Jump to content

Latest CCleaner / Trojan


Recommended Posts

  • Moderators

It's a false positive if you're getting the installer from piriform.com. usually, if flagged, it's a "possible unwanted program" (PUP) because there's a google bundle.

 

ADVICE FOR USING CCleaner'S REGISTRY INTEGRITY SECTION

DON'T JUST CLEAN EVERYTHING THAT'S CHECKED OFF.

Do your Registry Cleaning in small bits (at the very least Check-mark by Check-mark)

ALWAYS BACKUP THE ENTRY, YOU NEVER KNOW WHAT YOU'LL BREAK IF YOU DON'T.

Support at https://support.ccleaner.com/s/?language=en_US

Pro users file a PRIORITY SUPPORT via email support@ccleaner.com

Link to comment
Share on other sites

In addition to Bitdefender Emsisoft and ESET-NOD32 are flagging it on Virus Total. Bundled software that the user is given the option to decline does not normally trigger this kind of warning. Something else has to be going on. Has Piriform checked and confirmed the current version hasn't been compromised?

Link to comment
Share on other sites

  • Moderators

The Eset is definitely because the google bundle and has been like that for year or more

 

ADVICE FOR USING CCleaner'S REGISTRY INTEGRITY SECTION

DON'T JUST CLEAN EVERYTHING THAT'S CHECKED OFF.

Do your Registry Cleaning in small bits (at the very least Check-mark by Check-mark)

ALWAYS BACKUP THE ENTRY, YOU NEVER KNOW WHAT YOU'LL BREAK IF YOU DON'T.

Support at https://support.ccleaner.com/s/?language=en_US

Pro users file a PRIORITY SUPPORT via email support@ccleaner.com

Link to comment
Share on other sites

  • Moderators

to prove the point, try the Slim build of CC and see if your AV software still treats it as suspicious.

sadly, the Slim build won't be there for a few more days due to CC v5.30 only recently being released.

but the same theory is testable with the Portable build as well.

Backup now & backup often.
It's your digital life - protect it with a backup.
Three things are certain; Birth, Death and loss of data. You control the last.

Link to comment
Share on other sites

I got a notification that a new ccleaner update was available. I clicked on it and went to the piriform ccleaner download page. I chose to download the free version. It started to redirect me to filehippo.com. Before it could download, my f-secure flagged it as a malicious website. I closed it, went back to piriform and tried again. The same thing. So I pushed continue to website and then pushed download ccleaner. Well, the ccleaner kept downloading. I had 24 before I figured out that closing the browser would make it stop. I deleted all of the ccleaners and managed to find the one directly downloadable from piriform itself. I have a few questions:

 

1. Does piriform use filehippo as a mirror site?

2. Is filehippo safe?

3. Due to my carelessness, did I just download a virus?

 

I scanned each download with f-secure and malwarebytes. I then deleted all of the ccleaners downloaded from filehippo, but I'm afraid due to the fact that I was not paying close attention, that I downloaded a virus. Thanks to anyone who can help me.

Link to comment
Share on other sites

  • Moderators

Yes filehippo is an authorized distributor of piriform products, though I've always just direct download from piriform.com

 

I just tried and couldn't recreate the file hippo default

On a clean browser in went to

http://www.piriform.com/ccleaner

I get the image below.

I press the green button

It drops me down the page to another green button says free version

Takes me to http://www.piriform.com/ccleaner/download I click the button for the free version (see second image) and the setup downloads from piriform.

8d28d0add70d16f85a90c48b3ea6eb29.jpge84793a88e80dcf412303390152f75da.jpg

 

ADVICE FOR USING CCleaner'S REGISTRY INTEGRITY SECTION

DON'T JUST CLEAN EVERYTHING THAT'S CHECKED OFF.

Do your Registry Cleaning in small bits (at the very least Check-mark by Check-mark)

ALWAYS BACKUP THE ENTRY, YOU NEVER KNOW WHAT YOU'LL BREAK IF YOU DON'T.

Support at https://support.ccleaner.com/s/?language=en_US

Pro users file a PRIORITY SUPPORT via email support@ccleaner.com

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.