App Review Comodo's killer.

It is advised to take all reviews with a grain of salt. In extreme cases some reviews use dramatization for entertainment purposes.
Content created by
@Andy Ful

Nikola Milanovic

Level 4
Verified
Oct 17, 2023
167
1736962381282.png

Trojan Dropper Detected by Machine Learning/Dynamic Analysis
 
  • Like
Reactions: simmerskool

Nikola Milanovic

Level 4
Verified
Oct 17, 2023
167
In short, I think the default/proactive security is sufficient and better for home users. Comodo's usability has improved significantly and is much more user-friendly now. For improved protection, one may disable cloud lookup and limit the list of trusted vendors.
I Kepp cloud based analysis on because i like to Submit samples to Comodo/Xcitium so they rate them :)
for exeample i subbmited this sample yesterday and Comodo/Xcitium rated it as Malicious
1736963621495.png
 
  • Like
Reactions: simmerskool

Vitali Ortzi

Level 28
Verified
Top Poster
Well-known
Dec 12, 2016
1,783
I Kepp cloud based analysis on because i like to Submit samples to Comodo/Xcitium so they rate them :)
for exeample i subbmited this sample yesterday and Comodo/Xcitium rated it as Malicious View attachment 287175
They do sometimee classify stuff as malicious that isn't malicious and usually when you send it to human analysis they correct it but rarely even human objection will fail and a false positive will stay detected

About improving their signatures they definitely did as I had a sample not detected by eset but was detected inside comodo container by virus scope
But since virus scope does so poorly in tests I wouldn't recommend it as an av replacement but as an added layer
 

Nikola Milanovic

Level 4
Verified
Oct 17, 2023
167
They do sometimee classify stuff as malicious that isn't malicious and usually when you send it to human analysis they correct it but rarely even human objection will fail and a false positive will stay detected

About improving their signatures they definitely did as I had a sample not detected by eset but was detected inside comodo container by virus scope
But since virus scope does so poorly in tests I wouldn't recommend it as an av replacement but as an added layer
in my tests VirusScope does good
 

Vitali Ortzi

Level 28
Verified
Top Poster
Well-known
Dec 12, 2016
1,783
in my tests VirusScope does good
Comodo doesn't detect a lot of malware so although it did surprise me once at least in my machine it wasn't great at detection but so far perfect at prevention on my machines
As a comodo fan I would love it to keep improving but do far there was shown certain tricks like dll hijacking can allow malware to bypass the sandbox so at prevention it can technically keep improving although near perfection and as an av virus scope is far below industry standard (I really love how light it is though)
 

Vitali Ortzi

Level 28
Verified
Top Poster
Well-known
Dec 12, 2016
1,783
They do detect the malware if u submit it to them
Not sure that's exactly fair
But since you use prevention and then manual submission and wait till it's clean/ malware
You should be safe against most of the malware in the wild 99.99%+ except a few tactics shown in this fourm
And Andy gave some solution for most of the 0.0001 percentage
 

Nikola Milanovic

Level 4
Verified
Oct 17, 2023
167
Not sure that's exactly fair
But since you use prevention and then manual submission and wait till it's clean/ malware
You should be safe against most of the malware in the wild 99.99%+ except a few tactics shown in this fourm
Yeah i installed Xcitium just because i love to submit to them Samples for Analysis so they rate them thats why i am a comodo fan
 
  • Like
Reactions: simmerskool

Vitali Ortzi

Level 28
Verified
Top Poster
Well-known
Dec 12, 2016
1,783
not only do they rate files quickly but on the Xcitium Client the signatures are much much better then on free Xcitium
I hope they just find a way to deal with every poc 100%
Once they do its a really good solution for enterprises btw it's actually far cheaper for enterprises over other products at enterprise scale purchase
 
  • Like
Reactions: simmerskool

Vitali Ortzi

Level 28
Verified
Top Poster
Well-known
Dec 12, 2016
1,783
Actually I'm interested what an mssp thinks about xcitium
I know @Trident didn't like it but wonder what do they believe should be improved for xcitium to be a full solution budget offering and if they think today it can be used as an added defense layer as it's really good at prevention
 
  • Like
Reactions: simmerskool

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top