Slashdot Mirror


Spyware Analysis of P2P Software

rhizome writes "Benjamin Edelman, a PhD candidate in Economics and a Law student at Harvard, has analyzed the hidden (or not) additions to a user's machine when they install some of the major Windows P2P clients. He analyzes the length and readabilty of their licenses, what is revealed or hidden in the software's installer and includes screenshots for illustration. Clear, concise and eye-opening."

8 of 200 comments (clear)

  1. Relevant section by Anonymous Coward · · Score: 4, Informative

    The relevant parts, for people who can't or don't want to RTFA:

    My testing uncovered no bundled software installed without at least some disclosure apparent in a careful and complete reading of all applicable installation license agreements. However, it is possible that programs were installed that I failed to detect, especially if bundled program installations were set to be delayed after installation of the requested P2P software.

    Although each P2P installer included at least a vague reference to each program to be installed, certain P2P programs' installation procedures nonetheless present cause for concern. For one, substantive disclosures are generally detailed only in license agreements presented in scroll boxes -- often squeezing thousands of words of text into small windows requiring dozens of page-downs to view in full.

  2. Comment removed by account_deleted · · Score: 4, Informative

    Comment removed based on user account deletion

  3. What programs were included by bedelman · · Score: 5, Informative

    Robogun,

    Preparing these detailed analyses is surprisingly time-consuming -- lots of license text to read, lots of screenshots to make, lots of measurements and other tests (registry, filesystem, etc.). So at least for this initial run, I had to limit myself to a manageable number of P2P programs. In general I tried to focus on the programs believed to have largest market share -- the programs that would infect the most PCs with unwanted software if such programs in fact contain unwanted software.

    WinMX would be a good candidate for inclusion in a follow-up piece. And there are plenty more too.

    Or perhaps someone else will be so kind as to take over where I've left off!

    Ben

  4. FYI: (was:Little-Known Spyware EULA Provisions) by Lead+Butthead · · Score: 5, Informative

    Bubonic plague is a bacterial infection, not a viral infection.

    --
    ELOI, ELOI, LAMA SABACHTHANI!?
  5. Re:Lawyer, economist, and paid shill? by digitalchinky · · Score: 4, Informative

    What exactly was your experience? LimeWire, to me, appears to do exactly as he said. Nothing more, nothing less. I don't think he sold out there.

    Shareaza is missing from the list, but is very similar to LimeWire - might be a good alternative (note: shareaza, not sharaza!)

    http://www.shareaza.com/

  6. Re:Lawyer, economist, and paid shill? by Vengie · · Score: 4, Informative

    I spent about an hour talking to Ben at the Yahoo! party last week. I can assure you that he is by no means shilling for anyone. His feelings on the matter are pretty strong, and he sells himself on the integrity you mention.

    --
    When in doubt, parenthesize. At the very least it will let some poor schmuck bounce on the % key in vi. (Larry Wall)
  7. Re:None of the Open Source ones checked? by mlinksva · · Score: 4, Informative

    LimeWire is open source and is safe. I did a quick check of several other open source P2P apps (BitTorrent, eMule, Phex, and Shareaza). None are bundled with malware and if they have a license agreement it is only the GPL. All of the proprietary apps checked are unsafe, and it is well known that others not checked (e.g., Grokster) are also not safe.

  8. Re:just a question by MarkGriz · · Score: 4, Informative

    Not necessarily the "best", but Shareaza is very good, for a number of reasons:

    - Works well (IMHO)
    - Open source and Free (beer)
    - Connects to Gnutella, Gnutella2 and Emule networks
    - Built-in bittorrent support.

    --
    Beauty is in the eye of the beerholder.