Felipe Oliveira

Level 12
MH Trial
Verified
Joined
Jan 17, 2014
Messages
561
Operating System
Windows 10
Antivirus
Comodo
#1
Hi All,
We are please to make following CIS recognizer available for beta testing:

Changes:
On top of previously released recognizers v1.9.0.70, following are additional malware families covered:
  • Trojan.MSIL.ProxyChanger.~AK
  • Trojan.Win32.Agent.~QMG
  • Trojan.Win32.Agent.~RXL
  • Trojan.Win32.Emotet.~AW
  • Trojan.Win32.Injector.~DRXK
  • Trojan.Win32.Injector.~DRYS
  • Trojan.Win32.Injector.~DSLO
  • Trojan.Win32.Kryptik.~FRYF
  • Trojan.Win32.Kryptik.~FWMP
  • Trojan.Win32.Kryptik.~FWUH
  • Trojan.Win32.Remtasu.~Y
  • Trojan-Downloader.Win32.Agent.~CXA
  • Trojan-Dropper.MSIL.Agent.~AKH
  • Trojan-spy.Win32.Pavica.~CQ
  • Trojan-spy.Win32.SpyEye.~BW
  • Worm.MSIL.Agent.~KX

Steps to test:

Step - 1: Ensure you have either v6223 or above of CIS installed
Step - 2:
Either
Modify host file with following entries:
91.209.196.83 download.comodo.com
91.209.196.83 www.download.comodo.com
OR

alternately you can also add 91.209.196.83 entry as shown in enclosed snap 'Using_Beta_Server_In_CIS.png' under "Advanced Settings --> General Settings --> Updates --> Proxy and Host Settings" link.

Step - 3: Run updater from CIS interface and you should see new recognizer as shown in enclosed snap CIS_Recognizer_v1.10.0.105.png under "About --> VirusScope Details".

Step - 4: From "Settings --> Advanced Protection --> VirusScope" please deselect "Monitor only the applications in the container" checkbox, this will ensure all processes are watched and will be good test for stability.

Step - 6: Run your popular applications and watch out if you see any abnormal CPU / RAM usage, if you do, feedback is appreciated with system details and active applications.

Please check it out and share your feedback.

Thanks
 
Joined
Oct 11, 2014
Messages
98
Operating System
Windows 7
Antivirus
Comodo
#3
think that's why it's based on the behavior of those malware ...
CCAV is testing a new recognizer which is supposed to detect malware with generic behavior,
 
Likes: rockstarrocks