As I said I have no intention to offense anyone here and for your information, I am using CIS too. Just the result of the Overall Detection, Blocking and Removal (Cleaning) Rate of Comodo, it didn’t win Norton.
May I ask you a question? What if Comodo unable to detect the malware If my pendrive is infected with malware…will the malware infect my computer? I am just a beginner…Hope you can help me to solve my question. Thank you very much and I really appreciate it.
Signature detection is old technology and insufficient to combat malware, that’s why you have BB’s, HIPS, sandboxing and virtualization…
As for the pen drive thing, did not try it, but I believe it would be sandboxed automatically. No damage done. But that’s just theory from my part about unknown malware.
My dad had infected external HDD with kido and Comodo blocked autorun.inf from running with malware alert, not D+.
But with upcoming technologies from comodo, DACS[detection] and CSS[cleanup], things will improve drastically…
Oh I see…With your explanation, I feel more secured to use CIS because until now Comodo antivirus’s detection rate is still not so good as top notch antivirus software such as Kapersky which is very popular in my country now.
Thank you very much for spending your time to answer my silly question…I really appreciate it
No problem, brother, glad to be of service. And NO, your questions are not silly, the only question that is silly is the one that is not asked.
Anything that you’re interested in, just shout, someone will reply, no problem! :-TU :-TU :-TU
First of all with pendrives you should disable autorun on the pc. Use panda usb vaccine (google it).
Second, Comodo is a Superb product in prevention. Every unknown file will be automatically sandboxed, it does not matter if it comes from the web, pen drives or cd. See this link, is from a moderator https://forums.comodo.com/empty-t63187.0.html.
Hi Peter5,
You are absolutely right - that is the 1st and basically, the only layer of security needed
in this respect… then whatever security you are using can kick in
Hi dannyyap2006,
In addition to googling you can search this forum as well and find many advices regarding Globally disabling Autoruns for all USB devices
For example this one
If you cannot find neither MS article(s) nor any other existing scripts to apply, please ask
Thank you very much for the sharing. I am new to this forum as well as new user of CIS. I found this forum is very active and responsive… :-TU :-TU :-TU
i started using CIS from V4…and i never had to regret my decision yet. let me tell you one thing, you dont want to believe me or some one else about the capability of comodo in detecting malwares. go and get VMware, install XP pro or windows 7 and start testing comodo. if you dont know how to get malware online go to youtube…see any testers video and you will get the address of a domain that publishes zero day threats called malware domain list…go there and test your cis v5.alternatively you can also get the 6000 virus test file(how to get it…google "6000 trojan sample ".
i ve done tests with 6000 viruses test file…here is the data ive got
system…core i5 laptop with 4gb ddr3
windows 7 32 bit ultimate
Vmware XP pro sp3 ( all internet security suites with max protection and updated on the same day)
CIS v5 missed 48 ( i ran all the 48 files all were sanboxed or terminated by D+)
norton 2011 missed 4321( left overs when run caused BSOD)
mcafee missed 3567(left overs when run crashed my xp)
kaspersky 2011 missed 257 ( left overs caused infection, but MBAM successfully removed it)
avast 5 missed 187( leftovers crashed system)
Avira missed 210( left overs corrupted avira)
bitdefender missed 561( left overs crashed system)
EDIT: Mcafee virusScan enterprise 8.7.0i V2 missed 149 ( leftovers when run infected the system)
yesterday i tested CIS v5( sand box disabled) with a zero day rogue av and allowed all the warnings of CIS
and infected the system and i was able to remove the threat with CIS by Manual scan.
Did you use the default settings for the install? This is what most users will do – install and forget.
Anyways, those are interesting figures. It seems like CIS and Kaspersky left the system running, when others crashed. However, with Kaspersky, a user would not know they are infected because the sample was not detected. With CIS, the samples were sandboxed. So, I guess in this test, CIS would come in first place since the system was more protected, which shows the power of the sandbox.
Other AVs detected more than Kaspersky, but those systems crashed, which shows that protection only tests are not that good, the samples need to be run, like you did and that shows the true power of the AV. However, one might argue that the system crashing would be a good sign of an infection, where Kaspersky, didn’t crash and kept running infected, so important banking info might be transmitted. I don’t know how to rank the second place winner now. What do you all think would be a good way to rank second place giving what I said?
nope…for CIS proactive mode, heuristic high, av on access, D+ on safe mode, firewall on safe mode, sandbox unrecognized file as partially limited.
and for all other Internet security suites all the settings were set to the maximum protection level.
in my opinion there is no second place at all. Everyone except comodo failed, they infected my machine.
i admit those samples i used were more than one year old but they were nonetheless viruses or malwares.