Comodo literally get killed by my educational rootkit (containment fully enabled, improved bypass)


Nothing was unbreakable. Every antivirus can be easily bypassed if they are heavily targetted.

1 Like

It’s probably because cmd doesn’t have embedded code detection enabled by default that’s because of too many false positives. Do you have an in the wild example where the same method is used? I bet it would still need a payload that would be contained.

2 Likes

Can’t find this setting from Latest Comodo Internet Security 2025 (I know it’s discounted but still public) Edit: I find it, skill issue by me.

Yeh its disabled by default. Edit: It get contained.

I’m sorry, but something is not very clear, what did you mean by that?

Dear EricCryptid, it looks like you’re right!