Antivirus firms consider protection against Sony DRM rootkit

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS

Antivirus firms are considering protecting their customers from the digital rights management software used by Sony on some CDs.

Kaspersky Labs has classed Sony's DRM software as spyware because, among other things, it can cause crashes and loss of data and it can compromise system integrity and security.

Explaining its decision, Kaspersky said it used the definition of spyware provided by the Anti-Spyware Coalition. Sophos is similarly scathing of Sony and is calling the software "ineptware".

The issue reaches much further than the individual PCs of those users who buy particular Sony CDs, say the antivirus companies. The DRM software uses what is known as a rootkit, which means that it is invisible to the operating system, to most anti-virus and security software and to IT departments trying to cope with security on user's desktop and notebook PCs.

Furthermore, say the antivirus companies, the software can be exploited by hackers and viruses and used to cloak any file from the operating system.

"The Sony rootkit can be used to hide any files from the operating system, so we think the way that Sony has implemented this is somewhat flawed," said Graham Cluley, senior technology consultant at Sophos. "The danger is that other malware may come along which exploits the Sony rootkit."

Due to what Cluley said is a lack of malicious intent on Sony's part, Sophos is not defining the rootkit itself as malware, preferring instead to refer to it as ineptware.

"We don't really believe this is malware and so we don't currently detect it," said Cluley. However, he said detection for rootkits like that used by Sony will be built into Sophos Antivirus version 6, due out in 2006. "This is potentially unwanted...

For more, click here...

Talkback

Sony's rootkit DRM is the worst kind of business hubris. Just because you can, doesn't always mean you should.

via Facebook 4 November, 2005 18:11
Reply

I think that the message here is: why don't anti-virus firms detect and stop rootkits in general?

And in case you're wondering if you have one. Here's a free little and nice tool that you might find helpfull:

http://www.sysinternals.com/Utilities/RootkitRevealer.html

And you might want to go here as well.

http://www.rootkit.com/

via Facebook 4 November, 2005 22:39
Reply

I think the best thing we can do is boycott ALL Sony products. Let's start with the Playstation 2 and PSP and then move on to SonyBMG records. I'm sick of Sony trying to ram their proprietary formats down our throat rather than support industry/open standards. The list includes Minidisc, ATRAC, Memory Stick, Betamax, Blu Ray DVD, HiFD, DAT, Sony Dynamic Digital Sound, UMD, SACD, ATRAC3. Go to the Sony music download site connect.com - you can only download music in ATRAC3 which only works on Sony hardware. Until 2004 they refused to even support MP3 in their hardware. Luckily for us Samsung, LG and the Chinese will put Sony's Consumer Electronics business out of business.

via Facebook 4 November, 2005 23:02
Reply

Well.....seems like a prime time to boycott all Sony products.

via Facebook 5 November, 2005 06:17
Reply

Christmas to come (and many more) should be a "No SONY Christmas"

I am satisfied that the stealth-software installed by Sony is facilitating further stealth attacks from hackers by hiding other malware from AV software, that the stealth-software communicates with a Sony site, which allows for future intrusions by Sony, even if this appears currently not to be the case. To make a clear statement about the undesirability of worldwide brands intruding the private sphere of computer users and exposing them to risks, it is necessary that the public react strongly. Though I welcome attempts to protect IP, as long as it doesn't lead to excessive prices, the methods should be certainly not of an endangering nature. Sony clearly has failed to inform the customers of the nature of their protection kit, and the fact that Sony is unwilling to accept that their technicians have failed to observe careful programming must be told in no uncertain terms. Their arrogant attitude about the scandal they have created and their undiscerning approach must be exposed by the means available.

The above combined with all kind of other monopoly attempts by Sony make action absolutely necessary. We have already one monopolist in the world of computers that grossly abuses its position - because the legislators have failed to protect consumers, not because of the monopolist’s actions alone. Further monopoly creation must absolutely be fought with all the means of the public, namely with their purchasing habits, since there seem to be no other impediments built into our legislation that effectively prevents it. It’s actually perverse that in an apparently otherwise well functioning democracy the public has to take action because their representatives are unable or unwilling to protect them.

via Facebook 5 November, 2005 09:56
Reply

Sony and Philips have a long history of implementing restricive code into their audio products, from the DCC to the mini disk, and now the CD. None of these technologies benefit the honest consumer. I stopped buying Philips products after their use of copy protection prevented me from copying my own music. Now I will endevour to never buy a copy protected CD. Although I do already own several CD's which will only play on my twelve year old CD player

via Facebook 5 November, 2005 10:48
Reply

These DRM programs violate the entire reason for purchasing CD's over music downloads. That is, when copied onto your computer the bit rate is low and quality is poor. The DRM tracks included on CD’s are reminiscent of cassette tape quality. My computer is a major component in my stereo system, and I copy all my CD's with a high bit-rate, lossless codec. Why pay for CD's that will have low quality music when it would be more convenient to download them from Napster or iTunes. Furthermore, poor quality DRM software like Sony's should be recognized by antivirus software. It causes my computer to behave in unexpected ways and it limits my rights to listen to music that I purchased legally. I want to play my legally purchased music however I want for my uses. Period.

via Facebook 5 November, 2005 18:08
Reply

A good article on Sony, DRM in general, peoples rights...

http://tinyurl.com/bug2e

via Facebook 7 November, 2005 12:52
Reply

Hiding something says it all. It is bad.

anyway, the software patch available on the sony bmg site, which will remove the cloaking abality, is a full version install ..

via Facebook 7 November, 2005 15:16
Reply

Errr, Sony is far from alone with this DRM thing. There's Hollywood, Microsoft, others. Most likely because of the money involved in it for them. If you don't like DRM (rootkit or not) then you better start asking for regulations that require "DRM protected" stickers on all products that have it so you know what and what not to buy.

via Facebook 8 November, 2005 00:11
Reply

Surely it can not be legal to violate my privacy in this way without a court order?

via Facebook 8 November, 2005 08:01
Reply

It just gets worse .. New Sony Digital Camera Installs Rootkit to Stop Photo Sharing

Many consumers are complaining about Sony's new Cybershot DSCP515 camera that installs digital rights management (DRM) software on the person's computer so they are unable to share their digital pictures with anyone.
The DRM is similar to the one which Sony recently came under fire for on its music CDs. That software installed rootkits on consumer's computers making them vulnerable to cyberattacks.

"Picture sharing flies under the radar when it comes to piracy," said Wilkerson. "People know about the dangers of music and movie piracy, but not about the dangers of sharing personal photos. What happens if a person takes a picture of Mariah Carey's latest CD? Think of the children."

The system which also makes it difficult to print out pictures has prompted complaints from consumers. "I tried to send a picture of my daughter to her Uncle Tim, but this window popped up saying it was blocked. I decided to print it out and mail it to him. There was a 14-page license agreement that printed out first that I had to fill out and fax to Sony so they could send me an authorization code to print out the picture."

via Facebook 14 November, 2005 09:58
Reply

THIS IS A SATIRE ARTICLE!
This is a satire article from bbspot.com.
http://www.bbspot.com/News/2005/11/sony_photo_sharing.html

Jebus.

via Facebook 21 November, 2005 17:44
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

Philip Charles Cohen

Read about it and weep, John Donahoe ... In addition to Visa’s V.me, there is now MasterCard’s PayPass digital wallet soon to arrive; another...

43 minutes ago by Philip Charles Cohen via Facebook on PayPal takes phone-based payments to the high street
apexwm

Leslie Satenstein : Where have you ever seen Mozilla even mention this? Firefox is the most popular browser in the GNU/Linux OS, so I don't see...

1 hour ago by apexwm on Firefox rapid release improves Fedora Linux
songmaster

SHleG: Do you remember building a clockwork scorpion kit (I'm pretty sure I have a photo of it somewhere) — I think it was called something like...

3 hours ago by songmaster on Software with everything
Chris Wortman

Good I love Yahoo! Their search engine is getting better than Google as of late. I find more of what I want on the first page, and usually within...

4 hours ago by Chris Wortman via Facebook on Linux Mint 13 ramps up for KDE release
PatrickG

openhgs has made the point for Windows 8 multiple monitors without realising it! With Windows 7 you have to switch the mouse and so your focus...

5 hours ago by PatrickG on Windows 8 could speed multi-monitor uptake
Leslie Satenstein

Mozilla has threatened to stop supporting Linux. I guess that UBUNTU is going with another browser. I indicated that if Mozilla stops supporting...

7 hours ago by Leslie Satenstein via Facebook on Firefox rapid release improves Fedora Linux
Andy Bolstridge

Much as I abhor Microsoft's licensing practices, this is almost certainly down to purchasing IT equipment via 3rd party consultants - you get the...

7 hours ago by Andy Bolstridge via Facebook on 6 million wasted licences and £1,200 PCs: welcome to government IT
Jack Schofield

@openhgs Windows users have had multiple desktops since Linus started writing Linux. They just haven't shipped as standard because not enough...

23 hours ago by Jack Schofield on Windows 8 could speed multi-monitor uptake
Jack Schofield

@Phil at Cloud4 What, Microsoft gets £1,200 per PC and £1,622 per server? Gosh, I'm amazed....

24 hours ago by Jack Schofield on 6 million wasted licences and £1,200 PCs: welcome to government IT
craigsc

You guys have no idea what is going on at Autonomy. Autonomy could have been a much more profitable organization. The sales operations at Autonomy...

1 day ago by craigsc on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Moley

How does this impact on dual or multi booting? Seems to me to more or less prohibit this, from Windows 8 anyway. Will Grub 2 recognise Windows 8,...

1 day ago by Moley on Windows 8 start-up speed forces USB boot workaround
apexwm

I don't understand why there cannot be a slight pause during the boot process so the user can press a key. Many operating systems do this, even if...

1 day ago by apexwm on Windows 8 start-up speed forces USB boot workaround
Gavin Goodman

You can now buy the Xi3 modular computer in the UK at http://www.ocdistribution.com . This can be bought with the Tand3m software, pricing and...

1 day ago by Gavin Goodman on CES 2012: Xi3 microSERV3R
Phil at Cloud4

I agree: Mike Lynch can clearly build a business and manage strategy. I suspect the exit of Mike is more likely the end of a planned handover...

1 day ago by Phil at Cloud4 on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Phil at Cloud4

This is unbeleivable government wastage with only one winner... Microsoft 1 - Tax payer Nil!

1 day ago by Phil at Cloud4 on 6 million wasted licences and £1,200 PCs: welcome to government IT
Mispam

So what do you do when you can't boot into windows? Why can't I just hold Shift while I power up instead of having to boot into windows and click a...

1 day ago by Mispam on Windows 8 start-up speed forces USB boot workaround
apexwm

I've also seen that Mac OS X for Intel machines is supposed to run in VirtualBox, which would also be a nice solution. I've never tried it though.

1 day ago by apexwm on xTreme Triple Booting: Linux, Mac & Windows
dave heasman

What I wonder is why when companies are caught bang to rights in not providing contracted services, people bend over to smear the customers? Surely...

1 day ago by dave heasman on Virgin throttles broadband for high-speed customers
pjc158

Strange statement from HP regarding Mike Lynch and not capable of scaling a company. Autonomy was a $7bn purchase which started as a small company...

1 day ago by pjc158 on HP cuts 27,000 staff as Autonomy chief Lynch leaves
lojolondon

Or - possibly, they will destroy business by ensuring people do not invest where there is no return. Another socialist idea, well beyond it's...

2 days ago by lojolondon on Open Data Institute will act as biz incubator