Comodo Cloud Antivirus v1.12.420066.533 RC

Looks good, can anyone have suggestions.

I presume this option exist to increase compatible with other firewalls?

[X] Network Traffic control over sandboxed applications.

Otherwise it feels Unnecessary to have this Checkbox.

But i like the square border around the options, makes them look like they belong together with a visible frame.

Old:
Apply application exlusion list that can connect in and out when running in Sandbox. Exlusions.

New 1: (my pick)
Overrule the above settings to allow applications to connect to internet, by adding them to this Exlusion.

New 2:
Adding a application to this exclusions will allow a applications inside the sandbox to connect to Internet.

Other Ui Feedback.

Old:
I want to enable 'Cloud based Behavioral Analysis of unrecognized programs by submitting them to Comodo automatically in compliance with Comodo Privacy Policy
(No link to COMODO Privacy Policy)

New:
I want to automatically upload unrecognized applications to COMODO for Cloud besed Behavioral Analysis with compliance with COMODO Privacy Policy
(Make COMODO Privacy Policy a blue link that you can press on that takes you to the Policy)

Old:
Block incoming connection to applications running in sandbox.
(i.e application’s can’t act like server i.e. can’t listen for connections)

Block Outgoing connection out of applications running in sandbox.
(i.e application’s can’t act like server i.e. can’t listen for connections)

New:
Block any incoming connections to applications that are running inside the sandbox.
(i.e application’s can’t act like server i.e. can’t listen for connections)

Block Outgoing connections from any applications that are running inside the sandbox.
(i.e application’s can’t act like server i.e. can’t listen for connections)

Umesh, is the “firewall” still tcp only?

/W

Yes.

On my end it is the same old song with Valkyrie, is there an ETA when the wait between submit (sandboxed files) and remedy from Valkyrie?

Or is there an “expected” time to wait for Valkyrie?

Or a better answer would be how long the expected wait will be when you (the comodo crew) consider this Vakyrie project final?

/W

Quote from CEO:

Thx for the info, the thing is that I have unknowns that are weeks old?

From earlier I learned that your computer would not have to be on all the time for Valkyrie to do what it does.
If you sandbox an unknown today it gets submitted to Valkyrie, I close down my computer and start it up next morning and the verdict should be in.
This does just not happen, now I wonder if this problem only exist on my end, or is there others out there who also experience this?

/W

I think you should try to manually upload them.
It can take a long time. If your unknowns are random obscure unknowns then most likely the files submitted will require human analysis. Valkyrie tries to determine file verdict automatically using automated detection techniques. The obvious safe and malicious files are probably processed quickly, but I imagine that it is harder to provide automated verdicts for files that are more in the gray area, like a clean file that does not have a digital signature or a random dependency of a legit app, so human analysis is required. Human analysis can take a long time with the number of files that need to be analyzed. If you want something whitelisted it is probably better to submit it for whitelisting here Comodo Forum

A final stage of valkyrie ? This question is easy to answer . NEVER EVER !!!

Because the development of malware never stops , the same must also apply to valkyrie ! A never ending story of development and fight for improvements ! :wink:

Regards !!!

Maybe I was not clear enough, English is not my native language after all.
I understand that development will never stop, but the question was, how long the expected time for a unknown file should be, until I get a verdict?

/W !!!

Hi woodrow ,

to answer that I quote Melih again .

Valkyrie is constantly evolving . To implement any improvements completely , it takes time . Maybe it is also possible to reduce the waiting time even further . You also have the possibility to upload the file to valkyrie ! >>> Comodo Valkyrie Customer Login | Advanced File Analysis System . At the moment , the waiting time is about 20 to 45 seconds . So try it out if you want ?! :wink:

Best Regards !!!

Pio

Ok, the problem is not that the files needs to be uploaded to Valkyrie, they are already there, since 170623.
CCAV tells me that Valkyrie is still analyzing these 7 files, almost 4 weeks later.
I consider this a problem, (maybe even a bug?) that is why I ask if there are others in the same situation.

From what I know, these are all malware, and they are still sitting on my system.
I know I am safe because of the sandbox, but that is not the question here.

/W

hi woodrow ,

i send you an PM !!!

Anyway … , sometimes when valkyrie gets maintenance , then it is possible that some files can not be transmitted correctly . Perhaps you had caught such a moment ?!

Kind Regards !!!

pio

I have a similar problem like woodrow.
I am not sure if this is a bug or something that is still being worked on (that is why I have let it be until now).
I attached 2 screenshots. I have 27 being analyzed files (e.g. from the screenshot: it is a Realtek driver and a bunch of MS Office files).
Can someone have a look at this?
If needed, please move post. I can provide additional info if needed. Thank you.

Ok, then we are two guys with the same problem, only difference is that all mine are malware.
I guess Umesh are sipping drinks on a well deserved vacation, but if you read this, please do not release CCAV final until this is resolved once and for all.
This will be a killer AV if all features that are in now would just work 100%.

/W

Hi mad & woodrow,

Could you please provide us some “Being analyzed” files? I want to check them on our side.

thanks in advance!

The second screenshot from mad shows the dates, for me these dates change every time to the current date when I open that window.

Could this be an issue? The date should be the date the files were submitted right?

/W

@woodrow
The dates do not change in my case. The files and the dates stay the same.
Only when I am installing a new game and give it exception in CCAV, it gets added to the end of the being analyzed list; upon uninstalling the game, the entry disappears.

@Flykite and pio
I send you a link to the archive containing some sample files from the previously posted list.

Hi woodrow,
We are not there yet but working towards that goal.
There are significant improvements but every submitted file can not be classified over night at the moment, some do get analyzed very fast and some don’t.

Rest assured, we are working towards that goal, where you get up and CCAV world is classified into black and white :slight_smile:

Thanks
-umesh

Great Umesh!
Then it is not a good idea to release information that detection should take only 4 hours, this only adds to the confusion. (See posts above)
It is always better to say that this is still a work in progress, or else people trying CCAV will just uninstall it, and start spreading ■■■■.

Keep up the good work!

/W