Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
June 20, 2013, 12:50:31 AM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
669174
Posts
71153
Topics
145755
Members
Latest Member:
kenix
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Learn about Computer Security and Interact with Security Experts
Leak Testing/Attacks/Vulnerability Research
130/340
« previous
next »
Pages:
1
[
2
]
3
Author
Topic: 130/340 (Read 11390 times)
JoWa
Product Translator
Global Moderator
Comodo's Hero
Offline
Posts: 2954
Re: 130/340
«
Reply #15 on:
November 26, 2010, 08:57:55 AM »
Quote from: salaficall on November 26, 2010, 08:47:46 AM
this is not true
Please read again (both paragraphs) and explain what is not true. Thanks.
And I do get 340/340 with sandbox enabled (Partially limited) on XP SP3.
Logged
Ubuntu 13.04, 64-bit | Chrome 28β | Asus P8Z77-M | Intel Core i5 2500K 3,3GHz | 2×4 GB RAM | SSD: OCZ Vertex3 60GB, HDD: 2TB Western Digital Caviar Black | Dell UltraSharp 24" U2410 IPS | Sony MDR-XB1000 | Philips SBC AH1000
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #16 on:
November 26, 2010, 09:36:41 AM »
as the developer of the CIS 5 SAID :
Quote
Automatic sandboxing does not virtualise software Files and registry keys created by the software
and u said that :
Quote
CLT doesn't understand that they are virtual , and says Vulnerable. That's why CLT should be updated.
and this is not true cause there is no virtualization in the automatic sanboxing , it's only some restrictions the isolated program is forced to go throw
Quote
And I do get 340/340 with sandbox enabled (Partially limited) on XP SP3.
I can't reproduce that though ( win7 x86 fully updated - SB partially limited/limited/restricted/untrusted ! - proactive configurations - safe mode for D+ & Firewall - Automatic detection of installers... unselected ...)
can u give me some details on how u get that score ?
«
Last Edit: November 26, 2010, 09:40:47 AM by salaficall
»
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
JoWa
Product Translator
Global Moderator
Comodo's Hero
Offline
Posts: 2954
Re: 130/340
«
Reply #17 on:
November 26, 2010, 10:24:04 AM »
Did I mention automatic sandboxing in CIS in the first paragraph? No! It's about CLT and has nothing to do with CIS.
Automatic detection of installers
selected or not does not matter. If it is selected, you gen an Unlimited access alert, and can click on Sandbox. Just run the tests and block every alert.
Logged
Ubuntu 13.04, 64-bit | Chrome 28β | Asus P8Z77-M | Intel Core i5 2500K 3,3GHz | 2×4 GB RAM | SSD: OCZ Vertex3 60GB, HDD: 2TB Western Digital Caviar Black | Dell UltraSharp 24" U2410 IPS | Sony MDR-XB1000 | Philips SBC AH1000
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #18 on:
November 26, 2010, 11:01:35 AM »
Quote
Did I mention automatic sandboxing in CIS in the first paragraph? No! It's about CLT and has nothing to do with CIS.
yes , u said
Quote
Virtualisation allows files to be dropped and changes to be made in the registry
, but in a special “virtual” folder and registry.
(no ! , the virtual folder is empty)
CLT doesn't understand that
they are virtual,
(
they are not virtual !
) and says Vulnerable. That's why CLT should be updated.
witch virtualisation u r talking about ??!
as i said before , CLT low results have nothing to do with virtualisation , there is something wrong with the sandbox feature.
anyway , CIS 5 is strong enough even without sandbox enabled , and I'm happy with it
Quote
Automatic detection of installers selected or not does not matter. If it is selected, you gen an Unlimited access alert, and can click on Sandbox. Just run the tests and block every alert.
I already tried that and it didn't do the trick , i got 320/340 (Impersonation: Coat/DDE )
the only way to get full score is to completely disable the sandbox feature. maybe it's CIS / win7 issue , who knows ?
I will give it a try on xp sp3 and see how it goes
«
Last Edit: November 26, 2010, 11:03:23 AM by salaficall
»
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
Valentin N
Malware Research Group
Comodo's Hero
Offline
Posts: 2833
Usability Study Group
Re: 130/340
«
Reply #19 on:
November 26, 2010, 11:22:20 AM »
Hey:)
no need to fight here!
I opened this topic to get help, not see people arguing with each other. I got my answer and a deeper understanding how this leaktest works.
I thank all for taking their time to explain and to give advices.
Regards,
Valentin
Logged
Skype: comodohelper (Personal)
CEVPN: Valentin N
CIS 5.9
Keep CTM alive by voting
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #20 on:
November 26, 2010, 11:54:27 AM »
hi Valentinchen
no fighting man , no arguing , we are just trying to figure out how can we get the sandbox/CLT work smoothly together and get full score like JoWa's pc ...
anyway , thanks everybody
«
Last Edit: November 26, 2010, 11:57:18 AM by salaficall
»
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
Valentin N
Malware Research Group
Comodo's Hero
Offline
Posts: 2833
Usability Study Group
Re: 130/340
«
Reply #21 on:
November 26, 2010, 12:06:51 PM »
I am sorry if I miss-interpreted the comments from you and JoWa. Anways, keep it nice
Logged
Skype: comodohelper (Personal)
CEVPN: Valentin N
CIS 5.9
Keep CTM alive by voting
JoWa
Product Translator
Global Moderator
Comodo's Hero
Offline
Posts: 2954
Re: 130/340
«
Reply #22 on:
November 26, 2010, 12:12:52 PM »
Quote from: salaficall on November 26, 2010, 11:01:35 AM
witch virtualisation u r talking about ??!
Virtualisation in general.
That's what fools CLT. (
Read more.
) Manual sandboxing with CIS is one example, avast! Pro/IS is another.
Logged
Ubuntu 13.04, 64-bit | Chrome 28β | Asus P8Z77-M | Intel Core i5 2500K 3,3GHz | 2×4 GB RAM | SSD: OCZ Vertex3 60GB, HDD: 2TB Western Digital Caviar Black | Dell UltraSharp 24" U2410 IPS | Sony MDR-XB1000 | Philips SBC AH1000
JoWa
Product Translator
Global Moderator
Comodo's Hero
Offline
Posts: 2954
Re: 130/340
«
Reply #23 on:
November 26, 2010, 12:50:20 PM »
A friend tested on W7 x64 with CIS 5:
320/340
24. Impersonation: DDE Vulnerable
25. Impersonation: Coat Vulnerable
Logged
Ubuntu 13.04, 64-bit | Chrome 28β | Asus P8Z77-M | Intel Core i5 2500K 3,3GHz | 2×4 GB RAM | SSD: OCZ Vertex3 60GB, HDD: 2TB Western Digital Caviar Black | Dell UltraSharp 24" U2410 IPS | Sony MDR-XB1000 | Philips SBC AH1000
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #24 on:
November 26, 2010, 04:46:11 PM »
Quote from: JoWa on November 26, 2010, 12:12:52 PM
Virtualisation in general.
That's what fools CLT. (
Read more.
) Manual sandboxing with CIS is one example, avast! Pro/IS is another.
hi JoWa
sorry man , still can't get it !
how come virtualisation fools CLT and there is no real virutualisation present with the automatic sandboxing ??
yes , I can understand that CLT gets fooled by the
Manual sandboxing
cause it has a real virtualisation along with it when it's activated
but on the other hand , there is no any kind of virtualisation with the automatic sandboxing , it's just the unrecognized program gets some restrictions so it's only prevented from writing to protected folders, pre-existing files, and real registry keys , that makes me expecting better results with the automatic sandboxing which never happens ! , correct me if I'm wrong , maybe I'm missing something here...
I hope i made my self clear here
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
JoWa
Product Translator
Global Moderator
Comodo's Hero
Offline
Posts: 2954
Re: 130/340
«
Reply #25 on:
November 26, 2010, 05:04:09 PM »
Automatic sandboxing has nothing to do with virtualisation fooling CLT, of course.
I was not talking about automatic sandboxing, so why do you keep repeating that?
My first post was a reply to clockwork's post, and in the second paragraph I mention that virtualisation is not applied when clicking on
Sandbox
in the Unlimited access alert (= automatic sandboxing).
Logged
Ubuntu 13.04, 64-bit | Chrome 28β | Asus P8Z77-M | Intel Core i5 2500K 3,3GHz | 2×4 GB RAM | SSD: OCZ Vertex3 60GB, HDD: 2TB Western Digital Caviar Black | Dell UltraSharp 24" U2410 IPS | Sony MDR-XB1000 | Philips SBC AH1000
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #26 on:
November 26, 2010, 06:59:34 PM »
Quote
My first post was a reply to clockwork's post
yes , and clockwork's post was all about automatic sandboxing ! did u notice that ?
Quote
and in the second paragraph I mention that virtualisation is not applied when clicking on Sandbox in the Unlimited access alert (= automatic sandboxing).
sorry man u r right , I missed that ...
but now the problem is that u r the only one who can get a full CLT 340/340 score with the sandbox feature enabled ! as far as I know
any help for me to achieve your amazing full unique scores with SB enabled will be much appreciated
Any thoughts?
thanks in advance
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
JoWa
Product Translator
Global Moderator
Comodo's Hero
Offline
Posts: 2954
Re: 130/340
«
Reply #27 on:
November 27, 2010, 02:34:13 AM »
To help you with what you also missed:
Quote from: clockwork on November 25, 2010, 02:57:27 PM
what should be changed in the test to work with the comodo sandbox? do you just want that the "testresult" looks good, or do you want to test your program? hey, all products would get 100% results if it was usual to modify tests to get good results
Quote from: clockwork on November 25, 2010, 02:57:27 PM
when a TEST has to be changed to get good results.... LOL?
So I explained why CLT has to be updated (to be able to test virtualisation software with correct results). And that has nothing to do with
24. Impersonation: DDE Vulnerable
25. Impersonation: Coat Vulnerable
It's about
this
. But you already know that?
Help you get higher score… Use XP?
Logged
Ubuntu 13.04, 64-bit | Chrome 28β | Asus P8Z77-M | Intel Core i5 2500K 3,3GHz | 2×4 GB RAM | SSD: OCZ Vertex3 60GB, HDD: 2TB Western Digital Caviar Black | Dell UltraSharp 24" U2410 IPS | Sony MDR-XB1000 | Philips SBC AH1000
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #28 on:
November 27, 2010, 06:32:42 AM »
maybe CLT needs to be updated to test other softwares or to test CIS manual sandboxing ( I don't think this is possible , how can the test program ever knows is it virtual or no ?? , anyway I'm not a programmer to tell )
but 99.9 % of the CLT users and testers of CIS use it with no virtualisation at all ( automatic sandboxing ) , so there no need to update CLT to test CIS 5 , there is something wrong with CIS automatic sandboxing that needs to be fixed ...
like clockwork said :
Quote
the test shows that
the sandbox allows things to be done automatically which you dont want to be done
.
yes, a reboot will remove some of the happened threats.... but the threats worked until that (keyloggers for example).
the test shows that there is a design problem with an "automatic allowing sandbox". in other words: automatic sandboxing is meaning much more,
that the threats are allowed to run automatically
,
even without any question from defense+
.
once again , CIS 5 is the most powerful Internet Security software one can have in my opinion.
but I hope to get a more detailed technical answer regarding this issue from the CIS developers.
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
salaficall
Comodo Loves me
Offline
Posts: 192
Re: 130/340
«
Reply #29 on:
November 27, 2010, 06:50:52 AM »
Quote from: JoWa on November 27, 2010, 02:34:13 AM
Help you get higher score… Use XP?
tried that , same problem 320/340
24. Impersonation: DDE Vulnerable
25. Impersonation: Coat Vulnerable
What's up at your end I simply don't know how u get full score with SB enabled !
anyway , thanks for trying to help
salaficall
Logged
An ounce of prevention is better than a pound of cure
That's why I like Comodo !
Tags:
Pages:
1
[
2
]
3
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.362 seconds with 20 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com