Solved CIS 6.2 problem.

Status
Not open for further replies.

Amiga500

Level 12
Thread author
Verified
Jan 27, 2013
661
[attachment=4924][attachment=4923]Hello.
Whenever i open firefox virtualized in comodo i am getting intrusions listed in the interface.
Also there are log entries.
This is annoying,can anybody help me to stop this please.
Thanks.
 

Attachments

  • Capture2.PNG
    Capture2.PNG
    329.3 KB · Views: 534
  • Capture.PNG
    Capture.PNG
    50.9 KB · Views: 497

Ink

Administrator
Verified
Staff Member
Well-known
Jan 8, 2011
22,361
I'm not familiar with CIS 6.2, but could it be due to the restrictions set by the sandbox?

I would assume there are no intrusion log alerts, if Firefox were to run outside the virtualisation zone.
 
Upvote 0

Amiga500

Level 12
Thread author
Verified
Jan 27, 2013
661
Earth said:
I'm not familiar with CIS 6.2, but could it be due to the restrictions set by the sandbox?

I would assume there are no intrusion log alerts, if Firefox were to run outside the virtualisation zone.

Hello earth and thank you.
No these events do not occur when firefox is opened normally.
I am stumped by this one.
 
Upvote 0

Zurchiboy

New Member
Verified
Apr 10, 2013
98
Amiga500 said:
Earth said:
I'm not familiar with CIS 6.2, but could it be due to the restrictions set by the sandbox?

I would assume there are no intrusion log alerts, if Firefox were to run outside the virtualisation zone.

Hello earth and thank you.
No these events do not occur when firefox is opened normally.
I am stumped by this one.

This might be the HIPS kicking in. I have heard them say that the HIPS does do stuff silently even though it says it is disabled. make sure it is in the trusted files and Mozilla is under Trusted vendors. try enabling define exceptions in the Behavior blocker and add that to it and see what happens.
 
Upvote 0

Ink

Administrator
Verified
Staff Member
Well-known
Jan 8, 2011
22,361
Another thought, could be due to the Setting of the Sandbox, running an application as Fully Virtualised may prompt Comodo to block and treat them as intrusions?

Have you checked the limitations of Fully Virtualised.

Also, does Kiosk mode not do the same?
 
Upvote 0

Zurchiboy

New Member
Verified
Apr 10, 2013
98
Putting it through Execptions should stop this behavior though. And when you run a program in the fully virtualized sandbox. it does run virtual kiosk processes.
 
Upvote 0
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top