Slashdot Log In
Microsoft Misrepresenting WGA's Functionality?
Posted by
Zonk
on Sun Jun 11, 2006 05:33 PM
from the first-time-for-everything dept.
from the first-time-for-everything dept.
Legal Ethics writes "According to an article on Groklaw, Microsoft is misrepresenting what the Windows Genuine Advantage (WGA) tool is to pressure people into installing it. It comes with no uninstall, it fails to disclose many pieces of information it provides to Microsoft, and it misrepresents itself as a 'critical update' when it does not address any security vulnerability, although it remains to be seen if it can create one. ZDNet has a series of screenshots so that you can see exactly how badly it misrepresents itself. Oh, and it also checks for updates, so Microsoft can presumably execute arbitrary code on any machine with it installed, merely by making that code part of a WGA update."
Related Stories
[+]
IT: WGA Turning Off PCs in the Fall? 857 comments
thesaint05 writes "We all know about Microsoft's WGA initiative that started last July. Most of us were troubled to learn that the WGA has been 'phoning home' to Microsoft at every boot. Well, get ready, because eventually Microsoft may be turning off copies of Windows without WGA installed. According to a Microsoft technician, 'in the fall, having the latest WGA will become mandatory and if its not installed, Windows will give a 30 day warning and when the 30 days is up and WGA isn't installed, Windows will stop working, so you might as well install WGA now.'" A new version of WGA was released on Tuesday and, at least for the time being, Windows users have the option of removing WGA from their systems.
[+]
Download From Microsoft Without a WGA Check 195 comments
Anonymous Coward writes, "When you want to download a file from Microsoft, a WGA (Windows Genuine Advantage) check is performed. Microsoft installs a small piece of software on your computer that contacts the Microsoft server and checks the validity of your installed Windows software. If the test fails you will not be able to download the file(s). The following method gives you the ability to download every file from Microsoft without a WGA check."
This discussion has been archived.
No new comments can be posted.
Microsoft Misrepresenting WGA's Functionality?
|
Log In/Create an Account
| Top
| 458 comments
(Spill at 50!) | Index Only
| Search Discussion
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Un-American (Score:3, Funny)
.
We also know that Linux is a European consipracy to attack our computers [shelleytherepublican.com].
This story was probably planted by GOOGLE [shelleytherepublican.com], the America-hating empire.
Bill Gates is a true patriot who has spread the American Way of Freedom and Capitalism around the world, and he is clearly far cleverer than this mysterious "P" "J". Friends, don't let the democ-rat lies stop you from getting the facts
Re:Un-American (Score:5, Funny)
Re:Un-American (Score:4, Insightful)
(http://www.cuespace.com/ | Last Journal: Monday November 07 2005, @08:48PM)
Why punish legit users? (Score:5, Insightful)
Re:Why punish legit users? (Score:5, Insightful)
swich to something better, nobody is forceing you to use microsoft's product http://linux.com/ [linux.com]
Re:Better... (Score:5, Insightful)
(http://hackwrench.tripod.com/ | Last Journal: Sunday September 18 2005, @02:32PM)
Re:Trade-offs (Score:5, Interesting)
(http://ekj.vestdata.no/)
The same is true the other way though. I'm currently for practical reasons running Windows on my laptop (because current employer runs that, and it just ends up being easier overall getting the job done.)
Privately, it drives me nuts, I regret not having made the thing dualboot.
There's no Kphotoalbum, picasa is available from Google, and tries to solve sorta the same problem, but frankly it doesn't measure up. It has lots more eyecandy but much less funcionality. I'm not aware of any other sub-$1000 program even playing in the same ballpark.
Mail clients is a hassle. Thunderbird is barely acceptable, yet fails to manage a lot of stuff I've been taking for granted for years. Simple stuff that mutt, pine and kmail all manage. Yes, it's possible it can be convinced to do something similar, but atleast it's not equally trivial.
Development-tools all have to be installed manually. And they tend to be more opaque than I'm used to. When they fail, they do so with much less information that migth help. Frequently the best advice amounts to "reinstall".
One can install CygWin, but the tools under cygwin are a lot less polished than under a real *nix.
Re:Better... (Score:5, Insightful)
Re:Why punish legit users? (Score:4, Funny)
(Last Journal: Wednesday October 24, @03:50AM)
1. Download Knoppix iso
2. Burn iso to CD
3. Reboot computer with CD in drive
4. Use Linux
5. If you like it, open a shell and type "knoppix-installer" to make it permanent
6. ???
7. Profit
Baby steps -- not cold turkey (Score:5, Interesting)
(http://slashdot.org/)
Next, once you're comfortable with configuring a live-CD, back up your data and do a dual-boot install. Use linux as much as you can stand it, then switch back to Winderz for the few must-have apps. If you hate it, dump linux and you'll have a fresh Windows install that may run well for a few months. ;-)
Once you convert to OSS versions of most of your apps, and are comfortable with linux being your primary environment, back up your data then install a 100% linux install. Then, for those few clingy win32 apps, try using Wine (a mostly bitter pill, but it does some stuff well) to run the apps. Failing that, try Qemu. If *that* fails, try VMWare or Win4Lin.
Eventually, a few months down the road (or a couple of years, even), you may decide that the stability and reliability of Linux outweighs the win32 baggage and you either find linux equivalents you really like or you "settle" for something not 100% what you'd prefer.
I began the above transition about 7 years ago (except live-CDs weren't around). Took about 2 years. Games kept me dual-booting for about a year... until a wife and kids took more of my time and I decided that silly free games (nethack and xmame) were enough for the occasional video game fix. Then Quicken and Turbo Tax kept me using VMWare for about a year. I replaced Quicken with GnuCash for a year or so, then I ditched it for a simple spreadsheet checkbook balance sheet. By that time, I was beyond the simple tax returns, and I decided that $200 yearly H&R Block trip was less painfull than the $50 TurboTax and several hours of punching in stuff. (Also, the whole anti-piracy FUBAR for Turbo Tax in the late 90s turned me off Intuit.)
So I've been 100% Winderz free for 5 years, and I'll never go back. I don't put up with DRM or anti-piracy shit any more. If I doesn't run on Linux (now, FreeBSD/amd64), I find something else to use.
Freedom... indeed!
Re:Baby steps -- not cold turkey (Score:4, Interesting)
The bonus is:
1) He still has his Windows machine to fall back on in case he needs to go and read documentation when he biffs his linux installation, play games, or do other windows specific stuff without having to shut down and start up and shut down and etc.
2) There is no need to fret about screwing up everthing on his Windows machine because there's no need to format or partition or anything.
3) He can experiment with using a network to make his two computers get along and do stuff that he just couldn't do before, and learn tons about both operating systems in the process.
With the crap most geeks keep around another computer could be had or built for little to nothing... It's stupid to dual boot unless you're trapped on Antartica where you can't get a few measly parts in the time available (?), or you're so desperately poor that $50 means the difference between having a roof over your head or not.
Re:Why punish monopolies? (Score:5, Informative)
I find your remarks a little odd considering:
If those are actually representative of your needs as a Windows user than you wouldn't have a problem moving over to Linux. If they aren't representative of your needs then get better examples and ask yourself why you chose those examples in the first place.
Re:Why punish monopolies? (Score:4, Interesting)
(http://stinerman.livejournal.com/)
Better yet, it runs on straight Wine [winehq.org] with a few patches.
Re:Why punish legit users? (Score:5, Informative)
(http://www.fone-me.com/)
disconnect from the internet
open task manager
kill the process 'wgatray'
rename the file c:\windows\system32\wgatray.exe to something else (wgatray.exe.bastard, for example)
There is also a file called wga.dll, or similar, but i didn't do anything with that, if anybody could shed some light on that, it'd be nice. I did the above on a machine that was wrongly reporting as 'pirated', and it worked fine.
A link for the rest of us. (Score:5, Informative)
(http://en.wikipedia.org/wiki/Exploding_Whale)
Re:Why punish legit users? (Score:5, Informative)
On the other side is that MSFT could solve a lot of their problems just be creating an easy, basic way to enforce security. Unix did that years ago on Unix you have basic file system level defaults seperating users. Then you can use other programs to create an ultra fine grained control.
Under Windows all you have is a very complicated fine grain control system that a massive percentage of the apps break if you use it.
Kill off Active X and add a simple yet effective file seperating on the Filesystem layer and the majority of windows viruses problem will vanish. It won't solve all things. it won't solve stupid users installing things they shouldn't, but It would stop most of those problems instantly.
It's also the one thing MSFT won't do. Not even with Vista. They are keeping activeX and while they are trying to use their fine grained permissions control as a basic level they are finding that it doesn't work well. (just look at all the reviews on the vista Beta, 7 steps to delete an icon?)
Re:Why punish legit users? (Score:5, Informative)
(http://zcat.wired.net.nz/)
Option one:
Start in safe mode and find the file
file properties and remove the execute and write permissions for all users
including System. The daily checkin and the WGA System Tray tool are both
started from this DLL so making it non-executable kills the whole WGA
Notification system. Making it read-only stops windows update from 'repairing
it' and installing future versions.
Option two:
Download and burn Ubuntu Dapper Drake or order a FREE CD from
shipit.ubuntu.com (downloading is quicker). Back up your important documents and
completely replace Windows.
Personally I chose option two many years ago, but I continue to watch Microsoft's antics with a degree of detatched amusement.
Re:Why punish legit users? (Score:5, Insightful)
Because Microsoft has never been punished for doing so.
Somewhat obvious. (Score:5, Informative)
It's a damned-if-you-do and damned-if-you-don't situation...
Re:Somewhat obvious. (Score:4, Interesting)
If you choose the 'Expert' installation option, you have the option of not installing the WGA update, Windows Update then asks if you'd like to turn off notification of that particular update.
That is, of course, what I did.
Of course, for all I know, WU goes ahead and installs it anyway.
That's interesting (Score:4, Interesting)
(http://www.poromenos.org/)
Isn't this a violation of spyware laws? (Score:5, Insightful)
(Last Journal: Tuesday November 06, @02:39PM)
Re:Isn't this a violation of spyware laws? (Score:5, Insightful)
(http://www.bleepsoft.com/)
Microsoft is not a company, go to any state building or federal building in the nation, and find out what they're running. You're talking about a corporation that has settled antitrust lawsuits with licenses and lockin [com.com].
If Sony doesn't get it's ass handed to them for rootkits, why would you think Microsoft would receive any punishment at all?
huh (Score:4, Insightful)
Re:huh (Score:5, Insightful)
(http://www.brynmosher.com/ | Last Journal: Monday August 27, @10:15PM)
It's Spyware by any definition (Score:5, Insightful)
the question is when are the anti-malware community going to step up to the plate and provide protection from this software
the fact its made by Microsoft should be irellavent, just analyse the behaviour of the application and judge it on that
communicates unique information at any time to an American based advertising company (msn anybody?) with you the user having no idea of what data and what the implications are of giving this company that data
can your business really risk an application like this on your systems ? are you prepared for the consequences of letting this program run unchallenged inside your companies infrastructure ?
How to Disable the WGA Add-on (Score:5, Informative)
(http://dondueck.wordpress.com/ | Last Journal: Tuesday April 04 2006, @11:09AM)
If you want to be able to disable the Genuine Windows Advantage Add-on for IE (accessible via Tools|Manage Add-ons... in IE), you might be surprised (or not) to see that Microsoft will not let you do so. It gives you some sort of stupid "disabled by Administrator" message, even when you're logged on as Administrator (I guess MS thinks it's the administrator for your computer).
To enable the radio button that allows you to disable this worthless add-on, follow these instructions I found:
Bypass & Disable Genuine Windows Validation Ch (Score:5, Informative)
(http://dondueck.wordpress.com/ | Last Journal: Tuesday April 04 2006, @11:09AM)
How to bypass and disable the Genuine Windows Validation Check (from http://www.mydigitallife.info/2006/03/07/bypass-an d-disable-genuine-windows-validation-check/ [mydigitallife.info]):
Note: The data.dat that are replacing the original data.dat can be blank text file or empty, or you may type whatever you want there.
With this hack (or crack if you want), Windows WGA piracy check will be bypassed and you can now download software from Download Center or apply updates from Microsoft/Windows Updates.
Re:Bypass & Disable Genuine Windows Validation (Score:5, Insightful)
(http://www.no2id.co.uk/)
That, OR (Score:5, Informative)
Damn that stupid icon. (Score:3, Interesting)
(http://www.winsucks.com/)
Why would I need to re-verify my installation anyway?
Critical Security Vulnderability Reported... (Score:5, Funny)
(http://www.soundepartment.com/)
A Critical Security Vulnerability has been reported for all x86-platform PCs.
Short description: By retailing a piece of software called an "Operating System" to a computer user, and then using social engineering to promote the installation of this software, a so-called "Operating System Vendor" may be able to execute ARBITRARY CODE on a user's computer.
I don't understand... (Score:4, Insightful)
(http://gmail.com/)
Windows not HIPAA compliant? 1234567890 (Score:5, Interesting)
Since Windows is sending information home, and the user has no control over that messaging with regard to timing or content, it seems to me HIPAA-compliant systems (and other systems requiring security) cannot be built on Windows.
What an opportunity for the open source world!
Re:So, Does it work yet? (Score:4, Interesting)
Plus it does not work correctly... (Score:5, Interesting)
(http://www.restorationunity.com/ | Last Journal: Tuesday July 05 2005, @08:12AM)
http://forums.microsoft.com/Genuine/ShowPost.aspx
Notice the MS solution, delete this, open up all permissions on that (good idea?), read, write, execute, delete for everyone! Or pay-up to get your copy of MS Winders to shut up.
Nothing like family (non-admins) and employees (non-admins) thinking they have purloined software. Isn't an unfounded accusation called, "Libel" http://dictionary.reference.com/search?q=Libel/ [reference.com]?
(My SuSE never accuses me with false accusations.)