Comodo Cloud Antivirus v1.12.420066.533 RC

The date will not be changed until the file have a accurate rating eg: safe or malware.

Is it not better I send you the malware, or do you suspect there is a issue between me and your servers?

/W

Do you mean that the dates will become static when rating are in place?

/W

Yes for now,But we will estimate your propose.

I donot reproduce your problem ,so I want you help us to get log.I think we use the same fls/valkyrie server.

Can you post a link for .537? This is what I run now.
I can only find .533

/W

Hi woodrow,
Following always points to latest version, so you can use it:
http://download.comodo.com/ccav/installers/ccav_installer.exe

Thanks
-umesh

:-TU

/W

Is it normal that the Valkyrie screen shows another amount of files being analyzed (28 vs 1) than the main window? (see screenshot)

Seems a bug.
Any one else with same problem?

Nope, neither my pc or the home theater pc dont have that bug.

Hi nasion,
You now have mail to both your inboxes from service@sprend.com containing the log file you asked for.
I did run a few files previously analyzed by Valkyrie including one of the ones we talked about before, and they all got analyzed again.
One of the them got detected when I opened that folder, so something must have been detected at Valkyrie, hope you find something in the log to solve this.

/W

Hello ,The main UI is the all Valkryie analyzed files ,but the sub UI is the last week(past 7 days) .so please select all Valkyrie log for sub UI.

Hello woodrow,
I find some information about your test .

fls_query_file_vendor: date=2017-07-23 11:23:25 file_service,current file path=\Device\HarddiskVolume2\Users\Virru\Desktop\Virus\2\AHxzPvhr4.exe,current sha1=21864c4139d7e7f7f6ff6e23f458a4eaf73c0e3e,current verdict=3 ,proto=tcp,interval=4
fls_query_file_vendor: date=2017-07-23 11:22:55 file_service,current file path=\Device\HarddiskVolume2\Users\Virru\Desktop\Virus\2\nothing.exe,current sha1=d42ebd58d5437afc884019ce81f5be48349b1f43,current verdict=3 ,proto=udp,interval=0
fls_query_file_vendor: date=2017-07-23 11:22:55 file_service,current file path=\Device\HarddiskVolume2\Users\Virru\Desktop\Virus\2\Test message.exe,current sha1=89dfd961e0a219a0e424ca0a02d0ac9b934720a5,current verdict=3 ,proto=udp,interval=0

we can see the “current verdict=3”, the file rating is unknow, so it will be added to Valkyrie analyzed list. and the Valkyrie will analyze them.
CCAV get file rating by file SHA1 at fls and the rating is unknow too at valkryie.

I guess you generate a new file and file name is the same too as provious file. In this case ,Valkyrie dispaly UI treat file name as unique ID to user. so valkryie have to overwrite the privous record.

Hi nasion, I did not generate any new files, they are all the same that have already been sandboxed and analyzed by valkyrie.

/W

As I know from others (I donot know if they are from you),the sha1 should be following:
c5b5b46f69e3ef9db69e047da249f4762fe1a6e8
41b019700a7c936e85a49faa31638553fe6899b8
85c3b57ca19f5b8212fefd32533ef4902a2eefe5
b22a82b28e235f59e75a0cb1794ef08b0a442f9a
ece7e3e87e5a12c2898eac368e83ca47db4217c5
17b0b7dcc06fcdfd7470085aa55c872b81248d96
045604914c7dda45adce2969d69ccc3f0ea6b4b1
They are all malware files.

Another potential reason is for “down to 0” ,Valkyrie cannot read the file ,the Valkyrie will delete the the related record .

Ah, yes, indeed. I have missed that selection. Now it shows the 28 as the main window does.

Any luck finding out why I have so many files for analysis and some dating to 2016?

Hello mad,
Can you give me a screenshot ?I am sorry for I miss your meaning.

Hello nasion,
I have attached the screenshots on the 3rd page of this thread (post is from 17.07.).
I also sent some sample files from the list to Flykite.