So wait...these allegations are based entirely on the fact that Windows registry keys exist with ROT13-ed process names?
Let's just check the scorecard:
- Outbound packet captures showing that Origin is capturing this information? Nope.
- Proof that the Origin client is making a targeted effort to steal information about the user? Nope.
- Indications that Origin is accessing the processes of Firefox or Chrome in any way beyond getting their names? Nope.
- Indications that Origin is potentially capturing any information at all beyond the names of some running processes? Nope.
Cheat detection has been named a couple of times, and that's certainly plausible. I'd imagine ROT13 is used to prevent Origin from being spuriously picked up by antivirus software.
Those registry entries were not created by origin. They were created with rot13 by windows explorer. That screenshot shows origin specifically checking whether the entries exist. So origin has a list of files that it checks if the user has.
I guess I don't really know. But the way it says either "SUCCESS" or "NAME NO..." makes it look like it either found the registry entry or it failed to find the registry entry. The second case would probably only happen if it was looking for specific keys.
Let's just check the scorecard:
- Outbound packet captures showing that Origin is capturing this information? Nope. - Proof that the Origin client is making a targeted effort to steal information about the user? Nope. - Indications that Origin is accessing the processes of Firefox or Chrome in any way beyond getting their names? Nope. - Indications that Origin is potentially capturing any information at all beyond the names of some running processes? Nope.
Cheat detection has been named a couple of times, and that's certainly plausible. I'd imagine ROT13 is used to prevent Origin from being spuriously picked up by antivirus software.