Symantec Corp. has fessed up to using a rootkit-type feature in Norton SystemWorks that could provide the perfect hiding place for attackers to place malicious files on computers.
New Root-Kit Fiasco: This Time it’s Symantec
By Steve Thursday January 12, 2006
0
Search
Support the Blog — Buy This Book!
For Kindle and with free ePub version. Only $9.49 Great reading. Here is what Gary Shapiro CEO of the Consumer Electronics Association (CEA) said: Dvorak's writing sings with insight and clarity. Whether or not you agree with John's views, he will get you thinking and is never boring. These essays are worth the read!Twitter action
Support the Blog
Put this ad on your blog!
Syndicate
Junk Email Filter
Categories
- Animals
- Art
- Aviation
- Beer
- Business
- cars
- Children
- Column fodder
- computers
- Conspiracy Theory
- Cool Stuff
- Cranky Geeks
- crime
- Dirty Politics
- Disaster Porn
- DIY
- Douchebag
- Dvorak-Horowitz Podcast
- Ecology
- economy
- Endless War
- Extraterrestrial
- Fashion
- FeaturedVideo
- food
- FUD
- Games
- General
- General Douchery
- Global Warming
- government
- Guns
- Health Care
- Hobbies
- Human Rights
- humor
- Immigration
- international
- internet
- Internet Privacy
- Kids
- legal
- Lost Columns Archive
- media
- medical
- military
- Movies
- music
- Nanny State
- NEW WORLD ORDER
- no agenda
- OTR
- Phones
- Photography
- Police State
- Politics
- Racism
- Recipe Nook
- religion
- Research
- Reviews
- Scams
- school
- science
- Security
- Show Biz
- Society
- software
- space
- sports
- strange
- Stupid
- Swamp Gas Sightings
- Taxes
- tech
- Technology
- television
- Terrorism
- The Internet
- travel
- Video
- video games
- War on Drugs
- Whatever happened to..
- Whistling through the Graveyard
- WTF!
Pages
- (Press Release): Comes Versus Microsoft
- A Post of the Infamous “Dvorak” Video
- All Dvorak Uncensored special posting Logos
- An Audit by Another Name: An Insiders Look at Microsoft’s SAM Engagement Program
- Another Slide Show Test — Internal use
- Apple Press Photos Collection circa 1976-1985
- April Fool’s 2008
- April Fool’s 2008 redux
- Archives of Special Reports, Essays and Older Material
- Avis Coupon Codes
- Best of the Videos on Dvorak Uncensored — August 2005
- Best Videos of Dvorak Uncensored Dec. 2006
- Best Videos of Dvorak Uncensored July 2007
- Best Videos of Dvorak Uncensored Nov. 2006
- Best Videos of Dvorak Uncensored Oct. 2006
- Best Videos of Dvorak Uncensored Sept. 2006
- Budget Rental Coupons
- Commercial of the day
- Consolidated List of Video Posting services
- Contact
- Develping a Grading System for Digital Cameras
- Dvorak Uncensored LOGO Redesign Contest
- eHarmony promotional code
- Forbes Knuckles Under to Political Correctness? The Real Story Here.
- Gadget Sites
- GoDaddy promo code
- Gregg on YouTube
- Hi Tech Christmas Gift Ideas from Dvorak Uncensored
- IBM and the Seven Dwarfs — Dwarf Five: GE
- IBM and the Seven Dwarfs — Dwarf Four: Honeywell
- IBM and the Seven Dwarfs — Dwarf One: Burroughs
- IBM and the Seven Dwarfs — Dwarf Seven: NCR
- IBM and the Seven Dwarfs — Dwarf Six: RCA
- IBM and the Seven Dwarfs — Dwarf Three: Control-Data
- IBM and the Seven Dwarfs — Dwarf Two: Sperry-Rand
- Important Wash State Cams
- LifeLock Promo Code
- Mexican Take Over Vids (archive)
- NASDAQ Podium
- No Agenda Mailing List Signup Here
- Oracle CEO Ellison’s Yacht at Tradeshow
- Quiz of the Week Answer…Goebbels, Kind of.
- Real Chicken Fricassee Recipe
- Restaurant Figueira Rubaiyat — Sao Paulo, Brasil
- silverlight test 1
- Slingbox 1
- Squarespace Coupon
- TEST 2 photos
- test of audio player
- test of Brightcove player 2
- Test of photo slide show
- test of stock quote script
- test page reuters
- test photo
- The Fairness Doctrine Page
- The GNU GPL and the American Way
- The RFID Page of Links
- translation test
- Whatever Happened to APL?
- Whatever Happened to Bubble Memory?
- Whatever Happened to CBASIC?
- Whatever Happened to Compact Disc Interactive (aka CDi)?
- Whatever Happened to Context MBA?
- Whatever Happened to Eliza?
- Whatever Happened to IBM’s TopView?
- Whatever Happened to Lotus Jazz?
- Whatever Happened to MSX Computers?
- Whatever Happened to NewWord?
- Whatever Happened to Prolog?
- Whatever Happened to the Apple III?
- Whatever Happened to the Apple Lisa?
- Whatever Happened to the First Personal Computer?
- Whatever Happened to the Gavilan Mobile Computer?
- Whatever Happened to the IBM “Stretch” Computer?
- Whatever Happened to the Intel iAPX432?
- Whatever Happened to the Texas Instruments Home Computer?
- Whatever Happened to Topview?
- Whatever Happened to Wordstar?
- Wolfram Alpha Can Create Nifty Reports
I’ve always said that in certain ways, spyware and virus blockers are like viruses in and of themselves in the way that they can stop programs from working and cause trouble for the system. This story practically confirms that theory.
Symantec the antivirus company… How ironic.
I use ewido (spelling?) AV prog – scans active memory, active virtual memory, registry, as well as disk drives and all that…
If ya’ll get a good hardware-based firewall you wont need to keep those memory hogs running in the background
You mean someone actually installed Norton Systemworks?
I use Antivir and it works. (http://www.free-av.de/)
But at office, my boss is mad about norton Internet Security.
ok. let him. But for a while it got me mad. It would stop me from sending files and print or receive file on my network PCs. I had to configure it to work on my own local network…Its nuts.
And the anti spam thing blocks a lot of genuine mail, so I have to browse my spam folder anyway, thus negating the use of antispam….
And sometimes it pops up saying there´s a sudden peril lurking around the corner (an outbreak) and I need to update. Then it tells me I just avoided a major threat, or, instead, that there´s no cure for that particular threat yet… It´s like terrorizing you into the feeling that you´re not safe at any time…
I think it´s BS… It´s Mob tactics. Fright you into paying for protection…
I´m not paying a cent for anti (virus, spam, spy, etc.) software anymore.
A friend of mine is having problems with Norton Protection in this version of Systemworks on his company laptop. I sent him a link to the article, as I think this is the cause of his problem.
Norton has evolved to become one of the worst anti-virus and firewall products imaginable. It’s such a hodge-podge but they are large, and long ago secured corporate business at and have space on store shelf.
They are the General Motors of anti-virus software. Their product sucks but they coast along on longevity and marketing.
Funny, PC Magazine always gives them “5 stars” as do most sites that review their products. But the user ratings on sites that have those, it’s usually closer to 2.5 stars with a ton of user complaints.
Go figure!
I have to agree with Steve about McAfee. I recently bought a new laptop from Dell that included a one-year subscription to McAfee. That program was so intrusive and annoying I dumped it after two weeks. I downloaded Avast! for free and have not regretted it.
I gave up on Symantec’s bloatware two years ago.
Our office has three computers, one a laptop that comes and goes, a wireless network, a couple of networked applications and Zone Alarm with Anti-Virus. It’s about half the price and after an initial settling in period does the job it’s supposed to with little or no fuss. It’s been in place nearly two years, we keep the subscription up to date, keep the network tweaked as far as limiting MAC addreses, etc, and use the Firefox browser. Before these measures were instituted the network was spotty, at best, and operating systems and applications were regularly being reinstalled. The only recurring problem I have is that for some reason the router will occasionally change the port settings on the networked printer, and that’s easy to fix.
I uninstalled Norton systemworks about a year ago. Is the rootkit feature still on my pc? I got away from Norton before Symantec bought it and for some reason was talked back into it. Of course it didn’t take long to see what resource hog it (still) was.
I like how Symantec thanks Systeminternals and F-secure for working with them on this. Does the work embarass ring a bell?
I gave up on Norton two years ago. For some reason my version wouldn’t update itself. After a month’s worth of back and forth emails, with me continually explaining the problem to someone in Bombay (my guess) I gave up. I let them keep the last three months I had paid for and have been with AVG ever since. That is three computers in our house no longer running Norton. And I am very happy with AVG and full heartedly recommend it.
What I have not seen mentioned in any of the news items on this issue, and that I think deserves broader play, is the fact that Symantec’s fix is only for the 2004 through 2006 versions of their utility suite. 2003 and earlier suffers from the same problem but if you want to fix that, you are out of luck. First you have to pay for an upgrade and then apply the patch. But I have a better idea. Out of curiosity, I downloaded Zone Alarm’s antivirus suite and scanned with it. I found 8 infections that Norton had let past, 6 of them hiding in the NPROTECT folder. This is curious since I have never used Norton Protection for my recycle bin. Apparently, it is installed whether you want it or not and all you can do is toggle whether or not it is actually used. So let’s see the score: Norton is slipshod about preventing infections, it provides a cozy hiding place for them that they are now using, and if you want to destroy that hiding place, you have to pay money to Symantec for the priviledge. I think uninstalling the whole damn thing is a far better idea.