What is ccleaner.exe?
ccleaner.exe is a legitimate executable file developed by Piriform Ltd. This process is known as File Clean up Module and it belongs to CCleaner. It is commonly stored in C:\Program Files.
Cybercriminals find a way out to mimic malicious programs in the name of ccleaner.exe to spread malware infection.
Affected Platforms: Windows OS
How to determine if your computer is infected with ccleaner.exe malware?
Look out for these symptoms to check if your PC is infected with ccleaner.exe malware:
- Unstable internet connection
- ccleaner.exe occupies extra CPU space
- PC processing speed slows down
- Browser often redirects to irrelevant websites
- Browser is bombarded with hordes of popup ads
- Computer screen freezes repeatedly
Take the following steps to diagnose your PC for possible ccleaner.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files, perform an antivirus scan to get rid of the malware.
How to remove ccleaner.exe malware from system using Comodo Antivirus?
Step 1: Download our award-winning Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Restart your PC after the installation gets over
Step 5: Wait for Comodo Internet Security to update the antivirus.
Step 6: Proceed with the quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be notified through an alert screen.
Step 8: Comodo Antivirus will remove ccleaner.exe malware from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Piriform Software Ltd | Executable | 8541c0cc6d8915dd b541eb23f78b0fbf cbc7f6a9 |
6667c0641b921949 c253ad8320632d35 |
Virus.Win32. Floxif.A |
Yes | 6.20.0.108 97 |
6.20.0.108 97 |
Italy |
N/A |
| 2 | Piriform Ltd | Executable | 4f797b51a46803fa 033ea66806a7b481 eec14f0b |
6126af1ba1830fc5 d623a225b23e5a11 |
Virus.Win32. Floxif.A |
Yes | 5, 11, 00, 5408 |
5, 11, 00, 5408 |
Italy |
N/A |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
|---|---|---|---|---|---|---|---|---|
| 1 | Piriform Software Ltd | Executable | 3d625472bae885f6 ffb7a003d20a42dd f42192b8 |
0768c07927b4a101 2b85ede04077e99f |
Yes | 6.31.0.114 15 |
6.31.0.114 15 |
United States |
| 2 | Gen Digital Inc. | Executable | 1e44dd271871e513 d028491ced78dfd7 83f40283 |
53865aea92491ace 383cde5e187b6e2e |
Yes | 6.33.0.114 65 |
6.33.0.114 65 |
104.238.128.144/32 |
| 3 | Gen Digital Inc. | Executable | 55c7bb177c4ea848 dd0dd9063d5f526e 473ae40c |
b91588d21ec83c39 366a3a30ceab26cb |
Yes | 6.36.0.115 08 |
6.36.0.115 08 |
United States |
| 4 | Piriform Ltd | Executable | e9ce6d8276310e55 7857dc7a2a100bcf 005326df |
d85e2174f92f4198 451563b714cbb361 |
Yes | 2, 35, 0, 1223 |
2, 35, 0, 1223 |
United States |

Italy
United States
104.238.128.144/32
Ukraine
