Author Topic: CCleaner, now coming direct with malware preinstalled  (Read 2639 times)

ANS Kamas P81

  • Colonel
  • *
  • Posts: 13208
CCleaner, now coming direct with malware preinstalled
« on: 18 September 2017, 10:53:43 »
http://blog.talosintelligence.com/2017/09/avast-distributes-malware.html?m=1

No really.  Basically someone inserted into the development software a new set of malware that has all the proper signed verifications and comes direct from the CCleaner download servers as part of the install package.  Considering how widespread that software is, it's potentially pretty serious.
Der Hölle Rache kocht in meinem Herzen,
Tod und Verzweiflung flammet um mich her!
Fühlt nicht durch dich Jadefalke Todesschmerzen,
So bist du meine Tochter nimmermehr!

elf25s

  • Major
  • *
  • Posts: 4391
Re: CCleaner, now coming direct with malware preinstalled
« Reply #1 on: 18 September 2017, 12:06:48 »
one of the few habits i picked up while working as it and hell desk person is to wait until 3 weeks or so when something new come out.
btw i already had to clean CC and directories on windows for few folks already. sadly i cannot blame the (l)users on this one they did keep to schedual i gave them for updates for whitelisted software.
you sure cannot out run death...but sure as hell you can make that bastard work for it!

Snake Eyes

  • Lieutenant
  • *
  • Posts: 1239
  • I am here to keep the peace
Re: CCleaner, now coming direct with malware preinstalled
« Reply #2 on: 18 September 2017, 12:07:23 »
Yeah i just saw that, i have an older version on my pc (free version), i wonder if i should remove that.

elf25s

  • Major
  • *
  • Posts: 4391
Re: CCleaner, now coming direct with malware preinstalled
« Reply #3 on: 18 September 2017, 12:32:03 »
Yeah i just saw that, i have an older version on my pc (free version), i wonder if i should remove that.
you should be fine as long as it is not 5.22 i think
most fixes i had to deal with were just hit restore and restore registry.
you sure cannot out run death...but sure as hell you can make that bastard work for it!

pheonixstorm

  • Major
  • *
  • Posts: 5548
Re: CCleaner, now coming direct with malware preinstalled
« Reply #4 on: 19 September 2017, 06:02:14 »
Was there any new features or improvements that made upgrading worth it (not counting the malware)? I usually don't update CC unless I have to reinstall my OS or lose my installers.

Wrangler

  • Colonel
  • *
  • Posts: 24877
  • Dang it!
    • Battletech Fanon Wiki
Re: CCleaner, now coming direct with malware preinstalled
« Reply #5 on: 19 September 2017, 06:07:48 »
My parents has that thing in their lap top.....i'm going have talk to them...
"Men, fetch the Urbanmechs.  We have an interrogation to attend to." - jklantern
"How do you defeat a Dragau? Shoot the damn thing. Lots." - Jellico 
"No, it's a "Most Awesome Blues Brothers scene Reenactment EVER" waiting to happen." VotW Destrier - Weirdo  
"It's 200 LY to Sian, we got a full load of shells, a half a platoon of Grenadiers, it's exploding outside, and we're wearing flak jackets." VoTW Destrier - Misterpants
-Editor on Battletech Fanon Wiki

pheonixstorm

  • Major
  • *
  • Posts: 5548
Re: CCleaner, now coming direct with malware preinstalled
« Reply #6 on: 19 September 2017, 06:09:03 »
Read the article and it was 5.33 and the infected version has since been removed. Nothing in the article about any other version being infected. This does however show vulnerabilities for other software vendors in the future.

What to make of this? Don't download the newest version of anything for a month or so.

Also learned that Avast bought up CC and family, how interesting.

ANS Kamas P81

  • Colonel
  • *
  • Posts: 13208
Re: CCleaner, now coming direct with malware preinstalled
« Reply #7 on: 19 September 2017, 12:42:32 »
It's a hell of an infection vector though.  Note that it required some serious work to put this into their download server, possibly even someone inside the company installing it directly and deliberately.  I think they're going to be going through their HR files reeeaaal careful now.
Der Hölle Rache kocht in meinem Herzen,
Tod und Verzweiflung flammet um mich her!
Fühlt nicht durch dich Jadefalke Todesschmerzen,
So bist du meine Tochter nimmermehr!

Maingunnery

  • Lieutenant Colonel
  • *
  • Posts: 7155
  • Pirates and C3 masters are on the hitlist
Re: CCleaner, now coming direct with malware preinstalled
« Reply #8 on: 19 September 2017, 17:14:09 »
It's a hell of an infection vector though.  Note that it required some serious work to put this into their download server, possibly even someone inside the company installing it directly and deliberately.  I think they're going to be going through their HR files reeeaaal careful now.
I suspect that it is nothing new, criminals and intelligence agencies always have a lot to gain from having people inside key suppliers.
Herb: "Well, now I guess we'll HAVE to print it. Sounds almost like the apocalypse I've been working for...."

The Society:Fan XTRO & Field Manual
Nebula California: HyperTube Xtreme
Nebula Confederation Ships

GRUD

  • Captain
  • *
  • Posts: 3002
  • Quinn's Quads - 'Mechs on the March!
Re: CCleaner, now coming direct with malware preinstalled
« Reply #9 on: 21 September 2017, 00:02:33 »
one of the few habits i picked up while working as it and hell desk person is to wait until 3 weeks or so when something new come out.

For some reason, I'm not Entirely Positive that this is a typo.   ^-^

 ;D
To me, Repros are 100% Wrong, and there's NO  room for me to give ground on this subject. I'm not just an Immovable Object on this, I'm THE Immovable Object. 3D Prints are just 3D Repros.

Something to bear in Mind. Defending the BT IP is Frowned upon here.

Remember: Humor is NOT Tolerated here. Have a Nice Day!

Hey! Can't a guy get any Privacy around here!

Kharim

  • Master Sergeant
  • *
  • Posts: 335
Re: CCleaner, now coming direct with malware preinstalled
« Reply #10 on: 21 September 2017, 03:23:07 »
So it is good that I am lazy updater and didnt bother about last prompt to download new version?

elf25s

  • Major
  • *
  • Posts: 4391
Re: CCleaner, now coming direct with malware preinstalled
« Reply #11 on: 21 September 2017, 09:17:12 »
For some reason, I'm not Entirely Positive that this is a typo.   ^-^

 ;D
its not a typo
 habit i picked up when i was interning with my friend at university...the graybeard in charge beat this into us wait at least 3 weeks minimum before you patch anything or upgrade anything especially if the patch or upgrade just came out. it is one of the reasons i will never ever work hell desk(desktop support)again in my life.
in other words dont volunteer to be a an experimental animal.
you sure cannot out run death...but sure as hell you can make that bastard work for it!

Snake Eyes

  • Lieutenant
  • *
  • Posts: 1239
  • I am here to keep the peace
Re: CCleaner, now coming direct with malware preinstalled
« Reply #12 on: 21 September 2017, 16:16:26 »
you should be fine as long as it is not 5.22 i think
most fixes i had to deal with were just hit restore and restore registry.
Ah, good to know  O0

garhkal

  • Lieutenant Colonel
  • *
  • Posts: 6605
Re: CCleaner, now coming direct with malware preinstalled
« Reply #13 on: 21 September 2017, 19:36:32 »
I suspect that it is nothing new, criminals and intelligence agencies always have a lot to gain from having people inside key suppliers.

Agreed.  It just makes SENSE for these hacker plucktards to insert their evil kin into the anti-virus making companies.. 

It's not who you kill, but how they die!
You can't shoot what you can't see.
You can not dodge it if you don't know it's coming.

Sartris

  • Codex Conditor
  • BattleTech Volunteer
  • Colonel
  • *
  • Posts: 19827
  • Kid in the puddle eating mud of CGL contributors
    • Master Unit List
Re: CCleaner, now coming direct with malware preinstalled
« Reply #14 on: 21 September 2017, 21:39:50 »
thank goodness i've been lazy about installing the new versions and was still running 5.29

You bought the box set and are ready to expand your bt experience. Now what? | Modern Sourcebook Index | FASA Sourcebook Index | Print on Demand Index
Equipment Reference Cards | DIY Pilot Cards | PaperTech Mech and Vehicle Counters

Quote
Interviewer: Since you’ve stopped making art, how do you spend your time?
Paul Chan Breathers: Oh, I’m a breather. I’m a respirateur. Isn’t that enough?

garhkal

  • Lieutenant Colonel
  • *
  • Posts: 6605
Re: CCleaner, now coming direct with malware preinstalled
« Reply #15 on: 22 September 2017, 18:00:42 »
thank goodness i've been lazy about installing the new versions and was still running 5.29

I don't even have CC cleaner to worry about installing any corrupted version of it.. AND Cause of this i am not likely ever to do so.
It's not who you kill, but how they die!
You can't shoot what you can't see.
You can not dodge it if you don't know it's coming.

 

Register