Jump to content
CCleaner Community Forums
MackBolan

New version detected as malware by 2 vendors

Recommended Posts

The most recent release v5.69.7865 has been detected by Windows Defender and Hybrid Analysis as PUP in Windows 10 and as totally malicious by Hybrid Analysis. I've had the free version installed for a few days now and Defender just picked it up. I removed it and redownloaded the setup file, scanned that with Hybrid Analysis and the screenshots show all. False positive? I don't run it in the back round, however if it is doing things on it's own that's a problem.

hybrid analysis ccleaner v5.69 7_30_2020.png

malware ccleaner v5.69 page 2 7_30_2020.png

malware ccleaner v5.69 page 3 7_30_2020.png

Share this post


Link to post
Share on other sites

@MackBolan, looking at what hybrid-analysis reports, most of these items are things you would expect CCleaner to do:

* Interacts with the primary disk partition (DR0)

* Queries firmware table information

* Queries kernel debugger information
* Reads the active computer name
* Reads the cryptographic machine GUID
 
* Marks file for deletion

Share this post


Link to post
Share on other sites

Microsoft seem to be having one their 'we don't like registry cleaners' months again, it's not the first time Defender has flagged or blocked CCleaner installers for a couple of days.

MS are supposed to have now sorted out the current flag/block.
Some say that they are still seeing it, if you are then try updating your Defender definitions.
image.png

(There is some suspicion that it's more a case of 'We don't like competition to Edge Chromium from CCleaner Browser, and just which of the various CCleaner installers they are currently flagging/ blocking and which they weren't tends to support that suspicion).

 

Share this post


Link to post
Share on other sites

Not surprised, the program litterly use 100% of the CPU when open.. wouldn't thouch this program with a stick anymore or trust.

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×
×
  • Create New...