Jump to content

New version detected as malware by 2 vendors [fixed]


Recommended Posts

The most recent release v5.69.7865 has been detected by Windows Defender and Hybrid Analysis as PUP in Windows 10 and as totally malicious by Hybrid Analysis. I've had the free version installed for a few days now and Defender just picked it up. I removed it and redownloaded the setup file, scanned that with Hybrid Analysis and the screenshots show all. False positive? I don't run it in the back round, however if it is doing things on it's own that's a problem.

hybrid analysis ccleaner v5.69 7_30_2020.png

malware ccleaner v5.69 page 2 7_30_2020.png

malware ccleaner v5.69 page 3 7_30_2020.png

Link to comment
Share on other sites

@MackBolan, looking at what hybrid-analysis reports, most of these items are things you would expect CCleaner to do:

* Interacts with the primary disk partition (DR0)

* Queries firmware table information

* Queries kernel debugger information
* Reads the active computer name
* Reads the cryptographic machine GUID
 
* Marks file for deletion
Link to comment
Share on other sites

  • Dave CCleaner changed the title to New version detected as malware by 2 vendors [fixed]

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.