A. The bug/issue
- What you did: I’ve downloaded the EICAR test file from here: http://eicar.org/download/eicar.com. Comodo’s Realtime scanner was set to “Stateful”. It detects the malware, but the file can be downloaded, appears on my Computer, and it is blocked from running.
Using the “On Access” option in Realtime scanner, the antivirus detects the malware and the browser can’t fully download it and the virus doesn’t really get into my computer.
It this the intended behaviour or a bug?
- What actually happened or you actually saw: It detects the malware, but the file can be downloaded, appears on my Computer, and it is blocked from running.
- What you expected to happen or see: the antivirus detects the malware and the browser can’t fully download it and the virus doesn’t really get into my computer.
- How you tried to fix it & what happened: I’ve switched to “On Access” setting.
- If its a software compatibility problem have you tried the compatibility fixes (link in format)?: No
- Details & exact version of any software (execpt CIS) involved (with download link unless malware):
- Whether you can make the problem happen again, and if so exact steps to make it happen: It happens everytime in Google Chrome for example
- Any other information (eg your guess regarding the cause, with reasons):
B. Files appended. (Please zip unless screenshots).
- Screenshots of the Defense plus Active Processes List (Required for all issues): Attached
- Screenshots illustrating the bug:
- Screenshots of related CIS event logs:
- A CIS config report or file.
- Crash or freeze dump file:
- Screenshot of More~About page. Can be used instead of typed product and AV database version. - Attached
C. Your set-up
- CIS version, AV database version & configuration used:
- a) Have you updated (without uninstall) from from a previous version of CIS: No
b) if so, have you tried a clean reinstall (without losing settings - if not please do)?: - a) Have you imported a config from a previous version of CIS: No
b) if so, have U tried a standard config (without losing settings - if not please do)?: - Have you made any other major changes to the default config? (eg ticked ‘block all unknown requests’, other egs here.): No
- Defense+, Sandbox, Firewall & AV security levels: D+= Safe Mode, Sandbox= Enabled , Firewall = Safe Mode, AV = Stateful
- OS version, service pack, number of bits, UAC setting, & account type: Windows 7 SP1 Home Premium, 32 bit, UAC disabled, Administrator account.
- Other security and utility software currently installed: None
- Other security software previously installed at any time since Windows was last installed: None
- Virtual machine used (Please do NOT use Virtual box): None
[attachment deleted by admin]