The Mudcat Café TM
Thread #86040 Message #1597604
Posted By: JohnInKansas
04-Nov-05 - 05:24 PM
Thread Name: Tech: Sony Audio CDs INFECTED
Subject: RE: Tech: Sony Audio CDs INFECTED
Ron -
The Sony rootkit hides files with a particular filename structure. Once the Sony rootkit has hidden them, another malware can use the same filename type to conceal itself, without the need to separately install its own rootkit. This is a TREMENDOUS OPENING for other malware, and the ability to exploit it HAS BEEN SHOWN.
Common criteria for defining malware are:
1. It is installed without the users permission. 2. It is installed without informing the user. 3. It attempts to conceal itself from the user. 4. It is not easily removable.
The Sony "program" fails on all counts.
For the Sony program, one may add "It damages the OS and/or other programs if you attempt to remove it."
This crap meets ALL common and widely accepted criteria for MALWARE.
In addition, using a root kit is a change to the Operating System at a pretty fundamental level, and goes well beyond just "installing a program."
In addition, it causes demonstrable effects on the entire OS, and can disable other functions in other programs. (Specifically it disables existing device drivers and substitutes its own hidden ones, without necessarily making the new drivers accessible by all other programs.)
In addition, as noted above, it defeats security processes critical to maintaining protection against OTHER MALWARE.
I understand the needs and the difficulties associated with secure DRM, and I fully support the right of artists to be paid; but this is MALICIOUSLY APPLIED STUPIDITY.
It has been asserted that it violates British law. It remains uncertain whether the US, except in a few local jurisdictions, has any laws specifically prohibiting it; but that's just because the "media" here have far too rich a lobby and we have few literate legislators not being bought off by them. (Sarcasm intended. It's really just because we're stupid.)