- Jul 6, 2017
- 2,392
They must provide a tool for those affected... and henceforth demonstrate that it is a safe program.
Blah. I bet no one posting in this thread has ever owned a business, or had a clue.
NO.It is not avast's fault.They just acquired a company (Piriform).It is Piriform's fault.
Well, Cisco Talos is using this ''event'' for some marketing and manipulations to make some cashIntersting ..!
Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at Risk
CONCLUSION
This is a prime example of the extent that attackers are willing to go through in their attempt to distribute malware to organizations and individuals around the world. By exploiting the trust relationship between software vendors and the users of their software, attackers can benefit from users' inherent trust in the files and web servers used to distribute updates. In many organizations data received from commonly software vendors rarely receives the same level of scrutiny as that which is applied to what is perceived as untrusted sources. Attackers have shown that they are willing to leverage this trust to distribute malware while remaining undetected. Cisco Talos continues to monitor all aspects of the threat landscape to quickly identify new and innovative techniques used by attackers to target organizations and individuals around the world.
Blah. I bet no one posting in this thread has ever owned a business, or had a clue.
There's no need, Only the CCleaner exe was infected. If you update to the current version, or uninstall it, the infection will be gone.I think they should provide a cleanup tool for the mess they infected the users with.
Either luck or negligence. You decide which one you prefer.Seems Avast is unlucky about hacked sites, before it was their forum that was hacked
Avast say there's no need to restore your system:Hi
I choose "Provide a specific removal tool, because Talos (security experts) advise image recovery"
we don't consider the advice to reformat and/or restore the affected machines to the pre-August 15 state to be based on facts (by similar logic, security companies are not usually advising customers to reformat their machines after a remote code execution vulnerability is identified on their computer, just because there was a hypothetical possibility that something might have gotten in).
Upgrade CCleaner to the latest version also work or not?@RejZoR as long as avast on it.It's detected by avast! AV and it's literally just a binary. It doesn't actually install anything on the system. So, deleting it or uninstalling is enough.
Progress on CCleaner Investigation by the Avast Security Threat Labs team
Progress on CCleaner Investigation