Andy Ful
From Hard_Configurator Tools
Verified
Honorary Member
Top Poster
Developer
Well-known
Forum Veteran
The video is a demonstration of Comodo's capabilities to prevent many evasive malware that can sometimes bypass popular AVs.
This follows from its different approach to malware fighting.
However, Comodo does not have some features that are included in Xcitium for good reasons.
It would be interesting to test the malware, which is the reason for the extended Xcitium protection.
Comodo may fail on some malware that is prevented/detected by popular AVs, which can follow from its different approach to malware fighting.
Here is an example of malware in the wild that could infect Comodo while detected by some popular AVs (including MD):
The malware (Shai-Hulud) was active in November 2025. The malicious code is contained in the JS script executed by trusted web applications. The attack does not use Windows Script Host or LOLBins, so it cannot be prevented by Comodo's Script Analysis Module.
A similar attack (via malicious Node.js) can be done by abusing legal Electron applications (like older versions of Microsoft Teams).