+ Reply to Thread
Results 1 to 22 of 22

Thread: Ubisoft's Uplay exposed as rootkit, millions of PCs could had been hacked.

  1. #1
    Xtreme Enthusiast El Mano's Avatar
    Join Date
    Mar 2010
    Posts
    937
    Thanks
    95
    Thanked 65 Times in 36 Posts

    Exclamation Ubisoft's Uplay exposed as rootkit, millions of PCs could had been hacked.

    Typical Ubisoft crap

    http://news.ycombinator.com/item?id=4311264
    Ubisoft installs a backdoor that allows any website to take over your computer. The Sony BMG rootkit was also DRM and required product recall when it was discovered.

    http://www.rockpapershotgun.com/2012...soft-pc-games/
    Says the expert we spoke to, “you could click on a weblink, thinking you were visiting the BBC News Website from a friendly list of bookmarks. Except it’d also install a program via UBISoft’s DRM plugin which wiped your hard drive. It is a genuine threat. All it would take is an exploited wordpress, say.”
    If you have played Uplay games recently you should take measures.
    It's disgusting, Ubisoft is not only a bunch of s but a bunch of retarded s.

  2. #2
    Registered User himaro's Avatar
    Join Date
    Mar 2009
    Posts
    49
    Thanks
    0
    Thanked 3 Times in 2 Posts
    What is it with Ubisoft and hating PC gamers?
    I swear they're trying to screw us over at every chance they can
    Intel Core 2 Quad Q6600 @ 3.2GHz stock Vcore <> ATI Radion HD5870 <> 4GB DDR2 Corsier Dominator RAM <> Asus P5K Premium

  3. #3
    Xtreme Addict kromosto's Avatar
    Join Date
    Apr 2003
    Location
    istanbul turkey
    Posts
    2,073
    Thanks
    43
    Thanked 18 Times in 15 Posts
    it is really sad but pirated games are becoming most safe games to play.


    When i'm being paid i always do my job through.

  4. #4
    Xtreme Mentor ajaidev's Avatar
    Join Date
    Jul 2008
    Location
    Shimla , India
    Posts
    2,590
    Thanks
    0
    Thanked 26 Times in 13 Posts
    Quote Originally Posted by kromosto View Post
    it is really sad but pirated games are becoming most safe games to play.
    Agreed my PS3 also downloads stuff without my knowledge via the network, its a good thing net speeds are on the lower side here and i can notice the sudden slowness in speed. I need network access to play multiplayer games but this hidden way of downloading stuff is just too much.

    At least for the PC i can use pfsense with PS3 the pfsense does not work at all.
    Coming Soon

  5. #5
    Xtreme Addict
    Join Date
    Dec 2003
    Location
    At work
    Posts
    1,175
    Thanks
    12
    Thanked 9 Times in 7 Posts
    Next steps:

    1) Gamers get ticked after reading stuff like this about the crappy DRM on Ubisoft's games and stop buying them.
    2) Sales fall through the floor.
    3) Ubisoft blames the drop in sales on piracy and throws more DRM on their games.
    4) And we head back to step 1...

    Self fulfilling prophecy, IMHO...
    HP Proliant ML370 G6, 2x Xeon X5690, 144GB ECC Registered, 8x OCZ Vertex 3 MAX IOPS 240GB on LSi 9265-8i (RAID 0), 12x Seagate Constellation ES.2 3TB SAS on LSi 9280-24i4e (RAID 6), 2x EVGA GeForce GTX 690 Quad SLI running 2x NEC LCD3090WQXi 30" monitors and dual 1200W redundant power supplies.

  6. #6
    Xtreme Cruncher CrimInalA's Avatar
    Join Date
    Nov 2002
    Location
    Belgium
    Posts
    550
    Thanks
    2
    Thanked 9 Times in 4 Posts
    "millions of PCs could had been hacked"

    so many people that have this ubisoft fail installed ? Strange .


    Main rig 1: Corsair Carbide 400R 4x120mm Papst 4412GL - 1x120mm Noctua NF-12P -!- Antec Truepower 850W PSU -!- Asus Crosshair IV Formula BIOS 2101 with RAID ROM 3.3.1540.17 -!-
    AMD Phenom II X6 1090T @ 4200mhz 1.493V Cpu-NB 3200Mhz 1.396V -!- Swiftech H220 push 2x Papst 4412 F/2GP pull 1x Papst 4412 F/2GP -!- 4x4gb Crucial Ballistix Tracers @ 1600mhz 7-7-7 1.55V -!-
    2x 512gb Crucial M4 SSD RAID 0 128k stripe -!- XFX Radeon HD7970 1.0V/1.5V @ 1025/1375 -!- Physx Card Asus 9600GT Silent @ 820/2050/1100 -!- Windows 8 pro 64bit -!-
    Samsung S27A850D 27" + Samsung 2443BW 24" -!- Ambilight w boblight -!- Sennheiser HD590 -!- Logitech G19 -!- Microsoft Sidewinder -!- Modded Xbox gamepad -!- Fragpedal -!- Eaton Ellipse MAX 1500 UPS





  7. #7
    Xtreme Addict naokaji's Avatar
    Join Date
    Mar 2008
    Location
    横浜市
    Posts
    2,023
    Thanks
    16
    Thanked 15 Times in 11 Posts
    The price fund Activision, EA and Ubisoft are fighting for must be massive and the criteria who wins very simple: who succeeds in destroying pc gaming for all eternity?
    Gaming Pc: I7-3770K, Maximus V Gene, 16GB G.Skill TridentX 2400, MSI GTX 570 Twin Frozr III, 2x 256GB Samsung 830 Raid 0, 4TB Hitachi Deskstar, Seasonic M12 700W, Cosmos S, EK Supreme HF, 18W Laing DDC + XSPC Res Top, Blackice GTX 360 Rad

    HTPC: I5-2500K, MSI Z77MA-G45, 8GB Corsair XMS 2000, XFX Radeon 6770, 128GB Crucial C300, Lian Li V352
    Mobile: Vaio Z, Nexus 7

  8. #8
    Xtreme Addict Syn.'s Avatar
    Join Date
    Dec 2005
    Location
    UK
    Posts
    1,714
    Thanks
    0
    Thanked 10 Times in 2 Posts
    TAMGc5: PhII X4 945, Gigabyte GA-MA790X-UD3P, 2x Kingston PC2-6400 HyperX CL4 2GB, 2x ASUS HD 5770 CUcore Xfire, Razer Barracuda AC1, Win8 Pro x64 (Current)

    TAMGc6: AMD FX, Gigabyte GA-xxxx-UDx, 8GB/16GB DDR3, Nvidia 680 GTX, ASUS Xonar, 2x 120/160GB SSD, 1x WD Caviar Black 1TB SATA 6Gb/s, Win8 Pro x64 (Planned)

  9. #9
    Xtreme Cruncher masterg's Avatar
    Join Date
    Oct 2006
    Location
    A place the sun don't shine (Seattle)
    Posts
    1,186
    Thanks
    18
    Thanked 13 Times in 10 Posts
    Quote Originally Posted by Syn. View Post
    thats what they tell you <_<
    Intel C2Q Q9550 2.83ghz :: Intel DQ45CB :: 4 x 2gb OCZ DDR2 PC2-8500 Reaper HPC :: ASUS EAH5850 :: Thermaltake TR2 RX 750w :: Western Digital Caviar Black 4 x 750gb in RAID 10
    Intel e3-1235 3.3ghz :: Intel s1200kp :: 4gb kingston hyperX 1600mhz :: WD 500gb Cavier Green
    Intel i7-3770k 4.4ghz :: msi z77ma-g45 :: 8 gb patriot Signature 1600mhz :: 160gb WD Cavier :: 5830 + 5870 CF :: Antec Earthwatts 650w


    "...all men die, and no brave man lets death frighten him from his desire..."

  10. #10
    Xtreme Enthusiast Pontos's Avatar
    Join Date
    Jan 2008
    Posts
    637
    Thanks
    0
    Thanked 0 Times in 0 Posts
    Every day I regret buying Settlers 7 more and more...
    Good thing i reformatted my PC a few months ago and didn't reinstall it yet. Will wait until it's confirmed this has been addressed before I even consider installing it.

    Guess that I'll not be buying HoM&M6 and Anno 2070 anytime soon, which pisses me to no end since i want to give Ubisoft my money. They just do everything they can to convince me otherwise.

  11. #11
    Xtreme Addict NEOAethyr's Avatar
    Join Date
    Sep 2010
    Location
    US, MI (Muskegon)
    Posts
    1,247
    Thanks
    16
    Thanked 14 Times in 14 Posts
    Quote Originally Posted by lutjens View Post
    Next steps:

    1) Gamers get ticked after reading stuff like this about the crappy DRM on Ubisoft's games and stop buying them.
    2) Sales fall through the floor.
    3) Ubisoft blames the drop in sales on piracy and throws more DRM on their games.
    4) And we head back to step 1...

    Self fulfilling prophecy, IMHO...
    Offtopic.
    They sure spend lots of time and money on drm while the user has to spend there time removing it.
    What's funny is we pay in cash for this just so they can repeat this.
    Sometimes it's so bad that game plain don't work.
    Which leads me to believe sometimes that they spend more time on drm then they do bug testing the games.

    I hate to admit in the public this, since it's really a nono.
    But cracks are the way to go, only verified/grouped none virus'ed ones of course.
    Maybe you can't go online with it, but at least the games plays, and without the junk that bogs up your system.
    Last edited by NEOAethyr; 07-30-2012 at 01:30 PM.


    CPU: AMD Phenom 1090T
    CPU Heatsink: NZXT Kraken X60
    Mobo: ASUS Crosshair IV Formula (2101 BIOS)
    MEM: 2x 4gig ADATA XPG Gaming Series v2.0 [AX3U2000GC4G9B-DG2] (Hynix H9C-BFR)
    PSU: Seasonic X-750
    VGA: nVidia Grid VGX K2 (Only got 1 out of the 2 gpu's at the moment)
    Monitor: ASUS VG278HE & 3DVision2 Kit
    Drives: 2x WD Green 1TB Modified Drives (RAID 0), Corsair Force Series 3 CSSD-F60GB3A-BK 60GB SATA3 SSD, Pioneer BDR-2208 Blue Ray Burner
    Case: Rosewill Blackhawk Ultra
    OS's: Windows 2003 Enterprise x86 SP2-R2 VLM, Windows 7 Standard Embedded x86 SP1 EVL (128GB Patched)
    Mouse: Razer Abyssus (I smashed this because of a usb comflict, still have the prob though afterwards ..., using generic mouse for now)
    777

    Just ordered an Samsung Galaxy S IV i9500 Octo-Core Quad Band 16gb Unlocked.
    Should be getting the screen protector anyday now.
    Also got 64gig micro sd card but it turned out it's a bad card, rma'ing.


  12. #12
    Xtreme Mentor SKYMTL's Avatar
    Join Date
    Aug 2007
    Posts
    3,430
    Thanks
    9
    Thanked 284 Times in 110 Posts
    Who cares if it has been patched. It should never have been there to begin with for crying out loud!

    Governments are so eager to go after Microsoft, Google, etc. Time to bring some serious charges against Ubisoft in this case.

  13. #13
    Xtreme Addict NEOAethyr's Avatar
    Join Date
    Sep 2010
    Location
    US, MI (Muskegon)
    Posts
    1,247
    Thanks
    16
    Thanked 14 Times in 14 Posts
    I don't think it needs to goto court if they are willing to dump drm...
    They would never do that though.


    CPU: AMD Phenom 1090T
    CPU Heatsink: NZXT Kraken X60
    Mobo: ASUS Crosshair IV Formula (2101 BIOS)
    MEM: 2x 4gig ADATA XPG Gaming Series v2.0 [AX3U2000GC4G9B-DG2] (Hynix H9C-BFR)
    PSU: Seasonic X-750
    VGA: nVidia Grid VGX K2 (Only got 1 out of the 2 gpu's at the moment)
    Monitor: ASUS VG278HE & 3DVision2 Kit
    Drives: 2x WD Green 1TB Modified Drives (RAID 0), Corsair Force Series 3 CSSD-F60GB3A-BK 60GB SATA3 SSD, Pioneer BDR-2208 Blue Ray Burner
    Case: Rosewill Blackhawk Ultra
    OS's: Windows 2003 Enterprise x86 SP2-R2 VLM, Windows 7 Standard Embedded x86 SP1 EVL (128GB Patched)
    Mouse: Razer Abyssus (I smashed this because of a usb comflict, still have the prob though afterwards ..., using generic mouse for now)
    777

    Just ordered an Samsung Galaxy S IV i9500 Octo-Core Quad Band 16gb Unlocked.
    Should be getting the screen protector anyday now.
    Also got 64gig micro sd card but it turned out it's a bad card, rma'ing.


  14. #14
    Xtreme Addict Syn.'s Avatar
    Join Date
    Dec 2005
    Location
    UK
    Posts
    1,714
    Thanks
    0
    Thanked 10 Times in 2 Posts
    Quote Originally Posted by SKYMTL View Post
    Who cares if it has been patched. It should never have been there to begin with for crying out loud!

    Governments are so eager to go after Microsoft, Google, etc. Time to bring some serious charges against Ubisoft in this case.
    Will see if anyone goes for it.

    http://www.dailytech.com/article.aspx?newsid=25289
    TAMGc5: PhII X4 945, Gigabyte GA-MA790X-UD3P, 2x Kingston PC2-6400 HyperX CL4 2GB, 2x ASUS HD 5770 CUcore Xfire, Razer Barracuda AC1, Win8 Pro x64 (Current)

    TAMGc6: AMD FX, Gigabyte GA-xxxx-UDx, 8GB/16GB DDR3, Nvidia 680 GTX, ASUS Xonar, 2x 120/160GB SSD, 1x WD Caviar Black 1TB SATA 6Gb/s, Win8 Pro x64 (Planned)

  15. #15
    I am Xtreme zanzabar's Avatar
    Join Date
    Jul 2007
    Location
    SF bay area, CA
    Posts
    15,059
    Thanks
    20
    Thanked 100 Times in 78 Posts
    Quote Originally Posted by SKYMTL View Post
    Who cares if it has been patched. It should never have been there to begin with for crying out loud!

    Governments are so eager to go after Microsoft, Google, etc. Time to bring some serious charges against Ubisoft in this case.
    it did not get patched, it dose not actively run in the background unless it is open now. if you leave it open it still will take info from the browser if you sign it with ubis key (and it is so hard to fake a known key.) and it still is a root kit. do they not understand that they should not install background hidden services and uplay even changes system 32files and loads a hidden driver.
    3770k, M5E, kingston 2x4GB cfr
    samsung 2TB F4EG, samsung 840 250GB , CM690II, corsair 750tx

  16. #16
    Xtreme Enthusiast
    Join Date
    Feb 2007
    Location
    So near, yet so far.
    Posts
    721
    Thanks
    29
    Thanked 11 Times in 5 Posts
    Why does UBI has to fail a lot? Seems like they have issues each year since yesteryears - a thing other than releasing games prolly. LOL!
    Too bad, I'm a fan on some of their titles.


    Ooh wait, I won't be surprised if Blizzard follows; w/ something like this news.
    [[Daily R!G]]
    Core i7 920 D0 @ 4.0GHz w/ 1.325 vcore.
    Rampage II Gene||CM HAF 932||HX850||MSI GTX 660ti PE OC||Corsair H50||G.Skill Phoenix 3 240GB||G.Skill NQ 6x2GB||Samsung 2333SW

    flick

  17. #17
    Xtreme Member schoolslave's Avatar
    Join Date
    Jan 2007
    Posts
    246
    Thanks
    2
    Thanked 0 Times in 0 Posts
    Did anyone read the link?
    Apparently it is ONLY the browser plug-in that causes this issue.....
    Asus Gene Z
    2600k @ stock
    8Gb G Skill Ripjaws @ 1600Mhz 7-8-7 1.5V
    eVGA GTX 570 Classified @ stock
    Intel 320 80Gb
    Intel 320 120Gb x2

  18. #18
    Xtreme Addict Chrono Detector's Avatar
    Join Date
    May 2009
    Posts
    1,042
    Thanks
    0
    Thanked 4 Times in 4 Posts
    Another reason why you should avoid Ubisoft's products like a plague. Not only they force you with unnecessary DRM and now there are security exploits? Epic fail, what a load of bull.
    PC 1: Intel Core i7 3930K | 32GB DDR3 G.Skill Ripjaws X 2133Mhz | Gigabyte GTX 670 SLI | Corsair AX1200 watt Power Supply | 20x LG SATA DVD+/- RW | LG BluRay/HD DVD Combo Drive| Logitech Z-5500 5.1 speakers | 42" Toshiba 42XL700a at 1920x1080 1080p | Gigabyte GA-X79S-UP5 | Aerocool Strike-X ST Black | 1x OCZ Vertex 3 240GB SSD | 1x 1TB Western Digital Hard Drive | 1x 2TB Western Digital Hard Drive | Windows 7 x64 Ultimate RTM

  19. #19
    Xtreme Member schoolslave's Avatar
    Join Date
    Jan 2007
    Posts
    246
    Thanks
    2
    Thanked 0 Times in 0 Posts
    Disabled the plugin in firefox, tried using that link to test the "exploit", nothing happens.
    Easy fix.

    I am also frustrated by UBI's terrible choice in DRM schemes, but this has once again just been blown way out of proportion.

    Also, I like that Uplay stores my ACII saves online, so when I switch PCs/play at a friend's house, I can continue right from where I left off.
    Asus Gene Z
    2600k @ stock
    8Gb G Skill Ripjaws @ 1600Mhz 7-8-7 1.5V
    eVGA GTX 570 Classified @ stock
    Intel 320 80Gb
    Intel 320 120Gb x2

  20. #20
    Xtreme Addict naokaji's Avatar
    Join Date
    Mar 2008
    Location
    横浜市
    Posts
    2,023
    Thanks
    16
    Thanked 15 Times in 11 Posts
    Quote Originally Posted by schoolslave View Post
    I am also frustrated by UBI's terrible choice in DRM schemes, but this has once again just been blown way out of proportion.
    Did you wish to give Ubisoft the right to send executables to your pc and run them without any further interaction / verification / approval from you? If the answer is no, then what they did it is very much a problem.


    One point to Ubisoft though, it is indeed not a Rootkit, but 1 million or so points will be deducted right away from Ubisoft for conning their legitimate Customers into installing a Trojan.
    Last edited by naokaji; 07-31-2012 at 08:34 AM.
    Gaming Pc: I7-3770K, Maximus V Gene, 16GB G.Skill TridentX 2400, MSI GTX 570 Twin Frozr III, 2x 256GB Samsung 830 Raid 0, 4TB Hitachi Deskstar, Seasonic M12 700W, Cosmos S, EK Supreme HF, 18W Laing DDC + XSPC Res Top, Blackice GTX 360 Rad

    HTPC: I5-2500K, MSI Z77MA-G45, 8GB Corsair XMS 2000, XFX Radeon 6770, 128GB Crucial C300, Lian Li V352
    Mobile: Vaio Z, Nexus 7

  21. #21
    Xtreme Member schoolslave's Avatar
    Join Date
    Jan 2007
    Posts
    246
    Thanks
    2
    Thanked 0 Times in 0 Posts
    Quote Originally Posted by naokaji View Post
    Did you wish to give Ubisoft the right to send executables to your pc and run them without any further interaction / verification / approval from you? If the answer is no, then what they did it is very much a problem.


    One point to Ubisoft though, it is indeed not a Rootkit, but 1 million or so points will be deducted right away from Ubisoft for conning their legitimate Customers into installing a Trojan.
    Yes, Ubisoft, without a doubt, intentionally intended Uplay to work this way and install malicious software.
    Without a doubt, Ubisoft wanted to open every computer to the attacks of the interwebs, just like Sony when they intentionally stored CCs and passwords in unencrypted files.
    Obviously, someone somewhere made a mistake/didn't know what to do.
    And please remember, NOT A SINGLE computer was actually infected/damaged in ANY way WHATSOEVER.

    If you want to be "safe", put on your tinfoil hat and hide somewhere in the middle of nowhere. Fact is, no matter what, every time you connect to the internet there is a slight chance some program/website/cookie/script something will alter a file or whatever on your PC.

    I'm not defending Ubisoft per se, but maybe people should start thinking before jumping on ridiculous bandwagons all the time ("Big publisher = bad evil spawn of satan").
    Asus Gene Z
    2600k @ stock
    8Gb G Skill Ripjaws @ 1600Mhz 7-8-7 1.5V
    eVGA GTX 570 Classified @ stock
    Intel 320 80Gb
    Intel 320 120Gb x2

  22. #22
    Xtreme Enthusiast
    Join Date
    Oct 2008
    Posts
    547
    Thanks
    6
    Thanked 6 Times in 5 Posts
    Intended or not, it's their responsibility to either
    1) Allow us full cashback and return of their software
    2) Prevent security problems so that we can keep and use their software

    Theyve shirked both.
    It's not an entire operating system. They should be able to plug the holes in uplay.

    Also, uplay was never truly necessary to the consumer. Even accounting for saving games to the cloud, that could have been implemented in the game itself via registration. Heck, it could be done entirely offline with a "backup saved games to usb" option!

    Quote Originally Posted by schoolslave View Post
    Yes, Ubisoft, without a doubt, intentionally intended Uplay to work this way and install malicious software.
    Without a doubt, Ubisoft wanted to open every computer to the attacks of the interwebs, just like Sony when they intentionally stored CCs and passwords in unencrypted files.
    Obviously, someone somewhere made a mistake/didn't know what to do.
    And please remember, NOT A SINGLE computer was actually infected/damaged in ANY way WHATSOEVER.

    If you want to be "safe", put on your tinfoil hat and hide somewhere in the middle of nowhere. Fact is, no matter what, every time you connect to the internet there is a slight chance some program/website/cookie/script something will alter a file or whatever on your PC.

    I'm not defending Ubisoft per se, but maybe people should start thinking before jumping on ridiculous bandwagons all the time ("Big publisher = bad evil spawn of satan").
    Quote Originally Posted by informal View Post
    Today: "MPAA threatens to disconnect Google from the Internet"
    Tomorrow: "Google removes MPAA term from its search engine"
    Day after tomorrow: "No one remembers who or what MPAA is , nor cares anymore"

+ Reply to Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts