Talos recently observed a case where the download servers used by software vendor to distribute a legitimate software package were leveraged to deliver malware to unsuspecting victims. For a period of time, the legitimate signed version of CCleaner 5.33 being distributed by Avast also contained a multi-stage malware payload that rode on top of the installation of CCleaner. CCleaner boasted over 2 billion total downloads by November of 2016 with a growth rate of 5 million additional users per week. Given the potential damage that could be caused by a network of infected computers even a tiny fraction of this size we decided to move quickly. On September 13, 2017 Cisco Talos immediately notified Avast of our findings so that they could initiate appropriate response activities. The following sections will discuss the specific details regarding this attack.
CCleaner got bugs
-
- Posts: 33309
- Joined: Sat Jun 05, 2004 2:17 am
- Title: Man in Black
- Location: Division 6
CCleaner got bugs
http://blog.talosintelligence.com/2017/ ... lware.html
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
-
- Posts: 17643
- Joined: Fri Oct 26, 2007 4:13 pm
- Location: Friar McWallclocks Bar -- Where time stands still while you lean over!
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
Costs a little more, but she is more accommodating and has a far broader imagination.
Cleaner too.
--J.D.
Cleaner too.
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
Apple users are no longer immune from such attacks:
https://duckduckgo.com/?q=apple+malware ... sb&ia=news
https://www.google.com/search?q=apple+malware+2017
And it's getting worse:
https://core0.staticworld.net/images/ar ... 2-orig.jpg
Sorry to make you cry . . .
In the rain . . .
Lots more stories of Apple malware here:https://www.wired.com/ wrote:In late 2015, hackers distributed a fake version of the Apple developer tool Xcode on sites frequented by Chinese developers. Those tools injected malicious code known as XcodeGhost into 39 iOS apps, many of which passed Apple's App Store review, resulting in the largest-ever outbreak of iOS malware.
https://duckduckgo.com/?q=apple+malware ... sb&ia=news
https://www.google.com/search?q=apple+malware+2017
And it's getting worse:
https://core0.staticworld.net/images/ar ... 2-orig.jpg
Sorry to make you cry . . .
In the rain . . .
-
- Posts: 33309
- Joined: Sat Jun 05, 2004 2:17 am
- Title: Man in Black
- Location: Division 6
Re: CCleaner got bugs
Tangentially related...downloaded and installed Immunet client for Windows...good heavens does that ever slow things down. Takes forever to open a browser. Virus scan takes a very long time. It found a few things in some downloads, using heuristic analysis, so they could be false positives. but I'm going to have it erase those files and I'm going to uninstall Immunet. Much too slow. Might be because I'm on Windows 10 and other users are reporting similar problems.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
Thinking athlete's foot is comparable to Fournier's gangrene?
http://i170.photobucket.com/albums/u264 ... b9f1b3.jpg
Does not even know what vira are.
--J.D.
http://i170.photobucket.com/albums/u264 ... b9f1b3.jpg
Does not even know what vira are.
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
Obviously not talking about me, since this thread is about malware, not viruses.Doctor X wrote:Does not even know what vira are.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
http://i170.photobucket.com/albums/u264 ... 7f37f9.jpg
Never sorry to make the willfully ignorant and dishonest cry.
--J.D.
Never sorry to make the willfully ignorant and dishonest cry.
--J.D.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
Nevertheless, since I remain a RIVER to even My Stupid People:
https://qph.ec.quoracdn.net/main-qimg-e ... 6a445d789f https://file.gdatasoftware.com/_process ... 53h383.jpg
What is a bigger number?
100,000? or "millions?"
But, you know, the P.C.'rs--should I use "Cultists?" Is that how a Former Kool Kid would argue?--just keep lying.
How many virions for Mac?
How many vira for PCs?
I will let the Former Kool Kid work that one out for himself, not that he was ever interested in facts.
--J.D.
https://qph.ec.quoracdn.net/main-qimg-e ... 6a445d789f https://file.gdatasoftware.com/_process ... 53h383.jpg
What is a bigger number?
100,000? or "millions?"
But, you know, the P.C.'rs--should I use "Cultists?" Is that how a Former Kool Kid would argue?--just keep lying.
How many virions for Mac?
How many vira for PCs?
I will let the Former Kool Kid work that one out for himself, not that he was ever interested in facts.
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
http://i170.photobucket.com/albums/u264 ... okqzjj.jpg
Let me guess: we have degenerated, once again, to the "Willing to Bet Your Life on it?" Standard of Evidences?--Thanks?
http://i170.photobucket.com/albums/u264 ... rls4zg.gif
--J.D.
Let me guess: we have degenerated, once again, to the "Willing to Bet Your Life on it?" Standard of Evidences?--Thanks?
http://i170.photobucket.com/albums/u264 ... rls4zg.gif
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
"100,000 > 1,000,000+"
http://i170.photobucket.com/albums/u264 ... v7yjt7.gif
yes . . . yes it is. . . .
Bet your life on it!
--J.D.
http://i170.photobucket.com/albums/u264 ... v7yjt7.gif
yes . . . yes it is. . . .
Bet your life on it!
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
The desperate or delusional make up things no one has said.
Apparently Mac Bigots aren't strong enough to fight anything but straw men.
Apparently Mac Bigots aren't strong enough to fight anything but straw men.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
--J.D.Doctor X wrote:"100,000 > 1,000,000+"
http://i170.photobucket.com/albums/u264 ... v7yjt7.gif
yes . . . yes it is. . . .
Bet your life on it!
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
Mac Bigot plays borken record. That he bought. Scratched. And made of straw. In the rain . . .
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
Like we should have with little Charlie, right?His Humble MagNIfIcence wrote:"100,000 > 1,000,000+"
http://i170.photobucket.com/albums/u264 ... v7yjt7.gif
yes . . . yes it is. . . .
Bet your life on it!
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
You mean . . . that did not work out?His Humble MagNIfIcence wrote:Like we should have with little Charlie, right?"100,000 > 1,000,000+"
http://i170.photobucket.com/albums/u264 ... v7yjt7.gif
yes . . . yes it is. . . .
Bet your life on it!
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
And he keeps scratching it. Looking closer, I see the record company is called "Red Herring Borken Records". Sorry, still no refunds.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
2 + 2 = 5?His Humble MagNIfIcence wrote:You mean . . . that did not work out?Like we should have with little Charlie, right?"100,000 > 1,000,000+"
http://i170.photobucket.com/albums/u264 ... v7yjt7.gif
yes . . . yes it is. . . .
Bet your life on it!
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
If you keep playing that same broken record (made of straw), you will prematurely ruin your stylus. Again, no refunds.
2 + 2 = 5 for sufficiently large values of 2. Every mathematician knows that.
2 + 2 = 5 for sufficiently large values of 2. Every mathematician knows that.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
I feel no need to waste effort with Liars nor the Hypocrites who sniff after them hoping that they, one day, could also be a Kool Kid even though that term long ago lost meaning if it ever had any. Just as The True Claus of Skepticism how it worked out for him..
About that baby Charlie . . . how did that work out for you?
About as well as your ability to grasp basic quantities?
Quod erat demonstrandum.
--J.D.
About that baby Charlie . . . how did that work out for you?
About as well as your ability to grasp basic quantities?
Quod erat demonstrandum.
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
Since none of that applies to me, your objections are moot.Doctor X wrote:I feel no need to waste effort with Liars nor the Hypocrites who sniff after them hoping that they, one day, could also be a Kool Kid even though that term long ago lost meaning if it ever had any.
My basic premise and complaint about the government — which was my primary motive for starting that thread — was not refuted or discredited by his death. For me, that thread was never about Charlie, per se, it was about the courts and the government run medical system.Doctor X wrote:About that baby Charlie . . . how did that work out for you?
That is totally lame, even for you.Doctor X wrote:About as well as your ability to grasp basic quantities?
I did not ever say 100,000s are larger than millions. Nor did I imply it.
You made up that straw man all by your own self, and is not a valid interpretation of what I posted. Not even close.
Not to mention it has no relevance to the veracity of my post about Apple users and malware.
So, it was a two-fer, a straw man fallacy and a red herring fallacy.
Sorry, but you have not demonstrated I have been wrong about anything in this thread.Doctor X wrote:Quod erat demonstrandum.
My initial post about Apple's vulnerability to malware stands unrefuted.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
http://i170.photobucket.com/albums/u264 ... gz4oqf.jpg
However, ever willing to alleviate what must indeed prove quite the devastating condition, I find this:
https://i5.walmartimages.com/asr/f772dc ... nBg=FFFFFF
might help with the appreciation of the subtle difference between "hundreds of thousands" and "millions" if, you know, you have run out of feet. . . .
--J.D.
However, ever willing to alleviate what must indeed prove quite the devastating condition, I find this:
https://i5.walmartimages.com/asr/f772dc ... nBg=FFFFFF
might help with the appreciation of the subtle difference between "hundreds of thousands" and "millions" if, you know, you have run out of feet. . . .
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
Let the record show that instead of disputing the facts I have laid out for all to see, some people prefer to get all petulant and post gratuitous memes, perhaps under the misguided notion they are being clever or something. No one is fooled.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
I am sorry, I do not have something simpler than an abacus.
Could you, you know, remove your socks or something?
Nor can I impart honesty to the intentionally dishonest.
--J.D.
Could you, you know, remove your socks or something?
Nor can I impart honesty to the intentionally dishonest.
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
I can see why you have trouble imparting that to yourself, given your infantile habit of repeatedly making intentionally dishonest accusations about what I have said on this forum.Doctor X wrote:Nor can I impart honesty to the intentionally dishonest.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
-
- Posts: 10271
- Joined: Tue Nov 13, 2007 11:00 pm
- Location: Hangar 18
Re: CCleaner got bugs
And here I am sitting smugly behind my Linux laptop.
And then that smugness goes away when Ubuntu forgets that my headphones are plugged in and plays over speaker every time I wake from suspend. And the laptop's genius engineers decided that the sleep key should go in between the mute key and the volume control keys. Because fuck you, that's why.
And then that smugness goes away when Ubuntu forgets that my headphones are plugged in and plays over speaker every time I wake from suspend. And the laptop's genius engineers decided that the sleep key should go in between the mute key and the volume control keys. Because fuck you, that's why.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
Or with the lies?
No?
http://i170.photobucket.com/albums/u264 ... ac5dea.gif
--J.D.
No?
http://i170.photobucket.com/albums/u264 ... ac5dea.gif
--J.D.
-
- Posts: 11741
- Joined: Fri Jun 11, 2004 4:52 am
- Title: mere ghost of his former self
Re: CCleaner got bugs
The only lies being told here are the ones you have posted, Doc.
For example: I have never made any claim whatsoever about hundreds of thousands versus millions, nor do I have any trouble knowing which number is larger.
And you know that.
And yet you keep lying about it.
And then you whine about it in other threads that have nothing to do with this, which merely annoys those people and makes you look petty.
I have gotten more than one PM asking why do I bother responding to that asshole, Doctor X.
Quite obviously, I am not the only one here who sees through your bullshit.
For example: I have never made any claim whatsoever about hundreds of thousands versus millions, nor do I have any trouble knowing which number is larger.
And you know that.
And yet you keep lying about it.
And then you whine about it in other threads that have nothing to do with this, which merely annoys those people and makes you look petty.
I have gotten more than one PM asking why do I bother responding to that asshole, Doctor X.
Quite obviously, I am not the only one here who sees through your bullshit.
-
- Posts: 78338
- Joined: Fri Jun 04, 2004 8:09 pm
- Title: Collective Messiah
- Location: Your Mom
Re: CCleaner got bugs
Because "millions" and "millions" are less than "hundred thousands" and "zero," . . .
http://i170.photobucket.com/albums/u264 ... xmv3ob.png
--J.D.
http://i170.photobucket.com/albums/u264 ... xmv3ob.png
--J.D.