HardwareBanter

HardwareBanter (http://www.hardwarebanter.com/index.php)
-   Homebuilt PC's (http://www.hardwarebanter.com/forumdisplay.php?f=36)
-   -   "CCleaner compromised: better check your PC" (http://www.hardwarebanter.com/showthread.php?t=198194)

Mr. Man-wai Chang September 18th 17 06:17 PM

"CCleaner compromised: better check your PC"
 
On 18/9/2017 8:28 PM, Yrrah wrote:
"Piriform, makers of the popular file cleaner CCleaner, confirmed on
Monday 18th, 2017 that hackers managed to attack the company's
computer network successfully.(...)
https://www.ghacks.net/2017/09/18/ccleaner-compromised-better-check-your-pc/

I am appalled...;-)


Why? All software could be compromised because TO ERR IS HUMAN! Want me
to cite Murphy's Laws as well? :)

--
@~@ Remain silent! Drink, Blink, Stretch! Live long and prosper!!
/ v \ Simplicity is Beauty!
/( _ )\ May the Force and farces be with you!
^ ^ (x86_64 Ubuntu 9.10) Linux 2.6.39.3
不借貸! 不詐騙! 不援交! 不打交! 不打劫! 不自殺! 請考慮綜援 (CSSA):
http://www.swd.gov.hk/tc/index/site_...sub_addressesa

Blake Snyder September 18th 17 07:47 PM

"CCleaner compromised: better check your PC"
 
On Tue, 19 Sep 2017 01:17:48 +0800, in
, Mr. Man-wai Chang wrote:

Why? All software could be compromised because TO ERR IS HUMAN! Want me
to cite Murphy's Laws as well? :)


It's obvious why.

Of course, even though it's obvious why, you can just throw in the towel
and give up though as I'm not trying to stop you from giving up in
exasperation.

The rest of us will do something about it.

Both approaches are fine where which you take depends on your personality
more than anything else.

---
This email has been checked for viruses by Avast antivirus software.
https://www.avast.com/antivirus


Chris M. Thomasson[_2_] September 18th 17 08:44 PM

"CCleaner compromised: better check your PC"
 
On 9/18/2017 10:17 AM, Mr. Man-wai Chang wrote:
On 18/9/2017 8:28 PM, Yrrah wrote:
"Piriform, makers of the popular file cleaner CCleaner, confirmed on
Monday 18th, 2017 that hackers managed to attack the company's
computer network successfully.(...)
https://www.ghacks.net/2017/09/18/ccleaner-compromised-better-check-your-pc/


I am appalled...;-)


Why? All software could be compromised because TO ERR IS HUMAN! Want me
to cite Murphy's Laws as well?* :)


I wonder how many of those errors are highly obscure and on purpose, in
order to create some potential "back doors, cracks and creases"... Ahhh,
this is crazy talk! Sorry.

;^o

Mr. Man-wai Chang September 18th 17 09:45 PM

"CCleaner compromised: better check your PC"
 
On 19/9/2017 2:47 AM, Blake Snyder wrote:

It's obvious why.

Of course, even though it's obvious why, you can just throw in the towel
and give up though as I'm not trying to stop you from giving up in
exasperation.

The rest of us will do something about it.

Both approaches are fine where which you take depends on your personality
more than anything else.


If you were careful, you should not have relied on tools to protect your
computer. Your instinct instantly tell you whether something was
dangerous and should not have been downloaded. :)

--
@~@ Remain silent! Drink, Blink, Stretch! Live long and prosper!!
/ v \ Simplicity is Beauty!
/( _ )\ May the Force and farces be with you!
^ ^ (x86_64 Ubuntu 9.10) Linux 2.6.39.3
不借貸! 不詐騙! 不援交! 不打交! 不打劫! 不自殺! 請考慮綜援 (CSSA):
http://www.swd.gov.hk/tc/index/site_...sub_addressesa

Mr. Man-wai Chang September 18th 17 09:46 PM

"CCleaner compromised: better check your PC"
 
On 19/9/2017 3:44 AM, Chris M. Thomasson wrote:

I wonder how many of those errors are highly obscure and on purpose, in
order to create some potential "back doors, cracks and creases"... Ahhh,
this is crazy talk! Sorry.


To err is human, to deliberately err is a grand plot? ;)

--
@~@ Remain silent! Drink, Blink, Stretch! Live long and prosper!!
/ v \ Simplicity is Beauty!
/( _ )\ May the Force and farces be with you!
^ ^ (x86_64 Ubuntu 9.10) Linux 2.6.39.3
不借貸! 不詐騙! 不援交! 不打交! 不打劫! 不自殺! 請考慮綜援 (CSSA):
http://www.swd.gov.hk/tc/index/site_...sub_addressesa

Arnie Goetchius[_2_] September 18th 17 11:10 PM

"CCleaner compromised: better check your PC"
 
Blake Snyder wrote:
On Tue, 19 Sep 2017 01:17:48 +0800, in
, Mr. Man-wai Chang wrote:

Why? All software could be compromised because TO ERR IS HUMAN! Want me
to cite Murphy's Laws as well? :)


It's obvious why.

Of course, even though it's obvious why, you can just throw in the towel
and give up though as I'm not trying to stop you from giving up in
exasperation.

The rest of us will do something about it.

Both approaches are fine where which you take depends on your personality
more than anything else.

---
This email has been checked for viruses by Avast antivirus software.
https://www.avast.com/antivirus

This apparently affected version 5.33 32 bit only. 5.34 has now been released

Tim[_19_] September 19th 17 12:09 AM

"CCleaner compromised: better check your PC"
 
Arnie Goetchius wrote in
:

This apparently affected version 5.33 32 bit only. 5.34 has now been
released

And it only infected the 32bit version. So 64bit users were always ok, and
any 32bit users that are up to 5.34 are ok as well.

And according to Piriform, the code put into place was only a loader, a
'back door' so to say, and as far as they can tell no actual damaging
software ever used it. But the info it did steal was not something that one
would want spread around, although in and of itself would not be that
damaging.

Blake Snyder September 19th 17 01:21 AM

"CCleaner compromised: better check your PC"
 
On Tue, 19 Sep 2017 04:45:50 +0800, in
, Mr. Man-wai Chang wrote:

If you were careful, you should not have relied on tools to protect your
computer. Your instinct instantly tell you whether something was
dangerous and should not have been downloaded. :)


True that.

What software do you recommend for checking software?

I have Wireshark, for example, but it's complex to use (as you may know).
I also have Fiddler4, & TCPView, & Glasswire.

None of those would have caught it though because all are active sniffers.

What free software, as a passive sniffer, do you recommend that
would/should have caught the spyware in CCleaner when even Avast & Kapersky
didn't catch it?

---
This email has been checked for viruses by Avast antivirus software.
https://www.avast.com/antivirus


Bill[_36_] September 19th 17 03:27 AM

"CCleaner compromised: better check your PC"
 
Chris M. Thomasson wrote:
On 9/18/2017 10:17 AM, Mr. Man-wai Chang wrote:
On 18/9/2017 8:28 PM, Yrrah wrote:
"Piriform, makers of the popular file cleaner CCleaner, confirmed on
Monday 18th, 2017 that hackers managed to attack the company's
computer network successfully.(...)
https://www.ghacks.net/2017/09/18/ccleaner-compromised-better-check-your-pc/


I am appalled...;-)


Why? All software could be compromised because TO ERR IS HUMAN! Want
me to cite Murphy's Laws as well? :)


I wonder how many of those errors are highly obscure and on purpose,
in order to create some potential "back doors, cracks and creases"...
Ahhh, this is crazy talk! Sorry.



My version is a couple of years old. Since it seems to work, I don't
mess around by updating it.


Ant September 19th 17 03:33 AM

"CCleaner compromised: better check your PC"
 
In alt.comp.hardware.pc-homebuilt Tim wrote:
Arnie Goetchius wrote in
:


This apparently affected version 5.33 32 bit only. 5.34 has now been
released

And it only infected the 32bit version. So 64bit users were always ok, and
any 32bit users that are up to 5.34 are ok as well.


And according to Piriform, the code put into place was only a loader, a
'back door' so to say, and as far as they can tell no actual damaging
software ever used it. But the info it did steal was not something that one
would want spread around, although in and of itself would not be that
damaging.


Are portable versions OK?
--
Quote of the Week: "I've been on some fairways that are as good as the greens we putted on back then. We had crab grass. I remember one green where I putted through ants." --Sam Snead
Note: A fixed width font (Courier, Monospace, etc.) is required to see this signature correctly.
/\___/\ Ant(Dude) @ http://antfarm.ma.cx (Personal Web Site)
/ /\ /\ \ Ant's Quality Foraged Links: http://aqfl.net
| |o o| |
\ _ / Please nuke ANT if replying by e-mail privately. If credit-
( ) ing, then please kindly use Ant nickname and AQFL URL/link.


All times are GMT +1. The time now is 12:16 PM.

Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
HardwareBanter.com