Windows Genuine Advantage

Last updated
Windows Genuine Advantage
Developer(s) Microsoft
Stable release
1.9.42.0 / June 26, 2009;14 years ago (2009-06-26)
Operating system Windows XP to Windows 7
Platform IA-32, x86-64
Type Copy protection, digital rights management
License Proprietary (same as Windows)
Website www.microsoft.com/genuine/   OOjs UI icon edit-ltr-progressive.svg

Windows Genuine Advantage (WGA) was an anti-infringement system created by Microsoft used to validate the licences of several Microsoft Windows operating systems upon accessing services such as Windows Update and Microsoft Download Center.

Contents

It consisted of two components: an installable component called WGA Notifications that hooks into Winlogon and validates the Windows license upon each logon and an ActiveX control that checks the validity of the Windows license when downloading certain updates from the Microsoft Download Center or Windows Update.

WGA Notifications covered Windows XP and later, with the exception of Windows Server 2003 and Windows XP Professional x64 Edition.

The ActiveX Control checked Windows 2000 Professional licenses as well. [1]

In Windows 7, WGA was renamed Windows Activation Technologies. [2]

Despite its name it does not actually evaluate the integrity or security of any computer. [3]

Features

Windows Genuine Advantage Notification in Windows XP WGA Notice.png
Windows Genuine Advantage Notification in Windows XP

The WGA validation process validates the present installation of Windows and its license key against the detected computer hardware and determines if the software was licensed from Microsoft. It is accessible by either a stand-alone program, a Netscape-compatible web browser plug-in, or as an ActiveX control within Internet Explorer, the latter of which is relevant to any attempt to access Microsoft updates via its browser. It includes the following steps:

The ActiveX control is downloaded on the first validation and when a new version is available, but the validation itself can be performed any time the user connects to a Microsoft Website to update.

On Windows Vista without service packs, WGA validation failure has a greater impact. In addition to persistent notification and the disabling of non-critical updates, WGA also disables Windows Aero, Windows Defender and Windows ReadyBoost. The user is given a grace period in which to then pass validation, after which most of the operating system is disabled and Windows reverts to reduced functionality mode. This behavior however has been removed in Service Pack 1 of Windows Vista in favor of prominent notices on systems believed unlicensed.

Software

WGA Validation Tool

A successful activation on Windows Server 2008 Enterprise (same dialog will show on Windows Vista and Windows 7) Wpa-success-win2k8.png
A successful activation on Windows Server 2008 Enterprise (same dialog will show on Windows Vista and Windows 7)

When a user installs Windows Genuine Advantage, an Internet Explorer add-on is installed labeled "Windows Genuine Advantage".

In early releases the tool could be readily disabled with the IE Add-on Management feature.

A Windows Group Policy was added by later updates, causing this option to be unavailable by default, but still accessible if the policy were removed. As of July 2006, the latest update blocks management by other means.

The program uses either a stand-alone program to generate a key or an ActiveX control to discover whether the license key is valid; either way an Internet connection is required.

On Windows XP, if WGA determines that a user's copy of Windows is unauthorized but was installed from seemingly legitimate media (i.e., the CD/DVD and holographic emblem present on real copies of Windows seems genuine), then Microsoft will supply the user with a new CD/DVD. However, newer versions of Windows will still require the user to purchase a new copy. Microsoft also offers discounts to people who want to purchase a legitimate copy of Windows but do not have a valid CD. Microsoft has indicated that they will continue to deliver critical security updates through their Automatic Updates service as well as via the Microsoft Download Center, so that all systems, including those that fail to pass validation, will still continue to receive critical security updates.

The company has made installation of Windows Genuine Advantage a requirement for use of the Windows Update and Microsoft Update websites, in part to be sure that customers who use support resources of the company are aware when their software is unlicensed. According to Microsoft themselves, it is legal to run Microsoft Windows without Windows Genuine Advantage [ citation needed ].

However, since non-critical Windows updates are not presented by Automatic Updates, installation of WGA is required for installation of such non-critical updates, which are only available through Windows Update or the Microsoft Download Center.

WGA Notifications

On April 25, 2006, Microsoft began distributing Windows Genuine Advantage Notifications [4] as "critical update" KB905474 to Windows users. For Windows 7, KB971033 has the same function. [5] Back in 2006, users with copies the WGA believed to be unlicensed were exposed to alerts [6] at startup, login, and during use of the Windows OS, stating that they do not have a genuine copy of Windows. Users with legitimate copies are not supposed to see the alerts (although some do anyway [7] ). On May 23, 2006, Microsoft updated the program, closing some forms of circumvention, but reportedly not all. [8] It was updated again on May 30, June 6 and June 27, 2006, though some forms of circumvention are still usable. The latest versions do not roll out worldwide at the same time: the dates given are the earliest dates on which the versions appeared, so the actual version being offered in some places will be an earlier version than the latest release. It is still possible to opt out of receiving this update using the "do not show" option at the Windows Update site (Windows XP), and the "Hide" option in the right-click menu of Windows Update in Control Panel (Windows Vista/7/8). In addition to these notifications, Windows Genuine Advantage will also notify users with the message "This version of Windows XP is no longer secure" if users on an XP Operating System are not using Service Pack 3, and it will provide a link to help users to update their systems to the new service pack.

The version of Windows Genuine Advantage Notifications released November 29, 2006, had a changed install process to inform the user of what the program does, and can also be set to automatically update to newer versions of Windows Genuine Advantage Notifications. It also informs users that may have a non-genuine version of Windows why their Windows version isn't being reported as genuine. However, unlike previous releases, it started being only automatically delivered to Windows machines using four widely distributed product keys. [9]

The latest update (version 1.9.0040.0) was released on March 24, 2009.

WGA Validation Library

Microsoft includes the Windows Genuine Advantage Validation Library in several products, such as Windows validation tool or Windows Media Player 11, to check the validation about all Windows software. As of version 7, Internet Explorer no longer requires the user to pass a Windows Genuine Advantage test in order to download or install the software.

The WGA Validation Library is also included in the Microsoft Security Essentials 2.0 and validate the Windows installation whether it is legitimate or not. The program will stop working after 30 days once it failed the validation process.

The information is then used in the WGA Library to check for overuse of license keys.

Circumvention

In September 2005, Microsoft filed lawsuits against a number of companies that sold unauthorized copies of software based on information from users who were told they have copyright infringing software by the Windows Genuine Advantage application. [10]

On May 4, 2006, Microsoft announced lawsuits for allegedly distributing unauthorized copies of Windows against eDirectSoftware of Montana, and Chicago-area resellers Nathan Ballog and Easy Computers. [11]

Notifications and firewalls

Some personal firewalls, though not one embedded in Windows, may alert on the method by which wgatray.exe is started; in the case of Outpost firewall, it is identified as a "hidden process". The wgatray.exe process itself can be firewall blocked, without apparent problems.[ citation needed ]

A tool has been released by a firewall vendor to prevent WGA Notifications transmitting information from one's PC. [12]

Data collected

Through Windows Genuine Advantage, Microsoft collects the following data: [13] [14]

WGA in China

An example of a Simplified Chinese WGA notice. Chinese Windows XP with WGA problem.jpg
An example of a Simplified Chinese WGA notice.

On October 20, 2008, many users of Windows XP in China received a black desktop, as Microsoft introduced its WGA system for Chinese language systems [15] [16] [17] in an effort to combat copyright violation, which is extremely common in China.

Since the majority of users in China run unlicensed copies of Windows, many users have experienced what is described as a "black screen syndrome", where the operating system changes the desktop background to a black screen, as well as displays constant warning messages. [18] [19]

Some users have even reported the disabling of Office programs such as Microsoft Word, PowerPoint and Outlook. [20]

According to various polls carried out by Chinese portals such as Sohu.com, QQ.com, 21cn.com, and many others, a large number (over 60% of those surveyed) of Chinese Internet users are hostile to Microsoft Windows Genuine Advantage (WGA) and Office Genuine Advantage (OGA). [21]

Criticisms

Time bomb

Even if WGA does not really make the operating system unusable, no updates except critical ones can be downloaded from Microsoft. Rather than just disallowing updating, Windows Vista originally ran in reduced-functionality mode if found by WGA to be compromised [22] [23] if a product has not been considered genuine which has made some people compare WGA to time bomb software. [24] [25] [26] Windows Vista SP2 has removed this behavior and reverted to the nag-only methods of Windows XP. [27]

Spyware accusations

The notification tool has been accused of spyware-like behavior, "phoning home" on a daily basis. [28] [29] [30] Microsoft subsequently admitted the behaviour, but denied that it amounted to spyware. [31] [32] Following pressure, Microsoft announced that in future the tool would only phone home once every two weeks, instead of every day. [33] Microsoft has also provided removal instructions for the pilot version of WGA. [34]

Despite this, Microsoft was sued under anti-spyware statutes over WGA's non-disclosed "phone home" behaviour. [35] The lawsuit has since been dismissed. [36]

False positive rate

The WGA program can produce false positives (incorrectly identifying a genuine copy of Windows as "not genuine"). This can happen for any number of reasons such as failed updates, etc. Microsoft has established a forum to help users encountering problems. [37] In February 2007, a "Not Sure" section was added to the program, in case of an incorrect reading. [38]

According to an Ars Technica editorial, WGA reported around 22% of 500 million Windows computers as failing the test; of these less than 0.5% were due to unauthorized software, with the balance (over 20%, or 90% of all positives) related to edge cases. Microsoft "refused to comment on the rate of pure false positives" beyond saying it was "under 1%" (or as stated, at most around 5 million users affected). [39]

False negatives

On June 18, 2007, it surfaced that it is possible to positively validate as a "Genuine Microsoft Product" user (and as a result be able to download certain software from Microsoft's official website) using Internet Explorer with IEs4Linux and Wine, running on Linux, [3] without having Windows installed.

Major failures in WGA system

On October 5, 2006, a WGA failure occurred, incorrectly flagging some systems as being non-genuine. [40]

On August 25, 2007, the Microsoft WGA servers suffered an outage, resulting in many legitimate copies of Windows XP and Vista being marked as counterfeit. [41]

The issue was solved about 12 hours later. According to Microsoft, "fewer than 12,000 systems were affected worldwide." [42]

On July 18, 2008, reports of Microsoft's WGA and OGA servers being offline surfaced again. Microsoft later responded that only offline verification was temporarily down. [43]

See also

Related Research Articles

Spyware is any software with malicious behavior that aims to gather information about a person or organization and send it to another entity in a way that harms the user by violating their privacy, endangering their device's security, or other means. This behavior may be present in malware and in legitimate software. Websites may engage in spyware behaviors like web tracking. Hardware devices may also be affected.

<span class="mw-page-title-main">Windows XP</span> Microsoft PC operating system released in 2001

Windows XP is a major release of Microsoft's Windows NT operating system. It was released to manufacturing on August 24, 2001, and later to retail on October 25, 2001. It is a direct upgrade to its predecessors, Windows 2000 for high-end and business users and Windows Me for home users, and is available for any devices running Windows NT 4.0, Windows 98, Windows 2000, or Windows Me that meet the new Windows XP system requirements.

<span class="mw-page-title-main">Windows Update</span> Software update distribution service for Microsoft Windows

Windows Update is a Microsoft service for the Windows 9x and Windows NT families of the Microsoft Windows operating system, which automates downloading and installing Microsoft Windows software updates over the Internet. The service delivers software updates for Windows, as well as the various Microsoft antivirus products, including Windows Defender and Microsoft Security Essentials. Since its inception, Microsoft has introduced two extensions of the service: Microsoft Update and Windows Update for Business. The former expands the core service to include other Microsoft products, such as Microsoft Office and Microsoft Expression Studio. The latter is available to business editions of Windows 10 and permits postponing updates or receiving updates only after they have undergone rigorous testing.

<span class="mw-page-title-main">Microsoft Defender Antivirus</span> Anti-malware software

Microsoft Defender Antivirus is an antivirus software component of Microsoft Windows. It was first released as a downloadable free anti-spyware program for Windows XP and was shipped with Windows Vista and Windows 7. It has evolved into a full antivirus program, replacing Microsoft Security Essentials in Windows 8 or later versions.

<span class="mw-page-title-main">Internet Explorer 7</span> Web browser for Windows

Windows Internet Explorer 7 (IE7) is a web browser for Windows. It was released by Microsoft on October 18, 2006, as the seventh version of Internet Explorer and the successor to Internet Explorer 6. Internet Explorer 7 is part of a long line of versions of Internet Explorer and was the first major update to the browser since 2001. It was the default browser in Windows Vista and Windows Server 2008, as well as Windows Embedded POSReady 2009, and can replace Internet Explorer 6 on Windows XP and Windows Server 2003, but unlike version 6, this version does not support Windows 2000, Windows ME, or earlier versions of Windows. It also does not support Windows 7, Windows Server 2008 R2 or later Windows Versions.

<span class="mw-page-title-main">Windows Live OneCare</span> Discontinued Microsoft security software

Windows Live OneCare was a computer security and performance enhancement service developed by Microsoft for Windows. A core technology of OneCare was the multi-platform RAV, which Microsoft purchased from GeCAD Software Srl in 2003, but subsequently discontinued. The software was available as an annual paid subscription, which could be used on up to three computers.

<span class="mw-page-title-main">System Restore</span> System recovery feature in Microsoft Windows

System Restore is a feature in Microsoft Windows that allows the user to revert their computer's state to that of a previous point in time, which can be used to recover from system malfunctions or other problems. First included in Windows Me, it has been included in all following desktop versions of Windows released since, excluding Windows Server. In Windows 10, System Restore is turned off by default and must be enabled by users in order to function. This does not affect personal files such as documents, music, pictures, and videos.

<span class="mw-page-title-main">Windows Vista</span> Seventh major release of Windows NT

Windows Vista is a major release of Microsoft's Windows NT operating system. It was released to manufacturing on November 8, 2006, and became generally available on January 30, 2007, on the Windows Marketplace, the first release of Windows to be made available through a digital distribution platform. Vista succeeded Windows XP (2001); at the time, the five-year gap between the two was the longest time span between successive Windows releases.

<span class="mw-page-title-main">AutoPatcher</span> Offline updater

AutoPatcher is an offline updater and alternative to Microsoft Update that can be used for installing software patches, service packs and other updates for certain Microsoft Windows systems. It allows these to be downloaded on a different machine or in advance, and then installed without an internet connection. By doing this, system updates can be automated and scripted, time and bandwidth required to download relevant updates is reduced, and exposure of unsecured systems online can be avoided. AutoPatcher also allows installation of some common additional software, registry settings, and patches for other Microsoft software, notably Microsoft Office.

In software licensing, volume licensing is the practice of using one license to authorize software on a large number of computers and/or for a large number of users. Customers of such licensing schemes are typically business, governmental or educational institutions, with prices for volume licensing varying depending on the type, quantity and applicable subscription-term. For example, Microsoft software available through volume-licensing programs includes Microsoft Windows and Microsoft Office.

<span class="mw-page-title-main">Windows Firewall</span> Firewall software for Windows

Windows Firewall is a firewall component of Microsoft Windows. It was first included in Windows XP SP2 and Windows Server 2003 SP1. Before the release of Windows XP Service Pack 2, it was known as the "Internet Connection Firewall."

Google Pack was a collection of software tools offered by Google to download in a single archive. It was announced at the 2006 Consumer Electronics Show, on January 6. Google Pack was only available for Windows XP, Windows Vista, and Windows 7.

Criticism of Windows XP deals with issues with security, performance and the presence of product activation errors that are specific to the Microsoft operating system Windows XP.

Office Genuine Advantage (OGA) was a program by Microsoft, similar to Windows Genuine Advantage (WGA), which required users of the Microsoft Office software to validate their copy of Microsoft Office to download non-critical updates and other downloads such as addons and samples.

There are a number of security and safety features new to Windows Vista, most of which are not available in any prior Microsoft Windows operating system release.

Windows Vista, an operating system released by Microsoft for consumers on January 30, 2007, has been widely criticized by reviewers and users. Due to issues with new security features, performance, driver support and product activation, Windows Vista has been the subject of a number of negative assessments by various groups.

<span class="mw-page-title-main">Security and Maintenance</span> Microsoft Windows software

Security and Maintenance is a component of the Windows NT family of operating systems that monitors the security and maintenance status of the computer. Its monitoring criteria includes optimal operation of antivirus software, personal firewall, as well as the working status of Backup and Restore, Network Access Protection (NAP), User Account Control (UAC), Windows Error Reporting (WER), and Windows Update. It notifies the user of any problem with the monitored criteria, such as when an antivirus program is not up-to-date or is offline.

Windows XP and Windows Vista differ considerably in regards to their security architecture, networking technologies, management and administration, shell and user interface, and mobile computing. Windows XP has suffered criticism for security problems and issues with performance. Vista has received criticism for issues with performance and product activation. Another common criticism of Vista concerns the integration of new forms of DRM into the operating system, and User Account Control (UAC) security technology.

<span class="mw-page-title-main">Microsoft Product Activation</span> DRM mechanism used by Microsoft

Microsoft Product Activation is a DRM technology used by Microsoft Corporation in several of its computer software programs, most notably its Windows operating system and its Office productivity suite. The procedure enforces compliance with the program's end-user license agreement by transmitting information about both the product key used to install the program and the user's computer hardware to Microsoft, inhibiting or completely preventing the use of the program until the validity of its license is confirmed.

References

  1. "The Windows Genuine Advantage (WGA) validation check process does not complete when you try to validate your copy of Windows Vista, Windows XP, or Windows 2000 Professional". Microsoft. Archived from the original on 2009-03-14. Retrieved 2009-04-13.
  2. "WGA dubbed Windows Activation Technologies with Windows 7". 7 May 2009. Archived from the original on 2012-01-12. Retrieved 2017-06-15.
  3. 1 2 "Ubuntu Linux Validates As Genuine Windows". Slashdot. 2007-06-18. Archived from the original on 2019-04-02. Retrieved 2019-02-26.
  4. Microsoft.com – Description of the Windows Genuine Advantage Notifications application Archived 2010-06-18 at the Wayback Machine , retrieved June 13, 2006
  5. "Description of the update for Windows Activation Technologies". Archived from the original on 2015-02-23. Retrieved 2011-04-30.
  6. Agarwal, Amit. "WGA Notifications: This copy of Windows is not genuine". Digital Inspiration. Archived from the original on 30 June 2006. Retrieved 17 September 2021.
  7. Announcement on usenet entitled "Windows Genuine Advantage – warning appears on activated machine" by Rubert Sland
  8. Sydney Morning Herald – Microsoft back to drawing board on piracy Archived 2016-04-14 at the Wayback Machine , retrieved June 13, 2006
  9. MSDN Blogs – New Windows Genuine Advantage Notifications Released Archived 2010-01-25 at the Wayback Machine , retrieved December 3, 2006
  10. "Microsoft Files Lawsuits to Protect Consumers and Software Resellers" (Press release). Archived from the original on September 10, 2012. Retrieved June 13, 2006.
  11. InformationWeek – Microsoft: Users may have to prove legal Windows use Archived 2007-12-23 at the Wayback Machine , retrieved June 13, 2006
  12. "The Register – How to stop Microsoft's WGA phoning home". The Register . Archived from the original on 2017-08-10. Retrieved 2017-08-10.
  13. What data is collected? -Microsoft Archived 2016-06-24 at the Wayback Machine , retrieved May 2012
  14. Microsoft's Calling Home Problem: It's a Matter of Informed Consent Archived 2015-02-20 at the Wayback Machine , retrieved October 20
  15. "微软发出"黑色提醒"". Archived from the original on 2012-03-20. Retrieved 2008-10-20.
  16. "微软开始打击盗版 桌面背景变为黑色". 15 October 2008. Archived from the original on 2017-07-07. Retrieved 2008-10-20.
  17. Schiffman, Betsy. "Microsoft Peeves Chinese With Anti-Piracy Tactics – Wired.com". Wired. Archived from the original on 2009-02-20. Retrieved 2008-10-20.
  18. "对网上盛传的《微软详解Vista SP1封杀盗版激活》三点质疑". Archived from the original on 2012-03-20. Retrieved 2008-10-20.
  19. "盗版的噩梦?Vista SP1新的反盗版技术". Archived from the original on 2011-09-11. Retrieved 2008-10-20.
  20. "微软开始打击盗版 桌面背景变为黑色". Archived from the original on 2012-12-13. Retrieved 2008-10-20.
  21. "Panicking users rail against Microsoft anti-piracy crackdown". Archived from the original on 2016-12-23. Retrieved 2008-10-20.
  22. "ZDNet | Technology News, Analysis, Comments and Product Reviews for IT Professionals". Archived from the original on 2009-09-23. Retrieved 2007-04-04.
  23. "The Ed Bott Report | Page 221 | ZDNet". Archived from the original on 2008-12-23. Retrieved 2007-04-04.
  24. Dvorak, John C. (October 16, 2006). "Onerous Vista Activation—A Time Bomb?". PC Magazine. Archived from the original on July 10, 2009. Retrieved September 18, 2017.
  25. "Windows Genuine Advantage: A Ticking Time Bomb?". Fox News. October 19, 2006. Archived from the original on May 23, 2007. Retrieved April 4, 2007.
  26. "» Is Microsoft about to release a Windows "kill switch"? | Ed Bott's Microsoft Report | ZDNet.com". Archived from the original on 2010-03-27. Retrieved 2007-04-04.
  27. "New WGA Behavior in Windows Vista Service Pack 1". Archived from the original on 2007-12-29. Retrieved 2008-01-01.
  28. Lauren Weinstein's Blog – Windows XP update may be classified as 'spyware' Archived 2012-07-09 at archive.today , retrieved June 13, 2006
  29. Microsoft's antipiracy tool "phones home" daily, retrieved June 13, 2006 Archived June 16, 2006, at the Wayback Machine
  30. Brian Livingston (June 15, 2006). "Windows Secrets – Genuine Advantage is Microsoft spyware". Newsletter. Windows Secrets. Archived from the original on 2007-03-02. Retrieved 2007-03-03.
  31. Ars Technica – Microsoft admits Windows Genuine Advantage phones home Archived 2008-09-25 at the Wayback Machine , retrieved June 13, 2006
  32. Lauren Weinstein's Blog – Microsoft responds regarding Windows XP gr update vs Spyware Archived 2024-03-03 at the Wayback Machine , retrieved June 13, 2006
  33. ZDNet – Microsoft to ease up on piracy check-ins, retrieved June 13, 2006 Archived June 15, 2006, at the Wayback Machine
  34. "How to disable or uninstall the pilot version of Microsoft Windows Genuine Advantage Notifications". Microsoft. July 12, 2006. Archived from the original on February 24, 2015. Retrieved December 30, 2006.
  35. Lawsuit calls Microsoft's anti-piracy tool spyware | Seattle Post-Intelligencer Archived 2010-06-23 at the Wayback Machine , retrieved June 29, 2006
  36. Microsoft wins windows xp wga lawsuit | Ars Technica Archived 2011-11-18 at the Wayback Machine , retrieved August 4, 2010
  37. "Microsoft WGA Help Forum". Archived from the original on 2006-08-23. Retrieved 2006-09-10.
  38. Ars Technica: Windows Genuine Advantage's newest setting: "You might be a pirate" Archived 2011-06-07 at the Wayback Machine , retrieved June 6, 2009.
  39. Fisher, Ken (January 24, 2007). "Windows Genuine Advantage falsely accuses millions". Ars Technica . Condé Nast. Archived from the original on November 7, 2017. Retrieved October 31, 2017.
  40. "WGA failure on October 5th, 2006". Archived from the original on 2009-07-08. Retrieved 2007-08-27.
  41. "Microsoft WGA Help Forum citing response from MS Support". Archived from the original on 2008-04-18. Retrieved 2007-08-25.
  42. "Update on Validation Issues". Archived from the original on 2009-07-18. Retrieved 2007-08-28.
  43. "Users reporting failed Windows and Office validations or.. (Updated)". 18 July 2008. Archived from the original on 2008-09-17. Retrieved 2017-06-15.