Search:  

 
 
   News
newer
story category When DRM Goes Bad
DRM uses rootkits and opens the door to malware
(old news - 04:57PM Monday Oct 31 2005)
tags: security · software
Users in our Security forum point to an entry over at the Sysinternal's blog that explores a DRM (digital rights management) implementation that goes a little overboard. The DRM - used by Sony Music and created by "First 4 Internet" - uses rootkit techniques to hide various kernel objects from view. The DRM uses a kernel device driver to hide filename and registry names beginning with '$sys$' from view, and any removal attempts disable the cd. Perhaps the biggest problem is the DRM opens the door to unwelcome malware.

Related:
  1. Monday Morning Links
  2. Firefox Add-On Simulates Great Firewall Of China
  3. Zone Alarm Pro Free Just For Today
  4. Microsoft Discontinuing OneCare
  5. Using PS3's To Forge Site Certificates
  6. Wednesday Evening Links
  7. FoxNews.com Serving Up Infected Ads?
  8. Uh, Mom? The Air Force Just Attacked Our PC
Forums » When DRM Goes Bad
view: topics flat text 
Post a:
page: 1 · 2
mishaq
Premium
join:2004-01-24
Richardson, TX
clubs:

1 edit

And secretly

DRM is just a front for the GOVERNMENT to install their monitoring software on our PCs.
--
Damn you FCC!

jstep73

join:2004-02-28
Rock Island, IL

Re: And secretly

Must....make...more...tinfoil...hats.......

vliktor

join:2005-07-27
Philippines

Re: And secretly

Except that they're made of aluminum...

Jimmah123

@sympatico.ca

from:
dadkins See Profile

Re: And secretly

my god....no wonder my hats weren't working!
lswinney

join:2002-09-02
Pasadena, TX

Re: And secretly

said by Jimmah123 :

my god....no wonder my hats weren't working!
You have to connect a ground wire to the foil in order to drain the current that the signals create. Otherwise the foil acts as an antenna.
--
U.S. Out Of The U.N. - NOW!......U.N. Out Of The U.S. - NOW!
stufried
Premium
join:2003-10-13
Mark my words, we will see a trojan within the next couple of months which has a file name beginning with $sys$.
Joe123456789

join:2003-11-24
Des Plaines, IL
This is just as bad starforce

JoeOnSunset
Doublethink Is Doubleplus Ungood.
Premium
join:2002-11-25
Ormond Beach, FL

My favorite part is, according to the definitions agreed-upon and mentioned in a recent DSLR article, this IS malware.

This is precisely why we can't believe the industry line that DRM is harmless and for our own good. Microsoft and the TPM group are always saying, "trust us, this is about empowering YOU."

Funny that this time it was someone so big as Sony. Usually you see smaller companies trying to get away with rediculous intrusions like this (a la Blizzard Entertainment, who was mostly let off the hook in these forums.)

NyQuil Kid
8f The Nyquil Kid

join:2001-01-06
Brick, NJ
»en.wikipedia.org/wiki/Chicken_Little

[8F] The NyQuil Kid

JoeOnSunset
Doublethink Is Doubleplus Ungood.
Premium
join:2002-11-25
Ormond Beach, FL

Re: And secretly

»en.wikipedia.org/wiki/Nineteen_Eighty-Four

technick
Premium
join:2000-12-16
Loganville, GA

Absolute Crap!

That's just absolutely crazy. The folks over at Sony and First 4 Internet should be held liable for damage to pcs and potential compromise of trade secrets due to this DRM. Any program that tries to hide itself is just wrong.
Thaler
Premium
join:2004-02-02
Encino, CA

Re: Absolute Crap!

...and these people want to push "secure computing" onto us? Sorry, but when your current-day rights management could best be classified as a "virus"...why should we be letting you have hardware-level control over anything in our computer?
Kearnstd
Elf Wizard
Premium
join:2002-01-22
Mullica Hill, NJ
thank god for illegal P2P, oh wait they will never see the writing on the wall that DRM hurts business.
--
[65 Arcanist]Filan(High Elf) Zone: Broadband Reports

FLECOM
Bay Networks Freak
Premium
join:2003-03-03
Miami, FL

oooo, can i sue sony now?

can i sue sony now for hacking my pc if it does that crazy crap?

when will these people ever give up?

even if they made absolutely hack proof DRM blah blah, i can still hook the line out of a portable cd player or something to the line in on my sound card and hit record in sound recorder
--
BellSouth sucks
Thaler
Premium
join:2004-02-02
Encino, CA

Re: oooo, can i sue sony now?

said by FLECOM See Profile :

can i sue sony now for hacking my pc if it does that crazy crap?
Nope. Hidden EULA in the CD cover. Should the CD create complications for your computer, it's your fault.

cdru
Go Colts
Premium,MVM
join:2003-05-14
Fort Wayne, IN

Re: oooo, can i sue sony now?

AKAIK, clickwrap or shrinkwrap licenses have never officially been challenged in courts.
gatzdon

join:2002-10-25
Lake Zurich, IL

Re: oooo, can i sue sony now?

The courts upheld that Lexmark's shrinkwrap license/contract was enforceable. You can find it at the EFF's website.

cdru
Go Colts
Premium,MVM
join:2003-05-14
Fort Wayne, IN

Re: oooo, can i sue sony now?

said by gatzdon See Profile :

The courts upheld that Lexmark's shrinkwrap license/contract was enforceable. You can find it at the EFF's website.
I beleive you are referring to the Lexmark v. Static Controls case where Static Controls "reversed engineered" the chip that allowed aftermarket inkjet cartridges to work in their printers. You are right that it was decided in favor of Lexmark, however it was overturned on appeal and the SCOTUS has denied hearing the case. More info here.
--
"What gives them the right to come in and do this?" she said. - Lady complaining that she was getting FIOS in her backyard.
gatzdon

join:2002-10-25
Lake Zurich, IL

Re: oooo, can i sue sony now?

said by cdru See Profile :

said by gatzdon See Profile :

The courts upheld that Lexmark's shrinkwrap license/contract was enforceable. You can find it at the EFF's website.
I beleive you are referring to the Lexmark v. Static Controls case where Static Controls "reversed engineered" the chip that allowed aftermarket inkjet cartridges to work in their printers. You are right that it was decided in favor of Lexmark, however it was overturned on appeal and the SCOTUS has denied hearing the case. More info here.
Aside from the fact that your article predates the 9th Circuit Court Ruling, always go to the source, articles sometimes miss the real message.


»www.eff.org/legal/cases/ACRA_v_L···ling.pdf

The court upheld that Lexmark's shrinkwrap license on their so called Prebate printers was valid and enforceable. While the court did agree that the third party manufacturer was not party to that license, they did imply that Lexmard could sue their consumers when they violate the license by not sending the empty cartridge back to lexmark or by using a third party cartridge in the Prebate printer. It's a very discouraging read.
--
$100 placed at 7 percent interest compounded quarterlyfor 200 years will increase to more than $100,000,000 --by which time it will be worth nothing.- Lazarus Long

Jason Levine
Premium
join:2001-07-13
USA
My problem with those a EULA like that is that the user can't read it and agree to it before opening the package. And once you've opened the CD case, good luck returning it if you don't agree to the EULA.
Thaler
Premium
join:2004-02-02
Encino, CA

Re: oooo, can i sue sony now?

said by Jason Levine See Profile :

My problem with those a EULA like that is that the user can't read it and agree to it before opening the package. And once you've opened the CD case, good luck returning it if you don't agree to the EULA.
Hehe, I didn't say I agreed to it, but rather, that's just how things are.
Sgtslaughtr

join:2005-08-29
Knox, IN
I wonder if some 12 year old from scandinavia made a virus that told you in a lengthy EULA that this program would erase all your .mp3's or .jpg's and corrupt your boot record, would that also be your fault for not reading the EULA?
Thaler
Premium
join:2004-02-02
Encino, CA

Re: oooo, can i sue sony now?

said by Sgtslaughtr See Profile :

I wonder if some 12 year old from scandinavia made a virus that told you in a lengthy EULA that this program would erase all your .mp3's or .jpg's and corrupt your boot record, would that also be your fault for not reading the EULA?
Probably. After all, that is ad/spy/malware's primary legal defense...and it seems to be working.
stufried
Premium
join:2003-10-13
Or better yet, some phisher in Bulgaria wrote a "free software" program which contained a EULA stating that he was authorized to use your PayPal account, Amazon account,and web banking account to help compensate for his efforts.
Kearnstd
Elf Wizard
Premium
join:2002-01-22
Mullica Hill, NJ
does holding down shift work? or turning off autoplay?
--
[65 Arcanist]Filan(High Elf) Zone: Broadband Reports

owenhome
keeper of the magic blue smoke
Premium
join:2002-07-13
Bentonville, AR

Re: oooo, can i sue sony now?

Be very careful. Saying that can get you locked up. Look at the poor SOB who came up with that in the first place.
--
Never argue with a fool, people might not know the difference.

GOLFnSUN
Enjoy the sun
Premium
join:2002-03-03
Avalon, NJ
·Sprint Mobile Broa..
·Comcast


2 edits

Never buy a Sony CD ever again; BOYCOTT SONY

Not that I buy any CD's anymore since my music CDs are all from songs recorded in the 50's and 60's. But I would never buy a CD from Sony ever again.

Aside from any lawsuits filed, BBR should do something useful and push a boycott of all SONY products until they reverse their rootkit DRM CD tactics.
--
--
Join Red Room Forum
My Web Page
ross

join:2000-08-16

Re: Never buy a Sony CD ever again; BOYCOTT SONY

How would we know they were complying? Really...

GOLFnSUN
Enjoy the sun
Premium
join:2002-03-03
Avalon, NJ
·Sprint Mobile Broa..
·Comcast

Re: Never buy a Sony CD ever again; BOYCOTT SONY

said by ross See Profile :

How would we know they were complying? Really...
Because if they still continue to do things like that, someone like the person in the news item above will figure it out and it will be publicised.
--
--
Join Red Room Forum
My Web Page

Kilroy
Premium,MVM
join:2002-11-21
Sterling Heights, MI
·WOW Internet and C..

I believe you have it all wrong. We should buy lots of Sony CDs and then return them to the store opened because they would not play on our machines. This will cause Sony to put large bright stickers on all CDs with this garbage calling attention to their protection.

Next, sue Sony, and any other members of the RIAA or MPAA who try this, because they installed software to a computer without the consent of the owner and they offer no way to remove it.

They (RIAA/MPAA) are trying to change a business model that has been around for over half a century. Consumers are under the impression that once they purchase something they can copy it to use it on a different device. This has gone on for years. Now they (RIAA/MPAA) want to stop it. Too late.
--
I have two favorite sports teams, University of Michigan and whoever is playing Michigan State.

boycottsony

@dynamic.cov
I will NEVER buy anything from Sony again...no music, no computer, no camera, no dvd player, NOTHING!
xrobertcmx
Premium
join:2001-06-18
Sterling, VA
clubs:
·Verizon FIOS
·Comcast

My girlfriend picked up a Sony CD

A while back, when she asked me why it wouldn't play on her work PC I figured it was DRM. When she tried to load it on my PC I took it out and told her no way. It shouldn't specify that I need to agree to a three page document to play, and I'm not installing anything just to listen to it.
I've bought cd issued by an RIAA label (New Order on Warner Music) since 02 and I don't plan on buying anymore anytime soon. One was enough when it forced me to play it using only Windows Media Player. Sorry guys, you want my business lose the label. There is too much good music out there on indy labels for me to worry about DRM ladened CDs that install memory hogging restrictions to my usage. Besides why would I install a program on my own machine to limit my usage. I can google to find a work around if I really care.
--
4 More years and we won't have a country.
Techie714

join:2005-08-02
Anaheim, CA
·ViaTalk

Welcome to Root Kits People

Those of you not familiar with root kit technology should read up on it. This is some VERY nasty stuff that hides itself from many scanning programs. It hides itself by literally "becoming" a part of the OS inside the kernel....It's VERY bad stuff.

»en.wikipedia.org/wiki/Rootkit
Kearnstd
Elf Wizard
Premium
join:2002-01-22
Mullica Hill, NJ

Re: Welcome to Root Kits People

would making an extremely limited user account prevent this stuff from being run and just allow the music to be played?

or are we better off just using the line in feature and some freeware recording software nowdays since the RIAA wants to hack our computers in the name of holding onto their 1950s business model.
--
[65 Arcanist]Filan(High Elf) Zone: Broadband Reports
JoeSchmoe007

join:2003-01-19
New York, NY

Why is this a problem?

Just disable Autorun on your system - problem solved. You should do this immediately after you install OS anyway.

cacroll
Eventually, Prozac becomes normal
Premium
join:2002-07-25
Martinez, CA

Re: Why is this a problem?

said by JoeSchmoe007 See Profile :

Just disable Autorun on your system - problem solved. You should do this immediately after you install OS anyway.
I happen to LIKE Autorun. It does things for me that I don't want to disable.

I'm not going to cripple MY system simply because Sony and Apple are fighting, and because Sony has their heads up their arses.
--
Cheers,
Chuck
MS-MVP [Windows - Networking]
PChuck's Network

DiscardedVet
Premium
join:2005-04-06
Sturgis, SD

Rootkit Revealer

Ditto with Mantis_1 about rootkits being nasty little buggers. Sysinternals offers a Rootkit revealer, available here ........

»www.sysinternals.com/Utilities/R···ler.html

Download [bottom of above page]:

»www.sysinternals.com/Files/Rootk···aler.zip

DV
--
Bush is the Prez....Think Patriot Act II....This outspoken dissident....In jail I'll be too.

Oleg
Bellsouth Fastaccess
Premium
join:2003-12-08
Birmingham, AL

Re: When DRM Goes Bad

People still will find way to un protect CD protection it's just not gonna work no meeter how hard they try

peter_m
Premium
join:2005-07-13
Canada, QC

Re: When DRM Goes Bad

Doesn't that move from SONY justify downloading MP3 over spending money for a booby-trapped CD???

KeepOnRockin
Music Lover Forever
Premium
join:2002-11-08
Beaverton, OR

That Ain't Good

It would seem that the RIAA would never want their "DRM" associated with any type of PC backdoor, virus, malware, or rootkit.

It's just another PR nightmare to a technology that people aren't exactly embracing now.

bull_sht

@airband.net

Re: That Ain't Good

This is a complete outrage to anyone who uses a computer and purchases music!

I will never buy a CD from Sony until they remove this rediculous DRM bullsh|t!

Why companies think it's OK to put their crap on my system in a vain attempt to protect their copywrited works is something I will never understand.

This software is akin to the bullsh|t starforce driver for some PC games. Funny thing is... THEY HAVE AN UNINSTALLER FOR STARFORCE!!

The thing that really has me pissed is the fact that even when a CD is not being played, you still take a hit on CPU and resources.

We need to boycott Sony HARD on this one! Let them know your pissed and this is a violation of fair use.

Give them hell like we gave Intel hell when they tried their PROCESSOR ID bullsh|t!!!

»esupport.sony.com/EN/feedback/feedback.html

cacroll
Eventually, Prozac becomes normal
Premium
join:2002-07-25
Martinez, CA


1 edit

Re: That Ain't Good

said by bull_sht :

Give them hell like we gave Intel hell when they tried their PROCESSOR ID bullsh|t!!!

»esupport.sony.com/EN/feedback/feedback.html


The link which you provided gives a long menu of Product Support contacts. Here is a more direct link which may be useful.
»www.sonymusic.com/about/feedback.cgi
--
Cheers,
Chuck
MS-MVP [Windows - Networking]
PChuck's Network

anonpronman

@dsl.net

This Explains Everything

OMG explains why I'm having all the problems with my computer.. I followed the step mentioned by mark over at sysinternals and indeed Sony has Rooted my Machine.

I'm having Frequent crashes after the purchase and install of that cd... When i call Sony for support on my dell they talk to me like i'm an idiot..

Where can i turn?

staticx57

join:2002-01-24
Toms River, NJ
clubs:

Re: This Explains Everything

reformat and reisntall and never buy sony cds.

Pz_

join:2001-03-31
Brownsburg, IN
clubs:

Re: This Explains Everything

I still buy blank Sony CDs.
OZO
Premium
join:2003-01-17

Re: This Explains Everything

said by Pz_ See Profile :

I still buy blank Sony CDs.
Yes, you will do it. Until some day you'll discover that all stuff you've written to those CDs belongs to sony... Did you read EULA that say about it with an extremely small font? The one that is hidden by a rootkit beneath recording layer

No seriously, it reminds me case with Intuit and Turbo Tax. And I just wish it to end up the same way.
--
Keep it simple, it'll become complex by itself...
bigboy

join:2000-12-04
Palo Alto, CA

More experiences -- from a consumer perspective

Check this blog out on his adventures with this same DRM crap.

»bigpicture.typepad.com/

Harddrive
Premium
join:2000-09-20
Norwich, CT

Re: More experiences -- from a consumer perspective

lol, that's funny!:D

"If you have a Mac computer you can copy the songs using your iTunes Player as you would normally do."

guess us PC users loose out on that one.

Boomerang86
Got FUD?
Premium
join:2002-10-18
VampireState
clubs:

That's it!

I'm selling my VAIO desktop. Sony sucks!
--
Life is a journey; death is a given.

ssj4android
Redefining Reality

join:2002-04-14
Wyoming, MI

And why shouldn't we pirate the stuff now?

Traditionally, people would be worried about getting a virus from a P2P network. Now, people have to worry more about getting a virus from a CD they bought than getting a virus on some P2P network.

nohelpWA

join:2001-12-06
Federal Way, WA

SONY is a four letter no-no!

We don't own anything with the Sony name! The one time that a Sony was ever purchased (1972) it was a small color tv. We liked it so much that we recommended that my parents get a big beautiful expensive color console tv. It lasted one day and Sony refused to fix it, it has been a big beautiful expensive catch-all since then. Just don't buy ANY of their products and see how long they can control and monopolize the markets.
Rmus

join:2005-03-26

Re: SONY is a four letter no-no!

Let Sony know how you feel...

»www.sonymusic.com/about/feedback.cgi
phaqu

join:2005-05-26
Marietta, GA

Re: SONY is a four letter no-no!

The thing is, just because it doesnt say sony on it, doesnt mean sony didnt make it. ( or a LOT of the parts for it)
DSLdewd

join:2004-06-05
Denver, CO

DRM

The layers of crappy DRM just keep growing. Wait till windows Vista comes out with its crappy DRM that none of our current machines will even run. We will even have to replace our monitors to get that POS to work.
Galvage

join:2004-02-11
Taconite, MN

Re: DRM

I just follow the rule of don't buy sony labels. We need to create a petition of users that will not buy sony. That way when sony sees how many people will not buy because of this DRM they will be forced to change.

powerage66
Premium
join:2004-01-06
Seminole, FL

Re: DRM

Just great...my favorite band is with sony. Well AC/DC, it's time for y'all to find a new record label.
--
"I'm the lightning bolt in the middle". - Bon Scott

clank

join:2005-07-04
spain
go one step further, come up with a "sticker logo", I´ll share them around here!
Pictor Guy

join:2004-06-21
Sammamish, WA

Let them know how you feel

This is time to let them know...

»Comment on the DMCA

G_Poobah

join:2004-01-17
Schenectady, NY

They are correct

Especially Retire_Rich aka Capitalist, etc.

I mean, we are all criminals according to the corporations. Why should you be surprised they do this stuff, it's only done for your own protection, and to keep prices down. Remember, they DESERVE to make a profit, and if all you criminals fail to purchase the same item 3-4 times, you DESERVE to go to jail.

If you don't like it, don't buy it.

* WARNING: The preceding comment was SARCASM for those lacking the intellectual brain cells to understand it. In reality, I think that SONY and their ilk are dumbasses, who don't deserve anything. WARNING: Dr. Smith. The Preceding Comment WAS SARCASM. Please look up SARCASM in the dictionary before you post "you are all thieves" Mr. Capitalist and his good squad of Intelligent Design Morons.
--
Grand Poobah
jpark

join:2005-02-05
Jackson, TN

Encouraging file swapping?

This makes no sense at all. Most DRM stuff is foolish, but this is actually counter productive.

Why would anyone place something on their computer deliberately which will damage their computer?

So if John Q. Uprightcitizen wants to purchase product A to play on his computer, but can't because product A is packaged in such a way at to damage his computer, would anyone be surprised if he obtains product A through a sharing network without the package bomb?

Vvian Kalyss

join:2003-10-14
Stage 5.0
clubs:

Re: Encouraging file swapping?

I foresee a class action lawsuit in Sony's future.

"oh noes becuz of s0ny my computer is teh br0ke."
--
Mikami Vvian, resident Girlfriend of Steel, care of the Tokyo-3 Middle Daughters Club
jdb8167

join:2001-07-08
Maynard, MA

People are suing Apple for scratches

People are suing Apple for scratches on an iPod but no one is suing Sony over this? We live in a very twisted world.

See 8 replies to this post
Forums » When DRM Goes Badpage: 1 · 2


Sunday, 08-Nov 23:04:27 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.