Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
May 24, 2013, 06:53:50 PM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
664004
Posts
70623
Topics
145256
Members
Latest Member:
KHelmsch_de
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Security Products & Services
Comodo Internet Security - CIS
Help - CIS
Defense+ / Sandbox Help - CIS
5.8 too many Defense+ Alerts
« previous
next »
Pages:
[
1
]
Author
Topic: 5.8 too many Defense+ Alerts (Read 4066 times)
coyote2
Newbie
Offline
Posts: 18
5.8 too many Defense+ Alerts
«
on:
November 03, 2011, 12:25:16 PM »
Upon upgrading to 5.8 of the free firewall, I'm getting huge numbers of Defense+ alerts. Even from components of the firewall itself! (And when I try to change Windows settings in system components like "Scheduled Tasks".)
I have read the sticky on 5.8's changes at
http://forums.comodo.com/defense-sandbox-faq-cis/alert-reducing-settings-in-cis-why-how-when-to-use-draft-v58-onwards-t76410.0.html
, but I'm still lost as to how to get back to the pre-5.8 situation. (In part because, even as far as I understand that sticky, I can't find the settings alluded to.)
My Firewall and Defense+ Security levels = "Safe Mode". I see the Sandbox got Disabled, so I just Enabled it (I don't imagine that will reduce the number of alerts I'm getting).
Windows XP Pro 32-bit sp3; also running Norton Antivirus 2012.
«
Last Edit: November 03, 2011, 12:54:00 PM by coyote2
»
Logged
Chiron
Global Moderator
Comodo's Hero
Offline
Posts: 5586
Re: 5.8 too many Defense+ Alerts
«
Reply #1 on:
November 03, 2011, 01:28:40 PM »
It sounds to me like something could be wrong with your install. What happens when you run the diagnostics?
Logged
How To Install Comodo Firewall
How To Stay Safe While Online
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #2 on:
November 03, 2011, 01:39:57 PM »
Quote from: Chiron on November 03, 2011, 01:28:40 PM
It sounds to me like something could be wrong with your install. What happens when you run the diagnostics?
I just tried it: "The diagnostics utility did not find any problems with your installation."
At least it does now finally seem to be (at least sometimes) learning; perhaps with time the alerts will wane, much as they did when I installed the product for the first time years ago.
Logged
Chiron
Global Moderator
Comodo's Hero
Offline
Posts: 5586
Re: 5.8 too many Defense+ Alerts
«
Reply #3 on:
November 03, 2011, 01:58:00 PM »
On my system I get very few alerts. Were you saying that your Comodo Firewall was giving you alerts for things that Comodo Firewall was doing?
What adjustments, if any, did you make to the default settings?
Logged
How To Install Comodo Firewall
How To Stay Safe While Online
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #4 on:
November 03, 2011, 02:04:11 PM »
Quote from: Chiron on November 03, 2011, 01:58:00 PM
On my system I get very few alerts. Were you saying that your Comodo Firewall was giving you alerts for things that Comodo Firewall was doing?
Yes; for example, on system bootup, when Comodo checked for updates, I got a Defense+ alert.
Quote
What adjustments, if any, did you make to the default settings?
Other than the Security Levels I just mentioned, I don't think I have made any changes to the default settings.
Logged
Chiron
Global Moderator
Comodo's Hero
Offline
Posts: 5586
Re: 5.8 too many Defense+ Alerts
«
Reply #5 on:
November 03, 2011, 02:26:11 PM »
There may have been a problem with your installation. By that I mean that Comodo Firewall may not have installed properly.
Other than that it could be a problem with Norton Antivirus. I don't seem to remember Norton Antivirus playing well with other security programs, but this is just a guess.
Also, what version of Comodo Firewall did you have installed before 5.8?
If you do decide to reinstall Comodo Firewall then I would advise following the advice I give on
this page
and then configuring it as I describe in
this article
.
Thank you.
Logged
How To Install Comodo Firewall
How To Stay Safe While Online
captainsticks
Global Moderator
Comodo's Hero
Offline
Posts: 6059
Re: 5.8 too many Defense+ Alerts
«
Reply #6 on:
November 03, 2011, 03:11:06 PM »
A view of D+ event logs or alert logs could assist in finding a cause for the alerts.
Logged
A good read guaranteed.
Forum Policy - Updated on January 3, 2013
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #7 on:
November 03, 2011, 07:35:09 PM »
Quote from: captainsticks on November 03, 2011, 03:11:06 PM
A view of D+ event logs or alert logs could assist in finding a cause for the alerts.
Thank you very much for your reply, captainsticks!
I exported my D+ Events for today to .htm (the only format offered), but that can't be attached here. Any suggestions, please?
«
Last Edit: November 03, 2011, 07:39:12 PM by coyote2
»
Logged
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #8 on:
November 03, 2011, 07:37:10 PM »
Quote from: Chiron on November 03, 2011, 02:26:11 PM
Other than that it could be a problem with Norton Antivirus. I don't seem to remember Norton Antivirus playing well with other security programs, but this is just a guess.
Thank you very much for your reply, Chiron!
All was well until 5.8
Quote
Also, what version of Comodo Firewall did you have installed before 5.8?
It was 5.5...1383
«
Last Edit: November 03, 2011, 07:42:46 PM by coyote2
»
Logged
captainsticks
Global Moderator
Comodo's Hero
Offline
Posts: 6059
Re: 5.8 too many Defense+ Alerts
«
Reply #9 on:
November 03, 2011, 08:59:13 PM »
Quote from: coyote2 on November 03, 2011, 07:35:09 PM
I exported my D+ Events for today to .htm (the only format offered), but that can't be attached here. Any suggestions, please?
Hi Coyote2,
An attached screenshot of the logs would be another way.
Logged
A good read guaranteed.
Forum Policy - Updated on January 3, 2013
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #10 on:
November 03, 2011, 09:12:26 PM »
Quote from: captainsticks on November 03, 2011, 08:59:13 PM
Hi Coyote2,
An attached screenshot of the logs would be another way.
Screenshot of the bottom of today's Defense+ Event log attached. I'll happily post any number of additional screens if that would be helpful.
defense+.jpg
(1150.11 KB, 1680x1050 - viewed 17 times.)
Logged
captainsticks
Global Moderator
Comodo's Hero
Offline
Posts: 6059
Re: 5.8 too many Defense+ Alerts
«
Reply #11 on:
November 04, 2011, 06:12:09 AM »
Hi Coyote2,
Thanks for the screenshot, you could also post/attach your
Configuration Changes logs
and
Alerts Displayed logs
for the Entire Period and this might show where it all started.
Please Zip the HTML files to attach to your post.
Also in case of a corrupt configuration you could choose an alternative configuration to see if that calms the monster.
Right click Comodo icon and choose between proactive/firewall configurations.
Thanks.
Logged
A good read guaranteed.
Forum Policy - Updated on January 3, 2013
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #12 on:
November 04, 2011, 09:34:04 AM »
Quote from: captainsticks on November 04, 2011, 06:12:09 AM
Hi Coyote2,
Thanks for the screenshot, you could also post/attach your
Configuration Changes logs
and
Alerts Displayed logs
for the Entire Period and this might show where it all started.
Please Zip the HTML files to attach to your post.
Also in case of a corrupt configuration you could choose an alternative configuration to see if that calms the monster.
Right click Comodo icon and choose between proactive/firewall configurations.
Thanks.
Thank you very much, captainsticks! Zipped logs are attached.
comodo-logs.zip
(204.91 KB - downloaded 5 times.)
Logged
coyote2
Newbie
Offline
Posts: 18
Re: 5.8 too many Defense+ Alerts
«
Reply #13 on:
November 04, 2011, 11:14:46 AM »
Quote from: coyote2 on November 04, 2011, 09:34:04 AM
Thank you very much, captainsticks! Zipped logs are attached.
Never mind, sorry!!!
I just restored a backup image (of my system drive, taken just before I updated my video card drivers a couple days ago), which resolved the problem.
Perhaps it was just
that
update attempt which went wrong; I'll try it once more and perhaps all will remain well.
Logged
captainsticks
Global Moderator
Comodo's Hero
Offline
Posts: 6059
Re: 5.8 too many Defense+ Alerts
«
Reply #14 on:
November 04, 2011, 03:34:12 PM »
Hi Coyote2,
No sorry required, it doesn't matter who solves the problem it is nice to see it fixed
.
Thanks for taking the time to produce the logs.
All the best for the future, thanks from Captainsticks.
Logged
A good read guaranteed.
Forum Policy - Updated on January 3, 2013
Tags:
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.05 seconds with 22 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com