|
1. Windows Genuine Advantage comes as a simple ActiveX-Plug-In that checks whether your Windows XP is legal or not. However, ActiveX can be a security vulnerability which is why some users finally decided to deactivate it for good. And this is exactly the first step to the key...
Open up the Microsoft Download pages and select a WGA-protected download (such as Microsoft AntiSpyware (Beta)). Important: For the first steps you need a genuine Windows XP version!
2. Now, click on Tools/Internet options/Security and select the Custom Level... button. Go to the Run ActiveX controls and plug-ins and select Disable. Confirm the settings and return to the browser Window.

3. Click on Continue next to the Validation Recommended. Highlight Yes, please validate Windows and take me to the download. (If an ActiveX dialog box appears, please click Yes.). After the next click on Continue you are in the middle of the WGA information page. Scroll to the bottom, click on Genuine Windows Validation, Alternate Method. Finally select Continue under the Run the validation tool section.

4. The 329 KB small download of GenuineCheck.exe starts immediately. Double-click on this little piece of software and write down the displayed number.
 Important note: This number has been faked - so dont bother ;)
5. You are now free to perform steps 1-3 on a Windows version with a locked XP serial key. In our neighborhood we found an illegal Windows version and first tried it the normal way. This was the result:

6. After performing Steps 1-3 again we entered the code (we have written down earlier) under the Enter your validation code section and click on validate:

7. Now, well, and whats the result? Right: The download of Microsoft AntiSpyware starts...
Microsoft even thanks us for using the Windows validation method. Isnt it ironic?
Bottom line: An indian scientist, Debasis Mohanty, originally detected this flaw and spreaded the word around. Microsoft reacts calm and says: It represents little thread which is business english for We play it down because its already been too embarrassing. And embarassing it is: These news currently make their way through magazines and websites. After the crash landing with Start something this is Microsofts next accident which leads one to ask: What next? How much resources have gone into this? Everything to be cracked with such a ridiculous way? It is unlikely that Microsofts corrects this flaw since the only thing the world got was a (way too self-confident) comment....Stay tuned, we keep you up to date on this!
Sandro Villinger, July 7 2005
|