Welcome, Guest. Please login or register.
Did you miss your activation email?
May 22, 2013, 08:56:05 AM

Login with username, password and session length

663553 Posts
70554 Topics
145213 Members

Latest Member: ReservedUR

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Security Products & Services
| |-+  Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
| | |-+  News / Announcements / Feedback - CCE (Moderator: Yanghua Fang)
| | | |-+  Weird FP
« previous next »
Pages: [1] Go Down Print
Author Topic: Weird FP  (Read 2600 times)
languy99
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3943



« on: April 22, 2012, 12:53:29 AM »

Hey all I am testing a new AV and got some weird FP on some files. It also looks like CCE is now able to scan registry keys, since when?  This is new to me.
Logged

http://www.youtube.com/languy99

Software Reviews for all.

Follow me on Twitter http://twitter.com/#!/languy99
morphiusz
Star Group
Comodo's Hero
*****
Online Online

Posts: 2196


Comodo's śmieć :)


WWW
« Reply #1 on: April 22, 2012, 05:59:06 AM »

What's new in CCE 2.4.225190.192?


NEW!Add more system/process information to KillSwitch, including disk IO, network IO, GPU, .Net Assembly, etc.
NEW!Scan for abnormal system settings in CCE
IMPROVED!Detect and clean tdss boot partitions
IMPROVED!Enhanced Windows system file repair
IMPROVED!Clean remnants of viruses and rootkits from certain registry locations as well
IMPROVED!Added detection for files signed with weak Authenticode signatures.
IMPROVED! Defense CCE applications against global hook.
FIXED!Autorun Analyzer crashes under certain circumstance.

Changelog of the latest version.
Logged
languy99
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3943



« Reply #2 on: April 22, 2012, 10:32:25 AM »

well it never seemed to work before, but it now looks like it does. Cool.
Logged

http://www.youtube.com/languy99

Software Reviews for all.

Follow me on Twitter http://twitter.com/#!/languy99
morphiusz
Star Group
Comodo's Hero
*****
Online Online

Posts: 2196


Comodo's śmieć :)


WWW
« Reply #3 on: April 22, 2012, 10:50:46 AM »

It worked.

It works in that way: when malicious file is found CCE looks up in the registry for keys connected with that file. CCE doesn't have signatures of malicious registry keys, it just marks these keys that are connected with infected file. (mostly autorun keys)
Logged
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.087 seconds with 21 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com