Welcome, Guest. Please login or register.
January 06, 2010, 10:16:39 AM

Login with username, password and session length

348136 Posts
38480 Topics
87529 Members

Latest Member: rockstar007

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Internet Security - CIS
| | |-+  Help - CIS
| | | |-+  AntiVirus Help
| | | | |-+  Virus's not found but activity detected
« previous next »
Pages: [1] Go Down Print
Author Topic: Virus's not found but activity detected  (Read 543 times)
andyplira
Newbie
*
Offline Offline

Posts: 1


« on: November 11, 2009, 11:58:33 PM »

I have been using Comodo CIS for  a few years now and up till now was very satisfied with the products performance, however recently I was presented with a series of laptops at a remote site in South Sudan that had obvious infections, i.e. the activities such as this exe is about to terminate this exe or this file is about to contact the internet were seen in the pop-up alerts, but CIS failed to detect the actual virus. I tried all settings but to no avail so I had to resort to other tools such as SuperAntiSpyware and Spybot and then AVG to clean this up (After deleting CIS).

Virus Found and cleaned
WIN32/Heur
SpamTool.DQY
Agent2.Man
WIN32/PH.CAF820038
Exploit.Jpeg
WIN32Tanatos.M

This message is firstly to inform COMODO of the possibilty that the product cant find the above infections, and secondly to ask was there another method using CIS that would have fixed this, Presently all the machines are running very well and are detecting any new attacks as and when the occur i.e. Flash Disks, USB hard drives
Logged
layman
Comodo's Hero
*****
Offline Offline

Posts: 362


« Reply #1 on: November 12, 2009, 04:42:59 AM »

If heuristics scanning level under CIS-Antivirus-Scanner Settings - Realtime - Scheduled - Manual Scanning was kept at 'High' it 'may have' detected them, if signature doesn't already exist. Under such circumstances it would be wise to upload these samples using the below given interface, so that signatures can be added to CIS.

http://internetsecurity.comodo.com/submit.php

Logged
HeffeD
Comodo's Hero
*****
Offline Offline

Posts: 1529


« Reply #2 on: November 12, 2009, 07:22:52 PM »

Yes, just giving the names doesn't help much because every AV developer has different naming conventions.
Logged

-[NHATZ_JADE]-
Comodo's Hero
*****
Online Online

Posts: 289


2G/3G Rigger & Radio Access Field Officer [HUAWEI]


WWW
« Reply #3 on: November 13, 2009, 04:46:32 AM »

Hi",)

Can you give us the EXACT settings of your CIS before you uninstalled?

 Thinking Thinking Thinking
          Thinking Thinking Thinking
                   Thinking Thinking Thinking
Logged

OS
- [XP PRO sp2]
PROCESSOR
- [CELERON-D single]
BROADBAND ANTENNA
- [Motorola Canopy with Surge & Lightning Arrester]
UPS
- [Liebert Emerson ItOn]
ON-DEMAND SCANNER
- [MBAM] [SAS] [SPYBOT] [A-SQUARED]
http://www.facebook.com/home.php?#/nhatz.jaja?ref=profile
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.037 seconds with 18 queries.
Powered by SMF 1.1.11 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com