A New Way of Exploiting Antivirus Scanners (comodo was among the tested)

So you’re saying in this post I quoted that voodoo with its “Whitelist Cloud” and comodo with it’s own cloud database enabled, there’d be no issues?

And yes, every now and then when something I want to check out is allowed by CFW, sometimes voodoo will pop up with a “threat detected” sign. Looking at the names of the detections always reveals some kind of PUP when this happens. I guess the people at comodo working on the database do an analysis based on whether or not the file actually performs any malicious actions. And most of the time, PUPs don’t perform any malicious actions that would trigger the behavioral analysis.

I actually saw a tester on youtube configure CFW is a very similar way to how I do mine. Not even one threat got through
here: Comodo Firewall 11 Tested vs Malware - YouTube

There’s a few differences. I also turn on “do not show popup alerts” in virusscope and file rating and I enable everything in script detection.