Welcome, Guest. Please login or register.
November 22, 2009, 07:45:27 AM

Login with username, password and session length

336790 Posts
37266 Topics
84477 Members

Latest Member: Commod

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Internet Security - CIS
| | |-+  Leak Testing/Attacks/Vulnerability Research
| | | |-+  Killed cfp.exe demonstration video by mj0011
« previous next »
Pages: 1 2 [3] Go Down Print
Author Topic: Killed cfp.exe demonstration video by mj0011  (Read 2007 times)
dkmc
Newbie
*
Offline Offline

Posts: 12


« Reply #30 on: November 04, 2009, 03:59:17 PM »

Explain yourself or just cut it.. My comments are about how easy it is to fake a crash, and that this video has very little credibility, I know for a fact that I can "crash" CIS using the task manager if I tamper a bit with it..

In tWo words. You do not know this video and code are fakes. That's for sure.

But despite of this:
* you called some people "trolls" for the fact they didn't want to pass code (supposing they have working code). They may have reasons for this.

* You started to hijack this thread using fraudulent approach to distort case - idiocy about magicians, gold, water, Melih in white house etc.


That's why i said what i said.

I did watch the video now however.. Isn't it a bit "questionable" how even prior to this guy doing his attack CIS is not showing the usual "all okay" under system status..?
Maybe because:

before test cfp.exe , he was kill cmdagent.exe with killcis.exe the first.
Logged

In ten years nobody will remember the details of caliber, stance, or tactics. They will only remember who lived.
[ from USMC Rules for Gunfighting ]
evil_religion
Malware Research Group
Comodo's Hero
*****
Offline Offline

Posts: 329


« Reply #31 on: November 04, 2009, 04:26:55 PM »

If you do not want to appear like vulgar loudmouthed creature then....think yourself.
Why do you answer with personal offense only? Didn't I give some arguments?
I will repeat them here in case you didn't get them:
Quote
And even if you killed both you still didn't bypass protection because all unknown requests are blocked.
So Comodo hasn't been "bypassed". Make some malware which kills CIS and send it me, I would be pleased to run it.

And BTW: What are the reasons not to share such code which only's purpose seem to be to perform criminal actions?

And BTW2: You should learn more English, some sentences of you two Chinese hacker boys are only hardly to understand.
« Last Edit: November 04, 2009, 04:29:08 PM by evil_religion » Logged
Monkey_Boy=)
Product Translator
Comodo's Hero
*****
Offline Offline

Posts: 1154


^^^^


« Reply #32 on: November 04, 2009, 04:30:12 PM »

In tWo words. You do not know this video and code are fakes. That's for sure.

Yes you are 100% correct I don't know if the video is fake or not.. If you got that impression well that was not my intention Ill try to explain myself:
I buy this "crash" when I see a PoC..

(I pretty much said that I don't rule out that this may be real)

sure its possible that you could have found a flaw..

Pretty much again one of my comments said that its possible this is real..

My posts was mostly directed at pointing out that this video can't be trusted. But as you say, its possible that it is real as well.. But I guess we are never going to find out since there are no evidence pointing either way..
Logged
dkmc
Newbie
*
Offline Offline

Posts: 12


« Reply #33 on: November 05, 2009, 02:31:36 AM »

[at] evil_religion 

Let's make things clear. You left no choice for 3dnow if he refuses to share code (supposing he has one): "criminal loser with psychic problems". After that it is at least strange you talk about personal offenses... And by the way, Your arguments are perfect.

Quote
What are the reasons not to share such code which only's purpose seem to be to perform criminal actions?
Haven't you seen answer followed by official Comodo representative? Sense of answer (if we translate diplomatic message into normal words): this code is a crap, but alright, we would make you a favor and look at it.


[at] Monkey_Boy=) 

Excuse me for that word. Those flood with magicians, alchemists, white house etc drove me nuts. Maybe it is better to stay silent instead of flooding next time.
Logged

In ten years nobody will remember the details of caliber, stance, or tactics. They will only remember who lived.
[ from USMC Rules for Gunfighting ]
ssj100
Comodo Loves me
****
Offline Offline

Posts: 199


« Reply #34 on: November 05, 2009, 03:38:22 AM »

[at] evil_religion  

Let's make things clear. You left no choice for 3dnow if he refuses to share code (supposing he has one): "criminal loser with psychic problems". After that it is at least strange you talk about personal offenses... And by the way, Your arguments are perfect.
Haven't you seen answer followed by official Comodo representative? Sense of answer (if we translate diplomatic message into normal words): this code is a crap, but alright, we would make you a favor and look at it.


[at] Monkey_Boy=)  

Excuse me for that word. Those flood with magicians, alchemists, white house etc drove me nuts. Maybe it is better to stay silent instead of flooding next time.


Are you being a bit negative on the Comodo forums because Comodo are providing a very good classical HIPS for absolutely free, and Xiaolin isn't?

To be honest, I really don't know of any other classical HIPS that is completely free and as strong as Defense+.  Pity I've moved on from classical HIPS and found a setup that is much stronger and without all the computer "house-work".
Logged
Monkey_Boy=)
Product Translator
Comodo's Hero
*****
Offline Offline

Posts: 1154


^^^^


« Reply #35 on: November 05, 2009, 04:04:29 AM »

[at] Monkey_Boy=) 

Excuse me for that word. Those flood with magicians, alchemists, white house etc drove me nuts. Maybe it is better to stay silent instead of flooding next time.

Off-Topic!
No problems! Ofc if you disagree with something feel free to speak up. Its possible my text was misleading to some extent. So I guess thanks to your post its now more clear what I was trying to say.  Thumb Up
Logged
dkmc
Newbie
*
Offline Offline

Posts: 12


« Reply #36 on: November 05, 2009, 11:13:54 AM »

[at] ssj100

Keep this kind of questions to someone else, doc.
But anyway, i would say normally this time.
I'm not Chinese, nor i am political martyr who is against Comodo. I do not defend position of 3dnow, i don't care about this "bypass" and code (because defense plus driver was not unloaded, but that's mine imo and irrelevant). Seriously.

I simply argued with 2 men here.
Logged

In ten years nobody will remember the details of caliber, stance, or tactics. They will only remember who lived.
[ from USMC Rules for Gunfighting ]
ailef
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 689



WWW
« Reply #37 on: November 14, 2009, 08:08:34 PM »

i start from the idea that the video is true.

wich OS is used ? is it 32bit OS or 64bit OS ?
does this exploit work on win7 64bit ?
Logged

xps M1330[at]T9500 - Windows 7 ultimate 64bit - comodo 3.12 build 560 - KAV 2010 build 463
3DNow
Newbie
*
Offline Offline

Posts: 14


« Reply #38 on: November 15, 2009, 01:12:06 PM »

i test it on XP SP2 (x86),but it can also kill cfp under win7 x64.
Logged
OmeletGuy
Good gamer, Omelet Chef, Rogue AV hater!
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1411


The only thing i ask for are eggs.


WWW
« Reply #39 on: November 15, 2009, 01:31:43 PM »

Can you please PM me a link, i will have it look at.

Thanks.
Logged

What you see isn’t what you always get!
wj32
Comodo Loves me
****
Offline Offline

Posts: 122



WWW
« Reply #40 on: November 17, 2009, 05:37:30 AM »

i test it on XP SP2 (x86),but it can also kill cfp under win7 x64.

Sorry if this is a redundant post (I haven't read the earlier posts), but would you care to elaborate on how this is done?
Logged
Tags:
Pages: 1 2 [3] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in -0 seconds with 20 queries.
Powered by SMF 1.1.10 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com