The Mudcat Café TM
Thread #86040   Message #1640482
Posted By: JohnInKansas
03-Jan-06 - 02:07 PM
Thread Name: Tech: Sony Audio CDs INFECTED
Subject: RE: Tech: Sony Audio CDs INFECTED
GUEST -

(Note that only Windows systems are vulnerable.)

This is NOT strictly true. The original Sony DRM installed additional files on Macs, and there have been reports that attempted removal of their "program" may cause damage to Mac operating systems. At least one report that I've seen claims that the first Sony DRM installed unwanted and hidden files on a Linux system that affected OS functions.

I'm not sure, but I believe that the Run command you provided only checks for the ORIGINAL DRM program installed by the first set of CDs that Sony released.

Their "improved version" that they released on a later batch operates differently. The second version is closer to what the first version did to Macs - creating new user identities with privileges that can cause security breaches in the OS - that can be used by anyone who wants to use them with malicious intent.

I've seen no comment on what the second version may do to systems other than Windows, but you cannot just assume that those recordings don't attempt to install something you don't want on other OS machines. I've left it up to those using non-Windows systems to do their own research - but ignoring it isn't research.

You should be safe in using Sony blank CD disks, since this malware has been found only on pre-recorded (commercially released) music CDs by the performers listed in the above posts, or at links that have been given above in this thread.

Microsoft has declared that the original Sony DRM is spyware according to the definitions that they use, and the Microsoft "Malware Remover" will take it out. This is a "beta" program that I think you have to sign up for, and so far as I know is only available for WinXP SP2 users who are also signed up for Automatic Updates, but those not in that category can check it out at the Microsoft security pages.

John