Author Topic: Can't scan these Files with CIS  (Read 461 times)

Offline pio

  • Malware Research Group
  • Comodo's Hero
  • *****
  • Posts: 577
  • I like CIS , Kali Linux , IDA Pro & Fl Studio ;)
Can't scan these Files with CIS
« on: September 26, 2017, 02:12:39 AM »
Hi Guys ,

I had uploaded a few hours ago the following files at valkyrie . The vendor is Gray listed and the files were correctly recognized as Malware . A signature was made shortly afterwards . I am not quite sure, but I believe after the last signatur update , I am no longer able to scan these files with CIS . Is perhaps something wrong with the signature or is something went wrong with the creation process ? When I try to scan the files, the processor ( all cores ) load goes almost to maximum and the disk is constantly accessed ( from "cavwp.exe" ) with unusually high data rates ( Up to 70 mb /s ) . The process was not completed after 45 minutes of waiting . I need to close the "cavwp.exe" manually , to make my system usable again . Previously, I could not cancel the scan process . Please check if this issue can be reproduced by anyone !? Thank you !!!

https://valkyrie.comodo.com/get_info?sha1=baeb62df6b1f1bce919f170000beee06326f9f08

https://valkyrie.comodo.com/get_info?sha1=ce00bada22c49d67d58ed8f0fc408b6fbf04bb14

« Last Edit: September 26, 2017, 04:04:11 AM by pio »
*** Paranoid Bastard since CIS 3.5 ! Independent - NON Profit Malware Analyst ***

Offline Ionel

  • Comodo Staff
  • Comodo's Hero
  • *****
  • Posts: 3534
Re: Can't scan these Files with CIS
« Reply #1 on: September 26, 2017, 07:19:02 AM »
Hi pio,

We are going to investigate. Thank you for reporting this!

Regards,
Ionel

Offline pio

  • Malware Research Group
  • Comodo's Hero
  • *****
  • Posts: 577
  • I like CIS , Kali Linux , IDA Pro & Fl Studio ;)
Re: Can't scan these Files with CIS
« Reply #2 on: September 26, 2017, 11:23:17 PM »
Now it is detected normally !!! Thx !!!  :-TU
*** Paranoid Bastard since CIS 3.5 ! Independent - NON Profit Malware Analyst ***

 

Free Endpoint Protection
Seo4Smf 2.0 © SmfMod.Com Smf Destek