![]() |
CCleaner - recent versions - malware impacted
Just saw this over on Rennlist - recent versions of CCleaner are reportedly impacted by hacking to include malware.
I know several Pelican's recommend the use of the product to troubleshoot/remove malware/viruses/etc from user machines. More details here: Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at Risk Summary - Talos recently observed a case where the download servers used by software vendor to distribute a legitimate software package were leveraged to deliver malware to unsuspecting victims. For a period of time, the legitimate signed version of CCleaner 5.33 being distributed by Avast also contained a multi-stage malware payload that rode on top of the installation of CCleaner. CCleaner boasted over 2 billion total downloads by November of 2016 with a growth rate of 5 million additional users per week. Given the potential damage that could be caused by a network of infected computers even a tiny fraction of this size we decided to move quickly. On September 13, 2017 Cisco Talos immediately notified Avast of our findings so that they could initiate appropriate response activities. The following sections will discuss the specific details regarding this attack. Update 9/18: CCleaner Cloud version 1.07.3191 is also reported to be affected |
Thanks for posting, I've used the free version of CCleaner on all my computers for years, never had a problem and it's a great program. Hopefully they get this fixed soon.
|
My wife's computer keeps getting rootkits. I've eradicated them twice with malwarebytes. If it comes back again, I'm eradicating the disk drive and re-installing the OS.
|
My anti-virus identified a trojan associated with CC Cleaner last night and deleted it....hopefully this will end it, but still uninstalling a deleting anything with CC Cleaner now.
|
Can anyone confirm v 5.34 is clean?
|
Quote:
Quote:
Still reading the article, looking for indication that corrected versions fix the previous flaws. Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at Risk Quote:
So I'm looking at my "Downloads" folder and looking right at "ccsetup-5.33" on the (17th?) and the screen refreshes on me, and it vanishes. Windows Defender then says malicious malware has been removed. I look in Denfender's history, and "Backdoor:Win32/Floxif" has been removed and or quarantined. Quote:
Quote:
Quote:
|
Thanks for posting.
It's always tough to know the benefit of 'upgrading' software versions when the version you have works fine. More often than not, 'upgrades' fix a problem/need that your computer does not have. But sometimes the 'upgrades' fixes a potential security hole. :-\ |
Monday, September 18, 2017
Security Notification for CCleaner v5.33.6162 and CCleaner Cloud v1.07.3191 for 32-bit Windows users https://www.piriform.com/news/release-announcements/2017/9/18/security-notification-for-ccleaner-v5336162-and-ccleaner-cloud-v1073191-for-32-bit-windows-users Quote:
Quote:
|
Update to the CCleaner 5.33.6162*Security Incident
https://blog.avast.com/update-to-the-ccleaner-5.33.6162-security-incident Quote:
Quote:
|
v5.35 out now (my v5.34 just prompted a pop-up to update to it for "important changes").
|
Quote:
I then uploaded the latest CCleaner to that machine and updated the 64 Bite laptop CCleaner as well. Seems to me they are still chasing this dragon and closing doors on it if there is yet another update. |
All times are GMT -8. The time now is 09:14 PM. |
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0
Copyright 2025 Pelican Parts, LLC - Posts may be archived for display on the Pelican Parts Website