| | |
Genuine disadvantage for Windows users as WGA worm emerges
Just when Microsoft had hoped things could not get any worse after the whole Windows Genuine Advantage phones home scandal, things have. Much worse, as the newly discovered Cuebot-K worm disguises itself as something called Windows Genuine Advantage Validation Notification.
Intended as an anti-piracy measure, WGA has in fact been nothing less than a spectacular PR disaster for Microsoft and a huge pain in the ass for end users. So much so that Microsoft has issued a new less intrusive version just a month after the initial release, as well as publishing instructions for removing WGA completely.
However, the WGA specter is going to hang around to haunt Microsoft for some time it seems. Antivirus specialists Sophos reveals that Cuebot-K, propagated by way of the AOL Instant Messenger software, disables the Windows firewall and opens up a backdoor route for remote access, malware execution and potentially a distributed denial of service launch pad for good measure. Cuebot-K copies itself to the Windows system folder as wgavn.exe and then creates a file called \Debug\dcpromo.log and registers wgavn as a new system driver service with an automatic startup type.
The clever tactic being that because of all the fuss over WGA, technically aware users who keep an eye on the list of running services will not be overly concerned by the fact that WGA is there. Unless they are really technically aware and removed the thing already, of course. Guess what my recommendation is?
Intended as an anti-piracy measure, WGA has in fact been nothing less than a spectacular PR disaster for Microsoft and a huge pain in the ass for end users. So much so that Microsoft has issued a new less intrusive version just a month after the initial release, as well as publishing instructions for removing WGA completely.
However, the WGA specter is going to hang around to haunt Microsoft for some time it seems. Antivirus specialists Sophos reveals that Cuebot-K, propagated by way of the AOL Instant Messenger software, disables the Windows firewall and opens up a backdoor route for remote access, malware execution and potentially a distributed denial of service launch pad for good measure. Cuebot-K copies itself to the Windows system folder as wgavn.exe and then creates a file called \Debug\dcpromo.log and registers wgavn as a new system driver service with an automatic startup type.
The clever tactic being that because of all the fuss over WGA, technically aware users who keep an eye on the list of running services will not be overly concerned by the fact that WGA is there. Unless they are really technically aware and removed the thing already, of course. Guess what my recommendation is?
0
•
•
•
•
tough luck on all the AOHell pundits who're stupid enough to open messages with attachments and don't run AV software.
0
•
•
•
•
Unfortunately, like the drunk driver, it isn't just the stupid user who suffers from the result of their actions.
0
•
•
•
•
If you want to get rid of the Windows Genuine Advantage program and be able to update XP, just get the XP Validation CD from www.discmaster.info and run the Validation Utility.
The CD has all the working (latest) Validation tools, and includes tools to Validate Media Player 11 plus related Fix/Hack tools and info. Just click on http://www.discmaster.info/UK/tools.htm or http://www.diskmaster.info/USA/tools.htm
Hope this Helps!
The CD has all the working (latest) Validation tools, and includes tools to Validate Media Player 11 plus related Fix/Hack tools and info. Just click on http://www.discmaster.info/UK/tools.htm or http://www.diskmaster.info/USA/tools.htm
Hope this Helps!
Similar Threads
- Windows Xp Genuine Authentication (Windows NT / 2000 / XP)
- News Story: Windows Genuine 'Alas, what now?' (Upcoming News Stories)
- News Story: Is your Windows genuine? (Upcoming News Stories)
| Thread Tools | Search this Thread |
age amd analytics api apple avatar blog blogging bluegene broadband browser business cellphones chips command computers console copyright database dell developer development dos economy email encryption energy enterprise facebook firefox games gaming google government gta hardware ibm ibm.news intel intelibm internet iphone ipod laptop legal leopard linux mac malware medicine memory microsoft mobile news nintendo obama office openoffice opensource os pc politics prompt ps3 recession redhat registry root russia search security semiconductors software sony statistics stockmarket stocks sun supercomputer supercomputing technology technologystocks tiger trends tweaks twitter ubuntu unix verizon virus vista web webmail wii windows wireless working x86 xbox yahoo



