Welcome, Guest. Please login or register.
December 18, 2009, 01:10:43 AM

Login with username, password and session length

343267 Posts
37939 Topics
86138 Members

Latest Member: pacecar3

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Learn about Computer Security and Interact with Security Experts
| |-+  Anti Virus/Malware Products/Other Security products
| | |-+  Please feel free to ask any questions to learn all about Computer Security.
« previous next »
Pages: 1 ... 4 5 [6] 7 Go Down Print
Author Topic: Please feel free to ask any questions to learn all about Computer Security.  (Read 40428 times)
asker
Comodo Family Member
***
Offline Offline

Posts: 50



WWW
« Reply #75 on: February 18, 2009, 09:39:52 AM »

I tried Comodo Buffer Overflow utility. Defense+ and Windows Vista UAC intercepted it, but ThreatFire from PCtools did not even blink. I fully trust ThreatFire but since this test I have gone a little suspicious about effectiveness of Threatfire. Do you have any idea why ThreatFire did not react? Is it possible it recognized your testing utility as something not dangerous or did it completely fail?
I do not want to use Defense+ because it is too intrusive with warnings no matter how much I strive to silent it. Since I test a lot of software I can not afford this. I wish it was smart hips.

www.computorial.blogspot.com
Logged
andyman35
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1093


« Reply #76 on: February 18, 2009, 12:30:47 PM »

I tried Comodo Buffer Overflow utility. Defense+ and Windows Vista UAC intercepted it, but ThreatFire from PCtools did not even blink. I fully trust ThreatFire but since this test I have gone a little suspicious about effectiveness of Threatfire. Do you have any idea why ThreatFire did not react? Is it possible it recognized your testing utility as something not dangerous or did it completely fail?
I do not want to use Defense+ because it is too intrusive with warnings no matter how much I strive to silent it. Since I test a lot of software I can not afford this. I wish it was smart hips.

www.computorial.blogspot.com


It's difficult to say with regards to TF,why it didn't react.It could well be that it determined that nothing malicious was actually occurring.
Logged
asker
Comodo Family Member
***
Offline Offline

Posts: 50



WWW
« Reply #77 on: February 18, 2009, 02:43:40 PM »

It's difficult to say with regards to TF,why it didn't react.It could well be that it determined that nothing malicious was actually occurring.
maybe you are right. But I would like to be sure.  Thinking
Thanks for reply andy Cheers
Logged
Info-Sec
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 605



« Reply #78 on: February 18, 2009, 10:10:58 PM »

maybe you are right. But I would like to be sure.  Thinking
Thanks for reply andy Cheers

Yes, threatfire is very good at alerting you to real malicious behavior.  For example a bufferoverflow may occur, but if no code is being injected, threatfire will not alert you.
Logged

*Vista *CFP V3 *Avira * Avast *Spyware Doctor
*XP *Zone Alarm PRO *NOD32 V2.7 *Spysweeper
andyman35
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1093


« Reply #79 on: February 19, 2009, 06:52:14 PM »

Yes in order to generate a warning from Threatfire a certain threshold of suspicious behaviour must be exceeded.So even if a single factor shares a similarity with malware,TF uses intelligence to determine whether or not it's truly malicious (sometimes it's over zealous but that's another point).
Logged
Info-Sec
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 605



« Reply #80 on: February 22, 2009, 01:30:13 PM »

Yes in order to generate a warning from Threatfire a certain threshold of suspicious behaviour must be exceeded.So even if a single factor shares a similarity with malware,TF uses intelligence to determine whether or not it's truly malicious (sometimes it's over zealous but that's another point).

Yes, that point is exactly what makes TF a great solution.  Its usually quiet when it has to be, and its effective when it has to be.
Logged

*Vista *CFP V3 *Avira * Avast *Spyware Doctor
*XP *Zone Alarm PRO *NOD32 V2.7 *Spysweeper
andyman35
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1093


« Reply #81 on: February 22, 2009, 04:12:30 PM »

Yes, that point is exactly what makes TF a great solution.  Its usually quiet when it has to be, and its effective when it has to be.

Quite so.If it'd just stop with the automated blocking it'd be a near perfect BB.
Logged
OmeletGuy
Good gamer, Omelet Chef, Rogue AV hater!
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 1627


The only thing i ask for are eggs.


WWW
« Reply #82 on: April 25, 2009, 01:00:38 AM »

Can Bufferoverflow attacks happen on Unbuffred memory??

Logic says no! but then again it could right?
Logged

Happy New Year and Holidays
Please follow forum policy. Thank you.
panic
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 7639


... and I say to myself, "What a wonderful world"


« Reply #83 on: April 25, 2009, 02:48:00 AM »

Buffer overflows refer to software buffers, not what type of RAM  is installed in your system.
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
MorphOS REBOL
Comodo's Hero
*****
Offline Offline

Posts: 813



« Reply #84 on: May 13, 2009, 01:33:57 PM »

Wise answer Smiley

The REBOL

Logged
pwindfeld
Newbie
*
Offline Offline

Posts: 2


« Reply #85 on: June 10, 2009, 02:39:46 AM »

Most links from a Google search is forcibly done via bestwebsearch.net which appears to be a Chinese outfit (with a rather amusing take on the use of the English language!) and is slowing web access to a crawl. Neither Comodo nor Spybot find any spy/malware on the pc. What is this and how do I get rid of it?

Many thanks
Logged
JamesFrance
Comodo's Hero
*****
Offline Offline

Posts: 659



« Reply #86 on: June 10, 2009, 04:14:44 AM »

Most links from a Google search is forcibly done via bestwebsearch.net which appears to be a Chinese outfit (with a rather amusing take on the use of the English language!) and is slowing web access to a crawl. Neither Comodo nor Spybot find any spy/malware on the pc. What is this and how do I get rid of it?

Many thanks

Hi pwinfeld, welcome to the forum.

Do you have this installed?

Quote
A malicious Firefox extension called FirestarterFox is being installed by some of the latest malware variants. This extension hijacks all search requests through Google, Yahoo and Microsoft Live search and redirects them through the Russian site thebestwebsearch.net

If so maybe you have other problems too and should post here:
http://forums.comodo.com/virusmalware_removal_assistance-b58.0/
Logged

James
pwindfeld
Newbie
*
Offline Offline

Posts: 2


« Reply #87 on: June 10, 2009, 06:35:58 PM »

Hi James - I don't have Firefox installed, but between SuperAntiSpyware and Malwarebytes the problem has now been fixed. Many thanks; you're indeed a star.
Logged
morgan
Newbie
*
Offline Offline

Posts: 3


« Reply #88 on: June 20, 2009, 04:22:48 PM »

Comodo has trapped my msn in its security system as some kind of a danger and I cannot reload it. I have tried removing msn and loading it again even without Comodo but I talked to an "expert" and he says Comodo security has it trapped or blocked.

I went to Comodo and can't find anything that says "msn" blocked. I tried to free my "locked" messages but that didn't help. At the moment my msn "premium" will not work at all (I'm paying for it) even though live mail will, thank God.

Could somebody email me if you have an answer? Anybody have similar problems? I'm not always available to access this site. Thank you!!

By the way, I tried reinstalling msn with Comodo turned off and that didn't help either, it's still blocking it.
Logged
fatherflap
Newbie
*
Offline Offline

Posts: 8


« Reply #89 on: July 02, 2009, 08:53:22 AM »

My Anti- virus scans freeze at about 55823 folders scanned. I have tried both connected and disconnected from the internet.

I have un-installed and reinstalled a fresh copy of Commodo Anti- virus of it but it still freezes about 2 minutes from the usual time it takes to scan .

Would welcome any ideas or a solution

cheers fatherflap
Logged
Tags:
Pages: 1 ... 4 5 [6] 7 Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.047 seconds with 18 queries.
Powered by SMF 1.1.11 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com