Welcome, Guest. Please login or register.
August 21, 2008, 11:06:33 PM

Login with username, password and session length

185078 Posts
21489 Topics
52098 Members

Latest Member: marcaro62

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo BOClean Anti-Malware
| | |-+  Comodo BoClean Anti-Malware Feedback
« previous next »
Pages: [1] 2 3 ... 5 Go Down Print
Author Topic: Comodo BoClean Anti-Malware Feedback  (Read 12981 times)
AJohn
Computer Security Testing Group
Comodo Loves me
*****
Offline Offline

Posts: 133



« on: April 22, 2007, 04:13:37 AM »

Everything is working fine on my system.

Windows XP MCE with Samurai, Wehntrust software enabled.
Logged
Eric Cryptid
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1013


Security Saskquatch


« Reply #1 on: April 22, 2007, 04:45:49 AM »

I'm very impressed!


I ran the SPYCAR test to see if it picked up and removed the malware.

Comodo BOClean did crash twice running the SPYCAR files but only for two of them and the spycar test for those files didn't run so it stopped them in any case and Comodo BOClean removed the files before it crashed.

If you want the technical information from the technical support thingy just let me know...
Anyway, here's the CBOC log after the test.

----------------------------


 

------------------------------
04/22/2007 10:16:03: SPYCAR VARIANT STOPPED BY BOCLEAN!   
Trojan horse was found in memory.
Í contained the trojan.
Active trojan horse WAS shut down. System safe.
Logged in user: *****

------------------------------
04/22/2007 10:18:00: SPYCAR VARIANT STOPPED BY BOCLEAN!   
Trojan horse was found in memory.
} contained the trojan.
Active trojan horse WAS shut down. System safe.
Logged in user: *****

------------------------------
04/22/2007 10:18:01: SPYCAR MALWARE STOPPED by BOCLEAN!   
Trojan horse was found in memory.
D:\SOFTWARE\HKCU_RUNONCE.EXE contained the trojan.
Active trojan horse WAS shut down. System now safe.
Logged in user: *****

------------------------------
04/22/2007 10:18:20: SPYCAR VARIANT STOPPED BY BOCLEAN!   
Trojan horse was found in memory.
} contained the trojan.
Active trojan horse WAS shut down. System safe.
Logged in user: *****

------------------------------
04/22/2007 10:19:55: SPYCAR VARIANT STOPPED BY BOCLEAN!   
Trojan horse was found in memory.
   k contained the trojan.
Active trojan horse WAS shut down. System safe.
Logged in user: *****

------------------------------
04/22/2007 10:19:56: SPYCAR MALWARE STOPPED by BOCLEAN!   
Trojan horse was found in memory.
D:\SOFTWARE\ALTERHOSTSFILE.EXE contained the trojan.
Active trojan horse WAS shut down. System now safe.
Logged in user: *****

------------------------------
04/22/2007 10:30:03: SPYCAR VARIANT STOPPED BY BOCLEAN!   
Trojan horse was found in memory.
   k contained the trojan.
Active trojan horse WAS shut down. System safe.
Logged in user: *****



The change hosts file test was picked up by my Antivir PE Premium but from what I can tell they detected it at the same time or within the same minute my logs don't show the seconds.

Anyway, I love it! http://forums.comodo.com/Smileys/default/image002.gif
Bounce
Logged

Cryptid - Any animal or creature that has been reported to have existed, but has not been proven to.

Security Fanatic

Please Read Forum Policy Before Posting - https://forums.comodo.com/new_member_information/forum_policy-t1516.0.html
LeoniAquila
Über Minimalist™ Defender of Resources Bloatware Fighter
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3138


Diesel in my veins


« Reply #2 on: April 22, 2007, 05:31:50 AM »

First of all, thank you Comodo for this 4.23 release. I have some feedback too:

1. The path for the BOClean update files is C:\Documents and Settings\[User]\Local Settings\Temp. I've always manually removed the temporary files in this folder, since many programs leave temporary files here. Now, for the first time, this was a bad idea because BOClean uses the folder for permanent files. Thus, I had to re-install BOClean and now leave the (update) files. Suggestion: Change this path to a more proper one! E.g. C:\Documents and Settings\[User]\Application Data\Comodo\BOClean. (Or why not just in the C:\Program Files\Comodo\BOClean)

2. A question: If hiding the tray icon, how can I access the BOClean GUI? If I click the shortcut on the start menu, nothing happens, because BOClean already runs in the background. It seems like you have to right click the tray icon to access settings etc. ?

Thanks,
LeoniAquila
Logged

» User of Windows XP Home Edition SP3 on Acer Aspire
» Slave of COMODO Firewall Pro 3.0
JWill
Guest
« Reply #3 on: April 22, 2007, 06:01:42 AM »

I'm using Vista Home Premium and the download went smooth but I learned form the previous, I have the UAC turned off.

BOClean still alerts you just like the previous version if you go grc.com and try their firewall leaktest.

04/22/2007 06:57:08: LEAKTEST 1.2 *DEMO* VARIANT STOPPED BY BOCLEAN!   
Trojan horse was found in memory.
C:\USERS\***\DESKTOP\LEAKTEST.EXE contained the trojan.
Active trojan horse WAS shut down. System safe.

However if you run the test a second time the leaktest will bypass  BOClean, Kevin can you me help me with this, it never happend with version 4.22


That icon sitting in the tray sucks, what happend to the little gray box with the vaccum

Check for update and covered malware hangs alot longer than the previous version also.
With 4.22 I could click on the update box or covered malware box and it was 1-2-3.
« Last Edit: April 22, 2007, 06:22:04 AM by JWill » Logged
qwerty
Comodo Loves me
****
Offline Offline

Posts: 142


« Reply #4 on: April 22, 2007, 06:05:25 AM »

[ at ] LeoniAquila re q2, Apparently you can't http://www.nsclean.com/supboc.html#section6

Quote from: old BOClean website
...... Because the traybar icon and BOClean screens are hidden by this option, selecting this will also make BOClean's configuration screen unavailable to the end user and should be carefully considered. As is the case with the "hide configuration" checkbox above, a warning will be delivered that this option is irreversible from BOClean's configuration and the option is given to cancel this mode if selected.

 Can anyone tell me which part of the interface you drag a file into in order to have it scanned?
Logged
mike6688
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 2013


« Reply #5 on: April 22, 2007, 06:08:46 AM »

Can anyone tell me which part of the interface you drag a file into in order to have it scanned?


Hi,

It's the one that pops up after right clicking the system tray icon.

Mike
Logged

C.O.M.O.D.O: CFP3 & Defence+ | CMF | VEngine | TrustConnect | CAVS 3 (soon)
XP SP3 32bit | 2.16GHz | 2GB Ram
Toxteth O'Grady
Comodo's Hero
*****
Offline Offline

Posts: 290


« Reply #6 on: April 22, 2007, 06:10:01 AM »


That icon sitting in the tray sucks, what happend to the little gray box with the vaccum


So far no problems, but yes I agree, that icon is really ugly. What is it anyway?
Logged
JWill
Guest
« Reply #7 on: April 22, 2007, 06:15:17 AM »

So far no problems, but yes I agree, that icon is really ugly. What is it anyway?

I dont know buts its F-U-G-L-Y
Logged
Eric Cryptid
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1013


Security Saskquatch


« Reply #8 on: April 22, 2007, 06:25:47 AM »

Perhaps for the official release something more simular to the usual Comodo Icons. I don't mind the current one though...  Viva Comodo Clapping
Logged

Cryptid - Any animal or creature that has been reported to have existed, but has not been proven to.

Security Fanatic

Please Read Forum Policy Before Posting - https://forums.comodo.com/new_member_information/forum_policy-t1516.0.html
dwax
Comodo Family Member
***
Offline Offline

Posts: 57



« Reply #9 on: April 22, 2007, 06:59:51 AM »

So it sounds like the new version was released. And here the owners that paid fof Boclean have not been notified. Just how do we update?? Pay again?? Sad And I thought the paying customers were going to be told about this. Thats gratitude I suppose
« Last Edit: April 22, 2007, 07:14:20 AM by dwax » Logged

JWill
Guest
« Reply #10 on: April 22, 2007, 07:06:29 AM »

dwax-
A previous post from KM, hope this helps.


 Finally, I'm not sure if there's updates for 4.23 being put on the COMODO server - the NSClean site is NOT updating BOClean 4.23 at all ... just 4.22. So please bear with us, I've suddenly become overloaded myself.  Sad

Logged
JimmyD
Comodo Loves me
****
Offline Offline

Posts: 114


« Reply #11 on: April 22, 2007, 08:46:17 AM »

So it sounds like the new version was released. And here the owners that paid fof Boclean have not been notified. Just how do we update?? Pay again?? Sad And I thought the paying customers were going to be told about this. Thats gratitude I suppose

Melih jumped the gun. While he may have had good intentions, he announced the release without Kevin's knowledge (or approval.) Yes, Kevin should've had final say as to whether it was ready to go or not. The release caught Kevin by surprise and now he has to fight fires because of the lack of documentation.

As to us paid users, I can only guess that we'll just have to download the freebie like everyone else. I don't think they are going to keep track as to who the former paid users are. No reason to at this point. I'm going to wait for awhile before I update to 4.23.
Logged
JimmyD
Comodo Loves me
****
Offline Offline

Posts: 114


« Reply #12 on: April 22, 2007, 09:04:39 AM »

2. A question: If hiding the tray icon, how can I access the BOClean GUI?

You can't. I guess you'll have to contact Kevin and ask him how to do it. That option was to "permanently" hide the tray icon - usually for someone wanting to run it hidden on a network. Of course all that is in the documentation that won't be out for a few more days (not Kevin's fault.)
Logged
JWill
Guest
« Reply #13 on: April 22, 2007, 09:39:14 AM »

Another thing to add, this has happend twice already.
If I right click on BOC from the tray icon it will not open, no acess to the menu.
The only thing I can do is reboot to fix the problem.
I know its a new release but the problems I'm seeing in 4.3 were no where to be found in 4.22
« Last Edit: April 22, 2007, 09:44:19 AM by JWill » Logged
leobull
Newbie
*
Offline Offline

Posts: 3


« Reply #14 on: April 22, 2007, 09:46:09 AM »

a small thing. in windows vista when using the boclean update, the progress bar does not work.
Logged
Tags:
Pages: [1] 2 3 ... 5 Go Up Print 
« previous next »
Jump to:  

SSL Firewall
Page created in 0.177 seconds with 19 queries.
Powered by SMF 1.1.5 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com