Microsoft changes Windows files on user PCs without permission, researchers say
Silent mods to XP, Vista occur even with auto updates off, claims 'Windows Secrets'
Computerworld - Microsoft Corp. has started updating files on computers running Windows XP and Vista, even when users have explicitly disabled the operating systems' automatic update feature, researchers said today.
Scott Dunn, an editor at the "Windows Secrets" newsletter, said that nine files in XP and Vista -- but not the same files in each operating system -- have been changed by Windows Update, the Microsoft update mechanism, without displaying the usual notification or permission dialog box. The files, said Dunn, are related to the XP and Vista versions of Windows Update (WU) itself.
"We started hearing from readers that Windows was modifying files in the middle of the night, even when Windows Update was turned off," Dunn said today. Some machines' event logs pinpointed Aug. 24 as the date when the invisible updates began, but on one of Dunn's personal machines, the log showed the changes taking place this week.
Dunn identified the changed files on Vista as wuapi.dll, wuapp.exe, wuauclt.exe, wuaueng.dll, wucltux.dll, wudriver.dll, wups.dll, wups2.dll and wuwebv.dll.
And on XP SP2, he said, the changed files were cdm.dll, wuapi.dll, wuauclt.exe, wuaucpl.cpl, wuaueng.dll, wucltui.dll, wups.dll, wups2.dll, and wuweb.dll.
In the past, Dunn noted, any changes to WU have been presented to the user for approval. "They at least warned you in advance," he said.
Not so this time, said Brian Livingston, the founder and editorial director of the newsletter. "We don't completely understand the [WU] technology, but apparently this doesn't go through the Auto Update settings. A lot of companies are very sensitive about changes made to their PCs, and although there's absolutely no sign of any malicious intent on the part of Microsoft, if it starts doing this, people should have a lot of concerns."
Microsoft gives users some flexibility in how their XP- and Vista-powered PCs retrieve and install updates and patches from the company's servers. In Vista, for example, users can turn off automatic updates entirely; check for, but neither download or install, any fixes; or download files but not install them.
Although Microsoft did not immediately respond to a request for comment, Dunn provided Computerworld with a copy of an e-mail he said "Windows Secrets" had received from Microsoft's online partner support. In the message, Microsoft only hinted at a reason for the changes: "7.0.6000.381 is a consumer-only release that addresses some issues after .374 was released. It will not be available via WSUS [Windows Server Update Services]."
"What's waking up at 2 a.m. and downloading files?" asked Livingston.
"Windows Secrets" plans to offer more details tomorrow on its Web site and to subscribers via its normal e-mail channel.
Related Articles and Opinion
- 10 Hot Big Data Startups to Watch
- 11 Unique Uses for Google Glass, Demonstrated by Celebs
- How to Export Your Google Reader Account
- How to Better Engage Millennials (and Why They Aren't Really so Different)
- Telltale signs of ATM skimming
- 20 security and privacy apps for Androids and iPhones
- Big screen con artists: 7 great movies about social engineering
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- Top Three Reasons Why Customers Deploy EMC VNX with EMC VPLEX What if you could build a cost effective, continuously available storage infrastructure? Learn the top reasons users are deploying EMC VNX with EMC...
- Clearing the Clouds for Midmarket Businesses The 10-point checklist included in this expert brief has been developed to help small and midsize businesses select the cloud model and cloud...
- Perforce Case Study Learn how EMC cost-effectively transformed their infrastructure and improved storage performance by 60% by unifying storage, deploying virtualization and leveraging Flash to meet...
- Data Center Transformation: Balancing user demands with IT mandates There's a flood of user requirements, computing trends, and new technologies driving the need for you to look closely at your IT infrastructure.
- Virtustream (Vayence) video taking a 3000-Seat SAP Environment to the Cloud How can public cloud services help your organization reduce costs and increase security for your mission
- Williams & Fudge on Transforming IT with EMC Watch Williams & Fudge Data Center Director Phillip Reynolds discuss why this accounts receivable management firm turned to EMC. All Windows White Papers | Webcasts
From invoking 'God Mode' to hacking the lock screen, here are 10 ways to make Windows 8 act the way you want. Read more...