Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
May 24, 2013, 05:33:05 AM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
663901
Posts
70610
Topics
145242
Members
Latest Member:
FranklynS
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Security Products & Services
Comodo Internet Security - CIS
Help - CIS
Defense+ / Sandbox Help - CIS
5.3 and WoW trouble.
« previous
next »
Pages:
1
[
2
]
Author
Topic: 5.3 and WoW trouble. (Read 7788 times)
ntoskrnl
Global Moderator
Comodo's Hero
Offline
Posts: 901
Moderators Group Russian Forum Comodo
Re: 5.3 and WoW trouble.
«
Reply #15 on:
December 30, 2010, 04:13:42 PM »
Quote from: Searinox on December 30, 2010, 03:17:35 PM
"the only IS equipped with" also means novelty.
What novelty are You telling about? Comodo Memory Firewall is more than three years old:
http://forums.comodo.com/Comodo_memory_guardian_beta_corner/Comodo_memory_guardian_beta_v1_buffer_overflow_protection-t11108.0.html;msg78852#msg78852
Buffer overrun attacks are well known for more than 20 years.
Quote from: Searinox on December 30, 2010, 03:17:35 PM
Oftentimes novelty can bring about problems and needs POLISHING.
Sure. But this also applies to third parties, which are unable to provide stable code.
Quote from: Searinox on December 30, 2010, 03:17:35 PM
Again not all BOs are exploitable and only those that are would get patched.
How CIS should to determine, what BO is exploitable and dangerous and what is "safe"?
Quote from: Searinox on December 30, 2010, 03:17:35 PM
When D+ gets ready to deny something, it issues a popup, makes the program wait, and once an action was decided it enforces/doesn't enforce a policy. This is healthy behaveior.
BO oftentimes will decide at its own discretion to stomp a type of behaveior, crash the app, and not give the user a say. That it is possible to exclude some applications implies some acknowledgement on Comodo's side that this behaveior may NOT ALWAYS be useful or helpful, and can create more problems than it solves. As such, they should take the next logical step and request user consent before doing so.
In many cases when application's stack(s) or heap(s) becomes corrupted there is no option to "wait", because this app is already crashed actually.
Logged
Searinox
Comodo's Hero
Offline
Posts: 532
Do you like fire? I'm full of it.
Re: 5.3 and WoW trouble.
«
Reply #16 on:
December 30, 2010, 04:22:07 PM »
WoW does not produce one such popup. Neither does Alcohol. And WoW and Alcohol are not one of those "many cases" as they will run perfectly normal otherwise. This is what I meant by aggressive - these new developments don't even notify anymore, they just alter the behaveior and you may or may not be lucky to figure out that Comodo is the reason why they don't work anymore.
«
Last Edit: December 30, 2010, 04:23:55 PM by Searinox
»
Logged
Windows 7 Ultimate 64-bit with all updates, UAC off + COMODO Internet Security 5.8 + Avira Free 2012 + TuneUp Utilities 2011 + Norton Ghost 15 SP1
Luc[y]
Malware Research Group
Comodo's Hero
Offline
Posts: 667
Re: 5.3 and WoW trouble.
«
Reply #17 on:
December 30, 2010, 04:48:10 PM »
Starcraft 2 made overflow too, and Comodo do not give alerts, you have to relaunch starcraft for getting this alert.
COMODO maybe hate blizzard company (:
Logged
Searinox
Comodo's Hero
Offline
Posts: 532
Do you like fire? I'm full of it.
Re: 5.3 and WoW trouble.
«
Reply #18 on:
December 30, 2010, 05:07:49 PM »
I'm not all that surprised since they use the same graphics and battle.net engine. WoW has been live for over 6 years and never has an exploit or malware been carried out through the client itself. It is possible under defense+ shellcode detection exclusions to add groups -> all programs. It is highly unlikely that Blizzard bow down to Comodo on this one.
Logged
Windows 7 Ultimate 64-bit with all updates, UAC off + COMODO Internet Security 5.8 + Avira Free 2012 + TuneUp Utilities 2011 + Norton Ghost 15 SP1
Valentin N
Malware Research Group
Comodo's Hero
Offline
Posts: 2833
Usability Study Group
Re: 5.3 and WoW trouble.
«
Reply #19 on:
December 30, 2010, 05:29:13 PM »
what's the big deal? put in in Exclusions in Detect shellcode injections (i.e. Buffer overflow protection)?
I wish all here Happy New Year!
Regards,
Valentin N
«
Last Edit: December 30, 2010, 05:44:31 PM by Valentin N
»
Logged
Skype: comodohelper (Personal)
CEVPN: Valentin N
CIS 5.9
Keep CTM alive by voting
Luc[y]
Malware Research Group
Comodo's Hero
Offline
Posts: 667
Re: 5.3 and WoW trouble.
«
Reply #20 on:
December 30, 2010, 05:42:06 PM »
yes, but every update, you have to re-add in exclusion annoying .
BTW : 5.3 fix this issues when i have to relaunch sc2 ;!
«
Last Edit: December 30, 2010, 05:46:00 PM by Luc[y]
»
Logged
Valentin N
Malware Research Group
Comodo's Hero
Offline
Posts: 2833
Usability Study Group
Re: 5.3 and WoW trouble.
«
Reply #21 on:
December 30, 2010, 05:45:41 PM »
It's something that you have to accept
Logged
Skype: comodohelper (Personal)
CEVPN: Valentin N
CIS 5.9
Keep CTM alive by voting
andyman35
Global Moderator
Comodo's Hero
Offline
Posts: 1570
Re: 5.3 and WoW trouble.
«
Reply #22 on:
December 30, 2010, 10:12:09 PM »
Quote from: Luc[y] on December 30, 2010, 04:48:10 PM
Starcraft 2 made overflow too, and Comodo do not give alerts, you have to relaunch starcraft for getting this alert.
Comodo maybe hate blizzard company (:
Or perhaps evidence of a trend for sloppy coding at Blizzard
Logged
Searinox
Comodo's Hero
Offline
Posts: 532
Do you like fire? I'm full of it.
Re: 5.3 and WoW trouble.
«
Reply #23 on:
December 31, 2010, 04:48:40 AM »
A "we're right they're wrong" attitude which leaves the users with the task of adding exceptions is a bad idea in this case.
Logged
Windows 7 Ultimate 64-bit with all updates, UAC off + COMODO Internet Security 5.8 + Avira Free 2012 + TuneUp Utilities 2011 + Norton Ghost 15 SP1
andyman35
Global Moderator
Comodo's Hero
Offline
Posts: 1570
Re: 5.3 and WoW trouble.
«
Reply #24 on:
December 31, 2010, 06:26:03 AM »
Searinox the problem is that if the BO protection is modified to accommodate buggy applications then it pretty much negates the whole concept.This isn't the same as a FP within the AV,the protection is being activated by a BO,while inconvenient since it's a benign error the fact remains that it is just that.
A compromise would be improvements to the usability in order to make things more transparent to the end user.
Logged
Searinox
Comodo's Hero
Offline
Posts: 532
Do you like fire? I'm full of it.
Re: 5.3 and WoW trouble.
«
Reply #25 on:
December 31, 2010, 07:18:07 AM »
And I have already suggested the simple compromise of having people alerted by Comodo BEFORE the app is tampered with/"corrected", instead of a silent crash(WoW, StarCraft) or abnormal behaveior(alcohol) and since Comodo alerts before acting with everything else - AV, D+, FW, I could think of nothing better to please both sides, but HeffeD denied even this simple request saying that it's Comodo's right to correct these apps whenever it sees fit and the user has to deal with it.
Logged
Windows 7 Ultimate 64-bit with all updates, UAC off + COMODO Internet Security 5.8 + Avira Free 2012 + TuneUp Utilities 2011 + Norton Ghost 15 SP1
HeffeD
Global Moderator
Comodo's Hero
Offline
Posts: 6573
Re: 5.3 and WoW trouble.
«
Reply #26 on:
December 31, 2010, 02:35:38 PM »
Quote from: Searinox on December 31, 2010, 07:18:07 AM
but HeffeD denied even this simple request saying that it's Comodo's right to correct these apps whenever it sees fit and the user has to deal with it.
I said nothing of the sort... All I said was Comodo didn't
cause
the problem. The problem was
caused
by a buffer overflow in the application! Comodo is merely protecting you from the buffer overflow. If you want to read more into what I wrote, I guess that's your prerogative.
Logged
Please read the
Forum Policy
!
Breast Cancer Awareness
American Cancer Society
Searinox
Comodo's Hero
Offline
Posts: 532
Do you like fire? I'm full of it.
Re: 5.3 and WoW trouble.
«
Reply #27 on:
January 01, 2011, 06:44:48 AM »
The issue just got worse. I restarted the computer and now alcohol is exhibiting the same-old error again. WoW continues to work well with the exclusions, but alcohol no longer so. I deleted the rule and added a new rule for all applications(*) then restarted, again WoW works fine, alcohol still broken.
It looks like I will have to use "disable Defense+ permanently" yet again. This is the first time in over 3 months that I re-enabled D+, after my first encounter with the alcohol issue left me no choice. Now I have to disable it again. Somebody please tell me how it is that D+ is still meddling after I added the group All Files and Folders (*) to the exclusion list. WoW works, so the exclusions must be working. Alcohol doesn't, so the exclusions must be partially working...? The devs can either choose to look into this seriously, or I will have to keep running with D+ disabled for an unknown period of time, until something gets done.
Logged
Windows 7 Ultimate 64-bit with all updates, UAC off + COMODO Internet Security 5.8 + Avira Free 2012 + TuneUp Utilities 2011 + Norton Ghost 15 SP1
Valentin N
Malware Research Group
Comodo's Hero
Offline
Posts: 2833
Usability Study Group
Re: 5.3 and WoW trouble.
«
Reply #28 on:
January 01, 2011, 07:09:23 AM »
I use myself Deamon tools lite (this tool gives BO) and once I add it in CIS ---> Defense+ ---> Defense+ Settings ---> Execution control Settings ---> Detect shellcode injections (i.e. Buffer overflow protection) ---> Exclusions ---> Add ---> Browse... everything is working fine.
Regards,
Valentin N
Logged
Skype: comodohelper (Personal)
CEVPN: Valentin N
CIS 5.9
Keep CTM alive by voting
Searinox
Comodo's Hero
Offline
Posts: 532
Do you like fire? I'm full of it.
Re: 5.3 and WoW trouble.
«
Reply #29 on:
January 01, 2011, 08:44:31 AM »
Problem solved.
I spent 2 hours on experiments and managed to figure out why alcohol would not work: since I was launching it alot to check its status, it updated itself. So I ran more tests and was able to figure out the awful truth. Apparently if an update or clean install is made WITH the defense+ driver active, REGARDLESS of having under exclusions everything, just the installer, the whole alcohol folder, or nothing at all, the install will be BROKEN. And the only fix is to install alcohol, or any updates to it, WHILE D+ is permanently deactivated. After that D+ can be reactivated.
This goes well beyond the issue of bothering an app, crashing it, or causing it to behave strangely, because all those issues could be fixed by simply adding the troubled apps to the exclusion list. With installing alcohol 120%, D+ must be permanently deactivated for the duration of the install, else it WILL interfere, no matter what the exclusions. This is not normal no matter how you slice it.
Logged
Windows 7 Ultimate 64-bit with all updates, UAC off + COMODO Internet Security 5.8 + Avira Free 2012 + TuneUp Utilities 2011 + Norton Ghost 15 SP1
Tags:
Pages:
1
[
2
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.053 seconds with 22 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com