CIS 5.3.xxx.1216. D+ trusts some malware automatically. (know issue in 5.0)[NBZ]

The bug/issue

  1. What you did: I sent malaware files with the AV to analysis.
  2. What actually happened or you actually saw: D+ trusts malware automatically.
  3. What you expected to happen or see: There was no alert.
  4. How you tried to fix it & what happened: Can not be solved by the user.
  5. If its an application compatibility problem have you tried the application fixes here?: N/A
  6. Details (exact version) of any application involved with download link: This is just one example of the bug:
    http://www.dailymotion.com/video/xgdhz1_cis-5-3-bug_tech
  7. Whether you can make the problem happen again, and if so exact steps to make it happen: N/A
  8. Any other information (eg your guess regarding the cause, with reasons): I wrote a bug report already here: http://forums.Comodo.com/format-verified-issue-reports-cis/unrecognized-file-marked-as-trusted-issue-262-t61787.30.html

Files appended. (Please zip unless screenshots).

  1. Screenshots illustrating the bug: N/A
  2. Screenshots of related CIS event logs and the Defense+ Active Processes List: N/A
  3. A CIS config report or file: Attached
  4. Crash or freeze dump file: N/A

Your set-up

  1. CIS version, AV database version & configuration used: 5.3.xxx.1216, 7261, Internet Security profile.
  2. a) Have you updated (without uninstall) from CIS 3 or 4: No
    b) if so, have you tried a clean reinstall (without losing settings - if not please do)?: Yes
  3. a) Have you imported a config from a previous version of CIS: No
    b) if so, have U tried a standard config (without losing settings - if not please do)?: Yes
  4. Have you made any other major changes to the default config? (eg ticked ‘block all unknown requests’, other egs here.): No
  5. Defense+, Sandbox, Firewall & AV security levels: D+ = Safe, Sandbox = Enabled, Firewall = Safe, AV = Stateful.
  6. OS version, service pack, number of bits, UAC setting, & account type: Vista SP2 32 bit, UAC disabled, Admin account.
  7. Other security and utility software installed: No
  8. Virtual machine used (Please do NOT use Virtual box): No

[attachment deleted by admin]

Thank you for your bug report in the required format.

Moved to verified.

Thank you

Dennis

Hi vv5204,

The file presented in the video was verified against CIS and found that was not classified as malware by cloud. A fix will be available soon.

Thanks and regards,
Ionel