
>>
>>    
>>
>
>_______________________________________________
>nmglug mailing list
>nmglug at nmglug.org
>http://www.nmglug.org/mailman/listinfo/nmglug
>
>
>  
>





More information about the nmglug mailing list