Forum Discussion

bwanshoom's avatar
bwanshoom
Explorer
Sep 18, 2017

Heads Up: CCleaner Infected

I know that CCleaner is popular on this forum. For almost a month it was compromised and installing malware. This is quite serious - it means that Piriform's development servers were probably compromised. CCleaner is owned by Avast which would also be a great target for the bad guys. It doesn't appear that Avast detected this on their own which is also troubling.

Link
  • My Norton 360 caught it right away and I did the upgrade and no issues now. Kind of wondering about the CCleaner on my Android phone.
  • 1492 wrote:
    If I'm reading Cisco Talos correctly, if one has an infected version of CCleaner, they recommend rolling back (System Restore) before August 15, 2017. Or do a "re-install". :E
    That is what they're recommending. Note that that is in stark contrast to Avast's claims that just reinstalling CCleaner is sufficient. I don't think I trust Avast in this instance - I think they're statements are self-serving and disingenuous.
  • If I'm reading Cisco Talos correctly, if one has an infected version of CCleaner, they recommend rolling back (System Restore) before August 15, 2017. Or do a "re-install". :E
  • https://www.forbes.com/sites/thomasbrewster/2017/09/18/ccleaner-cybersecurity-app-infected-with-backdoor/#56e73ce1316a

    Don't update. Uninstall and do a new install of the repaired version.