nexgenwars.com

WGA Notification Phones Home during Windows Start-Up

[The validation checks can be disabled by either blocking the WGA tool from communicating with Microsoft using ZoneAlarm or disable the WGATray.exe process.]

The Windows Genuine Advantage Notifications tool repeatedly nags computers that use pirated copies Windows XP. Windows Validation is required for all genuine Windows downloads on Microsoft Download Center.

The anti-piracy tool attempts to contact Microsoft over the internet each time the computer boots. The connections occur even if you do not have Windows Automatic Update enabled.

Lauren Weinstein is of the opinion that Microsoft Genuine Advantage tool may itself be considered to be spyware under commonly accepted definitions.
I fail to see where Microsoft has a "need to know" for this data after a system's validity has already been established, and there may clearly be organizations with security concerns regarding the communication of boot-time information.
Microsoft has responded quickly to Lauren's concern and some more interesting facts have emerged from his conversation with Microsoft:

» Microsoft receives user IP address and date/timestamp data relating to systems' booting and continued operations, which MS would not necessarily otherwise be receiving.

» Even after a copy of XP has been validated, MS may choose to "revoke" that validation (via communications with their Windows Update site) at a later date if activation codes are found to be pirated in the future.

» Why is the new version of the validity tool trying to communicate with MS at every boot? At this time the connections are to provide an emergency "escape" mechanism to allow MS to disable the validation tool if it were to malfunction. Apparently these transactions will also occur once a day if systems are kept booted.

The validation checks can be disabled by either blocking the WGA tool from communicating with Microsoft using ZoneAlarm or disable the WGATray.exe process.

If you try to validate Windows with an invalid Windows Key, it will say "Validation Failure: Invalid Product Key" - The product key associated with your copy of Windows was never issued by Microsoft. [ Why it did not validate 0x80080222]

Once you suppress the WGA notifications, it is possible that the notifications will be re-activated when a new update for WGA Notifications is installed.

[originating url]

2 comments:

Anonymous said...

You can also disable the nagging by using HijackThis!, which is free software used to disable malware. Not for the novice user, though. It's easy to kill Windows if you're not careful.

Anonymous said...

If we manage to block this, are we not also preventing any downloads or updates being able to download from MS or will they not check and stop any D/Ls anyway with a warning about our genuine software as being pirated?

Infoblog.us claims no credit for any images or content featured on this site unless otherwise noted. All visual content and blog entries is copyright to it's respectful owners. Infoblog.us is in no way responsible for or has control over the content of any external web site links. Information on this site may contain errors or inaccuracies; the site's proprietors do not make warranty as to the correctness or reliability of the site's content. If you own rights to any of the content or images, and do not wish them to appear on this site, please contact us via e-mail with the url of related blog entry and/or image and they will be promptly removed.