Welcome, Guest. Please login or register.
Did you miss your activation email?
May 18, 2013, 01:23:01 PM

Login with username, password and session length

662885 Posts
70570 Topics
153270 Members

Latest Member: rlsyogfprlg

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Security Products & Services
| |-+  Comodo Instant Malware Analysis Online - CIMA
| | |-+  How will CIMA work in Comodo version 4?
« previous next »
Pages: [1] Go Down Print
Author Topic: How will CIMA work in Comodo version 4?  (Read 8514 times)
Co-Mo-Do
Comodo's Hero
*****
Offline Offline

Posts: 427


Co-Mo-Do BOts Clean


« on: September 11, 2009, 11:28:17 AM »

I was wondering on how Comodo's IMA will work in the new version 4 of your Internet Security software.

To me, it looks like a virtual BB - from the results shown when using the online version.

So,
> How will CIMA work in CIS 4?

> How effective will it be?

> Will it be running on-access?


Is there any other useful information about CIMA?

Thanks.
Logged

Optimus Maximus Securitus, all aboard the Comodobus
EricJH
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 16652



« Reply #1 on: September 11, 2009, 11:56:30 AM »

I was wondering about that too. What's the latest and greatest on CIMA based heuristics for v4?
Logged

3xist
Guest
« Reply #2 on: September 11, 2009, 07:43:39 PM »

AFAIK, CIMA will act as another form of heuristic with behavior blocker in CIS v4; So you will have AV Heuristics and Behavior Blocker + CIMA working together on that side. Not 100% sure, Hopefully Melih can explain a bit more.

Cheers,
Josh
Logged
mouse1
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 7235


« Reply #3 on: October 04, 2009, 03:35:27 PM »

Well I wonder...

I'd supposed that, in the CIS CIMA module, Comodo would put algorithms that take too long to be executed in real time or during a comprehensive scan.

So maybe CIS will put up an alert re some suspect behavoir, and offer the opportunity to perform further more thorough analysis (& give technical feedback) to inform your allow/not decision. In this way CIMA would enter the decision-making process at much the same point as either 1) Threatcast and/or 2) "my pending files" examination. I guess if it enters at the threatcast point, it would improve the quality of threatcast scores. (Threatcast could even weight more highly allow/deny decisions made by people who had run CIMA on a file).

Probably a long way from the truth.....

Mouse
Logged

Tags: COMODO  Firewall  cis  CIMA  malware  analysis 
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.04 seconds with 20 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com