Ads

Microsoft Draws Criticism For Changing AntiSpyware Definitions PDF Print E-mail
Monday, 11 July 2005
Microsoft quietly changed how its for-free AntiSpyware program handles a pervasive form of adware, a move that has drawn criticism because of recent reports that Microsoft is interested in buying adware-maker Claria.

Eric L. Howes, who consults with Sunbelt Software and is on the faculty of the University of Illinois, stumbled on the change while testing four Claria applications: Dashbar, Gator, PrecisionTime, and Weatherscope. He traced the change back to early March, at which time Microsoft AntiSpyware detected the Claria programs, but modified its default recommendation to "Ignore." (Howes posted a screenshot of AntiSpyware in action on the Broadbandreports.com message area.)

Prior to that, AntiSpyware detected the four Claria titles, but used the default recommendation of "Quarantine," which effectively disabled the adware.

According to anti-spyware maker Webroots research, Clarias adware is on an estimated 2.2 percent of all PCs, making it the second-biggest adware/spyware threat to PCs.

"If you ignore the conspiracy theory [that Microsoft did this because its thinking of buying Claria], then the question becomes On what basis was this decision made?" said Howes.

At the very least, he added, Microsoft should have taken the time to tell users why it changed the default setting. "If Microsoft made the change on good evidence, that seems potentially legitimate, but none of this was presented to the user."

However, like many anti-spyware vendors, Microsoft keeps its criteria close to its vest, and doesnt share its rationales with users or, of course, adware and spyware vendors.

A Microsoft spokesperson, who did not deny that the company changed the default from quarantine to ignore, declined repeated requests over a 24-hour period to offer further comment or clarification. A spokesman for Claria did not immediately respond to requests for comment for this article. (UPDATE: A few hours after the publication of this article, Microsoft issued an open letter to customers explaining its position.)

In late June, pieces in the Wall Street Journal and the New York Times quoted unnamed sources who said that Microsoft was in talks with Claria to buy the Redwood City, Calif.-based Internet marketing company. At that time, both Microsoft and Claria executives declined to comment on the rumors.

Noted spyware and adware activist and researcher, Ben Edelman, who confirmed AntiSpywares new Claria recommendation, is much more critical of Microsoft. Nor does he think the chatter about an acquisition and the change to AntiSpyware are unconnected.

"Its true that we dont have all the facts that we would like to have to draw a good conclusion," said Edelman, "but an acquisition doesnt arise overnight." Its conceivable, he said, that talks between Microsoft and Claria preceded the March 1, 2005, change made by AntiSpyware.

Both Edelman and Howes noted that the timing of Microsoft AntiSpywares Claria change closely matched when Computer Associates de-listed Clarias software from its Pest Patrol database. Two weeks later, CA relisted Claria, saying it had re-evaluated Clarias programs and decided they were adware.

CA removed Clarias adware from the Pest Patrol database on March 25, a bit more than three weeks after Microsoft changed AntiSpywares recommendation.

"All Claria had to do to get de-listed from Pest Patrol was send a letter," said Edelman. "For that letter, they got a free pass for two weeks."

Whats most troubling, both Howes and Edelman said, is that the whole back and forth between adware/spyware vendors and anti-spyware developers is done behind doors. "Removing adware from a [products] database or changing how adware or spyware is detected is almost always done secretly," said Edelman.
 
< Prev   Next >