DISQUS

The Linuxologist: Hacking Symantec: Easy Peasy

  • Yousef Raffah · 1 year ago
    hahahaha, that is nice to hear. Dude your company's IT security policies are way different than ours, I'm not saying we are great, but we are a little bit better, at least, in terms of the Antivirus.
    Good luck with your Norton security and my regards to your IT team ;)
  • Chris Cotter · 1 year ago
    Are you kidding me? What a joke.
  • tom · 1 year ago
    This exploit doesn't surprise me at all. S.E.P. is the biggest load of crap ever. Half of the option don't work (Network Threat Protection being the biggest one). The centralized console doesn't work. I installed this around my work and had to run back to each machine, uninstall the software, reinstall the software in stand-alone mode, no network threat protection, no Application and Device Control, and I hope that the updates are happening, but I can't check in a centralized console. A definite 'don't use' from me.
  • tom · 1 year ago
    Started thinking about it and found that they just released another upgrade. 11.0.2010. Downloading now. Let's see if it's still crap....
  • Sam Dodge · 1 year ago
    Last time I checked, it was stupid easy to "hack" that product. There's a registry key that allows you to enable/disable the use of the uninstall password.

    Change the key to a zero, and attempt the uninstall. No password needed.

    How's that for stupid?
  • crotchet · 1 year ago
    So let me see. You admit to downloading, installing and using 3rd party software that wasn't approved by your "IT Department", you then complain the system is slow to use. Did you contact IT? Perhaps normal every day maintenance could have cleared up any problems. What formal troubleshooting methodology did you perform? Whats that? The first thing you did when you experienced a performance problem with the companies (not yours) machine was... uninstall antivirus?
    Well on behalf of your company's IT dept, F*** you.
    you're the ones that propagate malware all over corporate networks due to your apparent lack of respect for the equipment your company lets you use, and your utter ignorance in your inability to keep a simplistic os like XP and allow it to become "unusable within months".
    You should not have admin rights. It only takes one weak link, and you sound like you're rusting.
  • Rami Taibah · 1 year ago
    @crotchet: First of all, it seems like you are a system admin and have tasted the brunt of stupid users, I understand. But no need to lash out on me, I assure you that I am totally aware of what I am doing at any point in my system.

    The 3rd party apps you ask of, are your everyday apps for me (and probably you) like Firefox, GIMP, Adobe Air, VLC..etc. The computer I recieved from the company had only 1 thing on it, and that was Mcaffee Anti-virus! So do you expect me to work with a fresh install of XP? I need to do quick photo editing, I need to browse the Internet, I even need to see some multimedia every now and then.

    And trust me I am not stupid to not have anti-virus on an XP system, I simply rolled back to Mcaffee.

    Besides, this post is not about me bragging about how "daring" or "adventurous" I am, it's about how stupid Symantec is. I was astonished by how I bypassed their security measures, and decided to share it with the world.

    Thank you for your pleasant comment, it really felt warm inside! ;)
  • MONKEY · 1 year ago
    M$ will never fix Windows
    Too many eat with a bad system like Windows
    Symantec is trying to spread the hoax that Mac OS X is Vulnerable, so they can create new markets, but unfortunately nobody needs an antivirus on Unix system, because unless a virus has root powers it cannot cause any damage to the system, just to the user area.

    *Edited by admin: Caps removed*
  • Anonymous · 8 months ago
    look up the definition of "rootkit" and where they were first discovered, moron
  • honest_ape · 1 year ago
    @crotchet

    Dude! If you're going to say Fuck You, have the balls to say that shit, man! Quit being a fucking pussy! If you're going to hurl insults like that at a guy, grow a pair and do it right!

    F*** You? C'mon, loser. You're going to say fuck you and at the same time try to make it polite by censoring it? Make up your fucking mind.

    Pussy.
  • guyonphone · 1 year ago
    The default/backdoor password is (are you ready for this?) "symantec" typing that in usually lets you uninstall it.
  • Scott · 1 year ago
    The fact that you can uninstall (or install) anything just proves that your IT department sucks.

    Oh yeah, but then it was already obvoius with the Norton (or McAfee for that matter) thing as well.
  • amrush · 1 year ago
    lol ... that's actually dumb I hope by the time I start working nothing would be changed :P ..
  • numerodix · 1 year ago
    That is absolutely amazing. They demand a password just so you can get rid of the bitch. What incredible audacity!
  • reghax0r · 1 year ago
    Why bother killing processes when you can just change two registry keys from 1 (00000001) to 0 (00000000):

    [HKEY_LOCAL_MACHINE\SOFTWARE\Intel\LANDesk\VirusProtect6\CurrentVersion\AdministratorOnly\Security]
    "UseVPUninstallPassword"=dword:00000000
    "LockUnloadServices"=dword:00000000
  • manuel · 1 year ago
    awesome... so easy. the worse part is, a lot of people cant even do that...
  • Ivan · 1 year ago
    For the technically challenged - Symantec site Downloads - Norton removal Tool. 8-)
  • diz8 · 1 year ago
    Updated reg keys for Endpoint 11.0.2000.1253

    [HKLM\SOFTWARE\Symantec\Symantec Endpoint Protection\AV\AdministratorOnly\Security]
    "LockUnloadServices"=dword:00000000
    "UseVPUninstallPassword"=dword:00000000
  • kevin · 10 months ago
    Anyone know what registry key setting is preventing me from being able to clear the logs? The CLEAR button in the log viewer is greyed out...
  • Satyam Pujari · 10 months ago
    Good one mate !!
    But lemme tell u a fact..non of the so called "secure systems" are 100% secure in this earth ..there is a "hack" exist for everything...after all "humans" code "machines" and "To Err Is Human, To Forgive Divine" ..So if you are really looking to make things better/secure you can initiate and report the "bug" instead of asking quesions in a remote forum.
    That's how bugs get fixed !!
  • Rami Taibah · 10 months ago
    Well I don't really care now do I? This is a Linux blog, and thanks heavens we don't have to deal with viruses and anti-virus programs that hog our systems....

    And nobody said there is a 100% secure system out there, the point was the most popular OS using the most popular anti-virus was hacked by someone like me. Who has no hacking/cracking/coding experience at all! I just used common sense....If such an obvious bug got through Norton's nets, what does that say about the company?
  • Reader · 10 months ago
    That is sweat :)))) Still working - february 2009. Thanks alot.
  • mandar · 6 months ago
    OH MY GOD~!&#@($ Thanks dude that's very easy :))) luv ya :P (dont think me gay :) i luv u as bro) anyways thankssssssssssssssssssss