![]() |
|
|
|
Registered
Join Date: Jul 2001
Location: Lawrenceville GA 30045
Posts: 7,379
|
CCleaner - recent versions - malware impacted
Just saw this over on Rennlist - recent versions of CCleaner are reportedly impacted by hacking to include malware.
I know several Pelican's recommend the use of the product to troubleshoot/remove malware/viruses/etc from user machines. More details here: Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at Risk Summary - Talos recently observed a case where the download servers used by software vendor to distribute a legitimate software package were leveraged to deliver malware to unsuspecting victims. For a period of time, the legitimate signed version of CCleaner 5.33 being distributed by Avast also contained a multi-stage malware payload that rode on top of the installation of CCleaner. CCleaner boasted over 2 billion total downloads by November of 2016 with a growth rate of 5 million additional users per week. Given the potential damage that could be caused by a network of infected computers even a tiny fraction of this size we decided to move quickly. On September 13, 2017 Cisco Talos immediately notified Avast of our findings so that they could initiate appropriate response activities. The following sections will discuss the specific details regarding this attack. Update 9/18: CCleaner Cloud version 1.07.3191 is also reported to be affected
__________________
Mark '83 SC Targa - since 5/5/2001 '06 911 S Aerokit - from 5/2/2016 to 11/14/2018 '11 911 S w/PDK - from 7/2/2021 to ??? |
||
![]() |
|
Recreational Mechanic
|
Thanks for posting, I've used the free version of CCleaner on all my computers for years, never had a problem and it's a great program. Hopefully they get this fixed soon.
__________________
P Cars: 2022 Macan GTS / One empty garage space ---- Other cars: 2019 Golf R 6MT / 2021 F-250 Diesel / 2024 Toyota GR86 6MT ---- Gone: 1997 Spec Boxster Race Car, 2020 GT4, 2004 GT3, 2003 Carrera, 1982 911SC, 2005 Lotus Elise and lots of other non-Porsches PCA National DE Instructor #202106053 / PCA Club Racing / WRL Endurance Racing |
||
![]() |
|
canna change law physics
|
My wife's computer keeps getting rootkits. I've eradicated them twice with malwarebytes. If it comes back again, I'm eradicating the disk drive and re-installing the OS.
__________________
James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 |
||
![]() |
|
Registered
|
My anti-virus identified a trojan associated with CC Cleaner last night and deleted it....hopefully this will end it, but still uninstalling a deleting anything with CC Cleaner now.
__________________
Rob Black 1983 911 SC Coupe Last edited by Erakad; 09-19-2017 at 07:42 PM.. |
||
![]() |
|
Burn the fire.
|
Can anyone confirm v 5.34 is clean?
__________________
[x] Working | [_] Broken: 2017 Victory Octane [x] Working | [_] Broken: 2005 Ram 1500 SLT w/5.7L Hemi "Drive it like you stole it." |
||
![]() |
|
Registered
|
From the link originally provided:
Quote:
Still reading the article, looking for indication that corrected versions fix the previous flaws. Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at Risk Quote:
So I'm looking at my "Downloads" folder and looking right at "ccsetup-5.33" on the (17th?) and the screen refreshes on me, and it vanishes. Windows Defender then says malicious malware has been removed. I look in Denfender's history, and "Backdoor:Win32/Floxif" has been removed and or quarantined. Quote:
Quote:
Quote:
__________________
1977 911S Targa 2.7L (CIS) Silver/Black 2012 Infiniti G37X Coupe (AWD) 3.7L Black on Black 1989 modified Scat II HP Hovercraft George, Architect Last edited by kach22i; 09-20-2017 at 06:23 AM.. |
|||||
![]() |
|
![]() |
Information Junky
Join Date: Mar 2001
Location: an island, upper left coast, USA
Posts: 73,189
|
Thanks for posting.
It's always tough to know the benefit of 'upgrading' software versions when the version you have works fine. More often than not, 'upgrades' fix a problem/need that your computer does not have. But sometimes the 'upgrades' fixes a potential security hole. :-\
__________________
Everyone you meet knows something you don't. - - - and a whole bunch of crap that is wrong. Disclaimer: the above was 2¢ worth. More information is available as my professional opinion, which is provided for an exorbitant fee. ![]() |
||
![]() |
|
Registered
|
Monday, September 18, 2017
Security Notification for CCleaner v5.33.6162 and CCleaner Cloud v1.07.3191 for 32-bit Windows users https://www.piriform.com/news/release-announcements/2017/9/18/security-notification-for-ccleaner-v5336162-and-ccleaner-cloud-v1073191-for-32-bit-windows-users Quote:
Quote:
__________________
1977 911S Targa 2.7L (CIS) Silver/Black 2012 Infiniti G37X Coupe (AWD) 3.7L Black on Black 1989 modified Scat II HP Hovercraft George, Architect Last edited by kach22i; 09-20-2017 at 06:23 AM.. |
||
![]() |
|
Registered
|
Update to the CCleaner 5.33.6162*Security Incident
https://blog.avast.com/update-to-the-ccleaner-5.33.6162-security-incident Quote:
Quote:
__________________
1977 911S Targa 2.7L (CIS) Silver/Black 2012 Infiniti G37X Coupe (AWD) 3.7L Black on Black 1989 modified Scat II HP Hovercraft George, Architect Last edited by kach22i; 09-20-2017 at 07:01 AM.. |
||
![]() |
|
Registered
Join Date: Nov 2000
Location: AZ
Posts: 8,414
|
v5.35 out now (my v5.34 just prompted a pop-up to update to it for "important changes").
|
||
![]() |
|
Registered
|
Quote:
I then uploaded the latest CCleaner to that machine and updated the 64 Bite laptop CCleaner as well. Seems to me they are still chasing this dragon and closing doors on it if there is yet another update.
__________________
1977 911S Targa 2.7L (CIS) Silver/Black 2012 Infiniti G37X Coupe (AWD) 3.7L Black on Black 1989 modified Scat II HP Hovercraft George, Architect |
||
![]() |
|