Forum Home
Press F1
 
Thread ID: 144306 2017-09-12 21:09:00 New Ccleaner 5.34 --BEWARE wainuitech (129) Press F1
Post ID Timestamp Content User
1439067 2017-09-18 04:44:00 I upgraded from 5.33 - on sign of Avast OR automatically I am very careful about unchecking prefilled in boxes so unticked routinely. Neil F (14248)
1439068 2017-09-18 05:05:00 I think there should be a law that added extras are opt in by default not opt out. In other words if you don't pay attention and just click install you just get the main program and nothing else. Some other things have gone that way in the past, like credit limits on credit cards in NZ - they used to increase automatically if you didn't respond to the letters they sent out occasionally and now you have to reply to get the increase which is how it should be.

Anyway mine prompted me to update and included Avast in the downloaded installer as described so thanks for the heads up. I'm fairly certain I would have noticed but a warning is appreciated.
dugimodo (138)
1439069 2017-09-18 09:47:00 But it gets worse. 5.33 is VERY bad news apparently. See Talos blog blog.talosintelligence.com linw (53)
1439070 2017-09-18 19:47:00 Eset found it this morning. 5.33 Win32/CCleaner.B, No add-ons were installed.
I should roll back eh?
sk69ersnz (13476)
1439071 2017-09-18 21:49:00 On the evidence, you should certainly remove 5.33 and then try to find out if bad stuff has been left behind. linw (53)
1439072 2017-09-18 23:13:00 lets get some facts ... :badpc:
there is some scaremongering going around, even a (possibly false) claim that infected PC's cant be cleaned and need to be rolled back via system restore

forum.piriform.com
"We recently determined that older versions of our Piriform CCleaner v5.33.6162 and CCleaner Cloud v1.07.3191 had been compromised. We resolved this quickly and believe no harm was done to any of our users. This compromise only affected customers with the 32-bit version of the v5.33.6162 of CCleaner and the v1.07.3191 of CCleaner Cloud. No other Piriform or CCleaner products were affected."

so the newer versions arnt affected
someone hacked their code : not a good sign
the servers that the hacks linked into have been shutdown


www.bleepingcomputer.com
"Version 5.33 of the CCleaner app offered for download between August 15 and September 12 was modified to include the Floxif malware...."

so any other version will be OK.
Certainly not a good look, for a company now owned by a AV company.
1101 (13337)
1439073 2017-09-19 05:13:00 Thanks for that information. I had V5.33.6162 64bit installed and have just now updated to V5.34.6207 64bit. I was a bit worried before I read your post. Pato (2463)
1439074 2017-09-19 06:11:00 Eset found it this morning. 5.33 Win32/CCleaner.B, No add-ons were installed.
I should roll back eh? Had the same, one of my flash drives has several versions, went to use it today (flash Drive), and Nod32 deleted the 5.33 instantly.
wainuitech (129)
1439075 2017-09-19 23:44:00 How to Tell If You Were Infected by the CCleaner Malware Issue:

www.majorgeeks.com alware_issue.html
zqwerty (97)
1439076 2017-09-20 02:50:00 How to Tell If You Were Infected by the CCleaner Malware Issue:

www.majorgeeks.com alware_issue.html

Gotta love the line in the article
As of now, Avast indicates that there is no indication that this has occurred

Checked every PC that we have that had 5.33 installed, but Nod32 had already dealt to any problems.

Call me sceptical :nerd: BUT Ccleaner has always been clean (no pun intended) in fact many times infections will stop Ccleaner installing.

NOW only a short time after AVAST buys Ccleaner theres these problems :confused: Hmmmmmmmmm
wainuitech (129)
1 2 3