Author Topic: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.  (Read 8308 times)

Offline jackor

  • Comodo Loves me
  • ****
  • Posts: 145
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #30 on: September 14, 2018, 01:11:07 PM »
[at]Jon79: https://voodooshield.com/?

[at]ndabbru: vxvault doesn't rapresent a real world scenario
Analyst Programmer
0days & malware hunter since 2006

Offline klaken

  • Comodo Family Member
  • ***
  • Posts: 54
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #31 on: September 15, 2018, 01:54:32 AM »
In my case I have seen computers with avast that are infected with pup or with mining programs ..
Comodo easily detected and eliminated them .. These programs are one of the main dilemmas of domestic users.

Offline Jon79

  • Comodo's Hero
  • *****
  • Posts: 1074
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #32 on: September 15, 2018, 02:32:30 AM »
[at]Jon79: https://voodooshield.com/?

[at]ndabbru: vxvault doesn't rapresent a real world scenario
Voodooshiels is a nice sw, but the free version comes with nag screen and not adjustable advanced settings

Offline Jon79

  • Comodo's Hero
  • *****
  • Posts: 1074
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #33 on: September 15, 2018, 02:37:12 AM »
In my case I have seen computers with avast that are infected with pup or with mining programs ..
Comodo easily detected and eliminated them .. These programs are one of the main dilemmas of domestic users.
Avast with hardened mode on aggressive will block every unknown exe, but it's vulnerable to scripts. Couple it with syshardened and osarmor and you are done

Offline NDABBRU

  • Comodo's Hero
  • *****
  • Posts: 211
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #34 on: September 15, 2018, 08:01:34 AM »
In my case I have seen computers with avast that are infected with pup or with mining programs ..
Comodo easily detected and eliminated them .. These programs are one of the main dilemmas of domestic users.

CCAV? O CIS/Comodo Antivirus?

Offline NDABBRU

  • Comodo's Hero
  • *****
  • Posts: 211
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #35 on: September 15, 2018, 10:35:07 AM »

[at]ndabbru: vxvault doesn't rapresent a real world scenario

Hello then do the tests with the link: vxvault is not useful for testing an antivirus?

I thought it would be useful to do it because from video reviews on YouTube I see that almost everyone uses this link.

If not, explain to me what can be reliable tests or real situations?

Thanks so much!  ;)
Nunzio.

Offline klaken

  • Comodo Family Member
  • ***
  • Posts: 54
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #36 on: September 15, 2018, 03:24:08 PM »
CCAV? O CIS/Comodo Antivirus?

CCAV, is good detect PUP and miner

Offline klaken

  • Comodo Family Member
  • ***
  • Posts: 54
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #37 on: September 15, 2018, 03:33:24 PM »
Hello then do the tests with the link: vxvault is not useful for testing an antivirus?

I thought it would be useful to do it because from video reviews on YouTube I see that almost everyone uses this link.

If not, explain to me what can be reliable tests or real situations?

Thanks so much!  ;)
Nunzio.
Personally, I think it depends on what you need.

1- Test your behavior on 0 days, it is necessary to test without a database updated in 1 week against new malware ...
- heuritic and behavioral engine.
- You should run the malware many times so you may be infected.

2 - Check the capacity of collection or classification of malware serve tests like this, but they are not for domestic users.

There are AV that look for samples from these pages and automatically classify them as malware.

- I think Valkyria should be present in pages like this.
vxvault shows total virus analysis and other pages of malware analysis .. valkyria would be veneficiaria if it received samples from here.
1- would be more known.
2- I would receive samples automatically with a huge possibility of being malware.
« Last Edit: September 15, 2018, 03:36:26 PM by klaken »

Offline jackor

  • Comodo Loves me
  • ****
  • Posts: 145
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #38 on: September 16, 2018, 03:33:39 AM »
Pages like vxvault, malekal, malc0de and so on...are costantly bot-scanned to fastly add new malwares into virus db. That's why it can't rapresent a realworld scenario. It's like having all malwares on a stage and antivirus are only saying "you are a malware, you also, you, you and you". In short words, you can't test a product on those pages, because those pages are costanlty monitored, to test a product you should crawl the web and take malwares samples from many sources, like email attachments, like fake program cracks (Gandcrab ransomware had this diffusion method also) and so on.
Analyst Programmer
0days & malware hunter since 2006

Offline Jon79

  • Comodo's Hero
  • *****
  • Posts: 1074
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #39 on: September 16, 2018, 04:34:16 AM »
I gave CCAV a try and you know what??? Eicar test file was NOT detected by the realtime scan... I had to right-click on the file and make a manual scan to detect it...
Now I no longer trust Comodo products  :-TD

Offline Ploget

  • Comodo's Hero
  • *****
  • Posts: 854
  • 'Your best teacher, is your last mistake'
    • Traditional Protection
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #40 on: September 16, 2018, 05:03:19 AM »
The Realtime Scan alerts when a file is executed. Yours didn't . . . ??

Both CCAV (and CIS) gave me plenty of alerts and block for all the file versions, both on download and execution attempts  :-TU
I gave CCAV a try and you know what??? Eicar test file was NOT detected by the realtime scan... I had to right-click on the file and make a manual scan to detect it...
Now I no longer trust Comodo products  :-TD
« Last Edit: September 16, 2018, 05:35:34 AM by Ploget »
Ploget
 
Win10x64 Pro 1809 (17763.503) x 3
Win7x64 Pro x 2
CIS v.12.0.0.6818 & CCAV v.2.0.470195.867
. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
'If you think you are too small to make a difference; try sleeping with a Mosquito'

Offline Jon79

  • Comodo's Hero
  • *****
  • Posts: 1074
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #41 on: September 16, 2018, 07:21:28 AM »
The Realtime Scan alerts when a file is executed. Yours didn't . . . ??

Both CCAV (and CIS) gave me plenty of alerts and block for all the file versions, both on download and execution attempts  :-TU
Yes, it didn't alert when the file was downloaded on my PC and it didn't alert when I opened it (the txt file).

Offline morphiusz

  • Global Moderator
  • Comodo's Hero
  • *****
  • Posts: 3079
    • Suspicious file?
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #42 on: September 16, 2018, 07:32:30 AM »
.txt files are not checked. Change its extension e.g. to .exe and you will see the detection.
« Last Edit: September 16, 2018, 09:44:35 AM by morphiusz »

Offline Jon79

  • Comodo's Hero
  • *****
  • Posts: 1074
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #43 on: September 16, 2018, 08:44:07 AM »
.txt files are not checked. Change it extension e.g. to .exe and you will see the detection.
I tried the other eicar files too, but the result was the same. Detection only after right click scan

Offline klaken

  • Comodo Family Member
  • ***
  • Posts: 54
Re: Comodo Cloud Antivirus v1.21.458953.792 hotfix release.
« Reply #44 on: September 16, 2018, 01:20:39 PM »
CCAV does not detect when downloading or changing extension. CCAV detects:
- There will be a caption analyzing some files (not all) automatically.
- When running an executable.

Test eicar and malware are detected without dilemmas under these conditions .. Which are normal for a home user....

 

Free Endpoint Protection
Seo4Smf 2.0 © SmfMod.Com Smf Destek