Comodo Internet Security 3.8 Beta Detection and Removal Notes Feb 19 A.M. Hours

  • bad – Does not work in safemode…ouch
  • good – Realtime scanner very effective at detecting threats and removing them.
  • ok – Some rebooting is required to remove threats.
  • ok – Frequent messages of “Not all malware could be removed” and then a suggestion of grabbing a pro subscription.
  • ok – Defense+ keeps alerting me on the same issue until I reboot (and yes, I said remember my answer).
  • ok – Heuristics are there, however I’m not sure when they are being used.
  • ok – Get used to using defense+ if you’re using Comodo for disinfection.
  • bad – My pending files can be daunting to say the least…hundreds in there right now.
  • bad – Ignores almost all the rogues on my box even with heuristics turned on high.
  • great – Defense+ “My Blocked files” is flat out awesome….add a malicious binary, reboot, delete….sweetness.
  • bad – Antivirus on-demand scan crashes continuously unless I add rogues to “My Blocked Files”
  • bad – OS is probably corrupted after malware removal. 100% CPU split between winlogon.exe and system.
  • good – Hey, it’s only a BETA


, , ,

  • http://www.youtube.com/ComputerHelpGuy1 ComputerHelpGuy1

    I’m really looking forward to the video! Kind of annoying Comodo is going down the route of nagging people to buy the Pro version… CIS has always been such a great product. I will be watching the video!

  • darcjrt

    New patches were released today! 3.8.64739.471
    Bug fixes.

    If you are using the beta version, the definitions database is a test database. So it does not include every sample.

    Try this one. Is better than the BETA. Still behind on migrating the old db to the new format but they are adding lots of rogues as we, COMODO users are sending a lot of samples.

  • Tim

    Is it really beta? I think it is released now, although it was somewhat rushed. A few menu popups and such still have the word BETA stamped in it though. Yeah, I think the AV module unfortunately has issues.

  • http://www.youtube.com/bestSVMS f

    its pretty good for a beta

    they should implement some sort of behavior like threatfire

    so it would first look via the signatures( make that really good), then if it doesnt have a signature, let it run super limited and see if it tries to make any changes

    if it suddntley starts using lots of bandwith( sending spam), the behaviro will block
    and if tries to install it self
    then defense + popups stuff

  • 3xist

    A new version is out and is NOT a beta. The final release was released on the 12th of Feb (Build .468).

    Now build .471 is available on the 19th of Feb and fixes:

    # FIXED! AV engine crashes while scanning some files
    # FIXED! Firewall blocks all the traffic in some vista PCs when checksum verification is enabled
    # FIXED! Some applications consume 100% CPU while CIS is install

    Signature conversion still may be happening too (less detection rates)… So to give a fair review I would wait a week or so until signatures are fully finalized.

    http://www.personalfirewall.comodo.com/download_firewall.html

    I will actually ask Melih now if signatures are done in v3.8… Then Matt can test the latest build.

    Cheers,
    Josh

  • RejZoR

    It’s not BETA anymore. Also heuristics do not exist yet. Even though there is a dropdwon menu but all it includes is packer detection. This cannot be treated as heuristics at all.
    But they plan on releasing actual heuristics (CIMA based) in the coming months, probably march/april…
    Until then, i wouldnt call this heuristics just yet…

  • 3xist

    Rejzor is right.

    The heuristics is only a “kick start” to take of Comodo heuristics.

    CIMA: http://camas.comodo.com/ heur will be in CIS v3.9 at the end of march hopefully, as well as BOClean integrated. Matt can wait… But the release in end of March will be v3.9

    But Matt can off course test v3.8 as well as v3.9 later! :D

    Cheers,
    Josh

  • malwarekilla

    @everyone – I upgraded to the latest bug fix
    - CPU usage still at 100%
    - Scanner no longer crashes
    - They should really clarify that heuristics has extremely limited functionality if it’s only used for detecting packers. Still, it’s welcome.

  • Dan

    Works fine here.. CPU is at 0%.. Only uses like 5-6mb ram (XP Pro 32-bit and Vista 64-bit)

    And I have no problem with what I have tryed…

    Its getting better and better for every release, if you ask me.

    And they are also working on a new GUI…

    So I think that this is worth a try.

  • RejZoR

    Well, i’ve been saying to them that packer detection should be a completelly separate option (in form of a checkbox with “Packer Detection” next to it. Or “Detect Packers”.
    I felt like i’m talking to a brick wall. Packer detection is great for corporate environments, but for home usage it’s a massive pain in the ass. Thats why i want it to be optional.
    Comodo guys don’t seem to agree on this one.
    Few other AV’s use packer deetction and they produce loads of false positives because of it.

  • malwarekilla

    Also, Threatcast doesn’t seem to work. I’ve never seen one “community” result yet.

  • malwarekilla

    @everyone – assuming I get home on time tonight I’m going to upload the prevention test video.

  • http://www.youtube.com/bestSVMS f

    i get the treatcast thing

    its not on a lot, but there is some

    the huristics dont seem to do anything

  • http://youtube.com/AZLAN210396 Alan

    ok – Get used to using defense+ if you’re using Comodo for disinfection.

    Can just right click at CIS logo, Defense+ Security Level

    Disabled


Remove-Malware Traffic Stats