Friday, September 26, 2008

The Sorry Story of the SoftRAM Scam

I got a frantic phone call the other night from my friend Roseanne. Her computer had a virus and her virus scanner kept popping up a warning dialog but wasn't fixing it. That Roseanne was even running a virus scanner came as a surprise to me. I had long ago put her on ignore on MSN Messenger because she had some virus that caused her Messenger to automatically fire me spam URLs. Anyway, since we both live in the same apartment building, I trudged over there and took a look. Sure enough after playing around with her wheezing eight year old computer I got her virus scanner to pop up the warning message about some nasty Trojan that was probably, as we speak, sending all of Roseanne's credit card information to Romanian hackers. The warning message struck me as odd for a couple reasons. One, the scanner software wasn't one I recognized like McAfee's, Norton, or even Avast. Two, the dialog box urged me to click on a link and subscribe to their service and if I clicked now I could be fully protected from this nasty Trojan and others for the biweekly discount rate of $12.99. Of course I quickly realized what it was. It was one of those fake virus scanners that claims you're loaded up with all kinds of viruses and you can make them all go away by simply paying for the software.

Ugg.

Anyway, I did a system restore to an earlier point and asked Roseanne how this software even got installed. It did appear she actually had another legit virus scanner working in the background. Roseanne said she thought she got a notification for an update for her actual virus scanner and clicked on it. Roseanne is one of those users who click on absolutely everything emailed to her. So her explanation sounded entirely plausible.

As most readers of this blog know, these kinds of scams abound and have been common for several years now. They take advantage of a certain segement of the population that knows just enough about computers to be dangerous to themselves.

The granddaddy of this kind of scam, that is selling people software that basically does nothing, is a utility called SoftRAM. This one even fooled a lot of so-called experts. Gather round, kids.

SoftRAM was a PC utility sold by Syncronys Software. According to Syncronys' marketing materials it was a "RAM doubling and resource expansion" product. Claiming to use various on-the-fly memory compression routines, the nifty little package could double your PC's RAM. With physical RAM chips going for about $50 a meg (that's a meg kids, not a gig) in the mid-'90s and a sudden need to add hundreds of dollars more of RAM to run Windows 95, the utility's $30 price tag was a screaming bargain. By 1996, Syncronys had sold some 700,000 copies. The company's stock price didn't just double, it increased a thousand fold (going from 3 cents to $30).

It was all too good to be true. And it was. Many users, after installing the software, noticed their computers slowed down. With more RAM available, things shouldn't slow down. What was the point in having "extra" RAM then?

[caption id="attachment_398" align="aligncenter" width="456" caption="Das computermachine ist nicht fuer gefingerpoken und mittengrabben. Ist easy schnappen der springenwerk, blowenfusen und poppencorken mit spitzensparken. Ist nicht fuer gewerken bei das dumpkopfen. Das rubbernecken sichtseeren keepen das cotten-pickenen hans in das pockets muss; relaxen und watchen das blinkenlichten."]Das computermachine ist nicht fuer gefingerpoken und mittengrabben. Ist easy schnappen der springenwerk, blowenfusen und poppencorken mit spitzensparken. Ist nicht fuer gewerken bei das dumpkopfen. Das rubbernecken sichtseeren keepen das cotten-pickenen hans in das pockets muss; relaxen und watchen das blinkenlichten.[/caption]

People began to funnel complaints to the various PC magazines that had given SoftRAM glowing reviews without actually testing the product. Everyone was mightily impressed by SoftRAM's fancy gauges, wizards, and control panels that seemed to indicate the product was really going to town on wasted memory. The magazines gave SoftRAM a second, harder squint. This time they actually tested the package. PC Magazine, for instance, fed it blocks of data containing the same character. Even the dumbest compression utility should have made mincemeat out of that. It passed untouched through SoftRAM.

People did not just complain to the magazines. Some took their complaints to the FTC, which launched an investigation. Facing mounting criticism and a government investigation, Syncronys defended itself by taking a page out of the Complimentary and Alternative Medicine playbook: it pointed to customer surveys indicating 82% of purchasers were satisfied with the product. This, of course, was not proof of anything other than 82% of purchasers had been satisfactorily duped. Syncronys also threatened to sue Dr. Dobb's Journal if it published an article examining the technical aspects of the software.

Since Syncronys was claiming a need to protect trade secrets and was unwilling to give reviewers and FTC investigators any details regarding how it was actually doubling RAM, a pair of German hackers set on the task of decompiling the product and looking at the code. They discovered the product was really little more than some example code from a Microsoft development kit with some fancy gauge controls slapped on top. SoftRAM may have hired clever marketers but the Germans discovered SoftRAM failed to hire clever developers. SoftRAM compiled the Microsoft sample code with the debugging switches left on. That meant SoftRAM ran slower than Microsoft's original code!

Caught red handed by the German hackers, Syncronys was forced by the FTC to recall their product and issue refunds to purchasers.

Strangely enough, this company proved to be the Peter Popoff of PC utility makers when it returned a year later with a CD Caching utility. Syncronys claimed it could boost CD load times by a staggering 184%. Tests showed this revolutionary product only managed to save mere seconds.

It made a third try with a shareware disk partitioning utility called BigDisk. The utility lost data. Customers and investors eventually lost it with Syncronys. The company went belly up in 1999, with $4.67 million in debts, $200,000 in assets, and a large number of customers still waiting for their SoftRAM rebate.

Curiously, days before seeking Chapter 11, Syncronys tried once more to recapture the SoftRAM days and resell a Microsoft tool as its own. The company released a product called UpgradeAID 98 which let users install Windows 98 but return to Windows 95 if they found Windows 98 unstable. Windows 98, of course, came with a utility that let users uninstall Windows 98 and return to Windows 95.

-- Karl Mamer

2 comments:

  1. I had this virus too. I tried to clean it up with a maelware virus cleaner, and that locked me out of my login. So, I had to erase everything and start over. It was a nightmare.

    ReplyDelete
  2. [...] of my non-car driving friend Roseanne (who I’ve mentioned in previous postings: here, here, here). Roseanne, having last owned a car back when gas was 40 cents a liter ($1.52 a gallon), [...]

    ReplyDelete