Comodo Questions

  1. If malware replaced iexplore.exe with a some file, does CIS on default settings allow it to accessing internet? I’m asking because my Firefox has been updated to newer versions, and firefox.exe is never blocked from accessing internet.
  2. If D+ is disabled, does this also disable the buffer overflow protection?
  3. Do you know of any bugs where D+ causes 100% cpu usage, especially involving Java? I’ve disabled D+ and these problems went away.
  1. no it would not be able to run. the reason you never see popups for firefox is because mozilla is on the trusted vendors list. if iexplore.exe is replaced cis will see that becuase it checks the files hash and if its unknown it will be sandboxed.
  1. If D+ is disabled, does this also disable the buffer overflow protection?
    No, Unless permanently Disabled

  2. Do you know of any bugs where D+ causes 100% cpu usage, especially involving Java? I’ve disabled D+ and these problems went away.
    Yes; Adding Exclusions To D+ and ShellCode and AV usually solves this for me