boleyd
January 29th, 2006, 08:44 AM
From an unrelated forum I found that some companies that sell software via downloads also scan your PC for previous installs that might be illegal, or for other reasons. This appears to be a "Sony type thing"??
My question is:
When we download software some number of programs are started and held by PG for specific permission. Somewhere there may be scanning code in these programs. The best way to plant the code would probably be within the legitimate download program and then erase it when completed.
Setting aside the issue of trust, faith, need, etc. is there a way to prevent scanning code from from going beyond its implied intent? Can't it scan for keywords in specific system areas, go to the targeted files, grab juicy info, package it, and then send to the data collection point. All this without any hint as to the activities occurring!
Seems that downloading is a very dangerous practice??? Actually if you have given permanent permission, via PG, to allow it to function, the nasty little code could set there and collect and distribute all kinds of data by doing periodic sophisticated scans. It does not log keystrokes but relies on scanning. How wonderful, and profitable, if it finds a file with saved passwords that is not security encoded. I bet that a lot of PC users keep serious info in open files. Mine is encrypted.
Is there a protection methodology to prevent a scanner from collecting and sending "interesting" files to a data mining system????
I would not be surprised if the NSA plants such code on suspects PCs to keep an eye on them! Indeed this is a dangerous and very complicated world....
My question is:
When we download software some number of programs are started and held by PG for specific permission. Somewhere there may be scanning code in these programs. The best way to plant the code would probably be within the legitimate download program and then erase it when completed.
Setting aside the issue of trust, faith, need, etc. is there a way to prevent scanning code from from going beyond its implied intent? Can't it scan for keywords in specific system areas, go to the targeted files, grab juicy info, package it, and then send to the data collection point. All this without any hint as to the activities occurring!
Seems that downloading is a very dangerous practice??? Actually if you have given permanent permission, via PG, to allow it to function, the nasty little code could set there and collect and distribute all kinds of data by doing periodic sophisticated scans. It does not log keystrokes but relies on scanning. How wonderful, and profitable, if it finds a file with saved passwords that is not security encoded. I bet that a lot of PC users keep serious info in open files. Mine is encrypted.
Is there a protection methodology to prevent a scanner from collecting and sending "interesting" files to a data mining system????
I would not be surprised if the NSA plants such code on suspects PCs to keep an eye on them! Indeed this is a dangerous and very complicated world....