- Jan 4, 2016
- 1,022
Yes. With all trusted vendors and cloud lookup disabled, it was installed also from Bytefence official websiteCan we conclude that Cloud Already whitelist Bytefence?
Please provide comments and solutions that are helpful to the author of this topic.
Yes. With all trusted vendors and cloud lookup disabled, it was installed also from Bytefence official websiteCan we conclude that Cloud Already whitelist Bytefence?
I'm doing some testing on my VM. Why to delete trusted vendors also? Probably because they pay for being added, and some unwanted programs may be allowed to run this way?
-Cloud lookup disabled: some scripts are blocked and, in the end, I have no PUPs installed
-Cloud lookup disabled: some scripts are blocked and, in the end, I have no PUPs installed
Clean up the trusted vendors list, only auto-allow vendors you have running on your PC (including Microsoft third party and supported hardware)
How can I check that? Are they enabled bu default? I spent a lot of time in the settings and I think they were enabled by defaultCurious if you have enabled all the heuristic command-line detection protections (and embedded)?
Yeah, I was looking for a solution to recommend to the guys who ask me for Windows XP. VoodooShield doesn't work anymore on XP, so there we are: comodo! I can't remove the trusted vendors considering each user has different programsClean up the trusted vendors list, only auto-allow vendors you have running on your PC (including Microsoft third party and supported hardware)
How can I check that? Are they enabled bu default? I spent a lot of time in the settings and I think they were enabled by default
Yeah, some of them were disabled. Guess why COMODO did thatAdvanced Protection->Miscellaneous->"Do heuristic command-line analysis for..." Click on "Certain Applications". You can enable them all no problems. Some of them were disabled for me with the previous two updates from Comodo. I reenabled them.
Virus total 1 out of 63 (detected by malwarebtes). Maybe its like enigma software?
General question scripts brings to mind. Curious if you have enabled all the heuristic command-line detection protections (and embedded)? There is basically no cost to this. I recommend it, although it might mean a rare alert. Just something that you might like for strengthening the setup. For me, it's a fallback should containment fail somehow or should I run malware uncontained by mistake For you, not sure if it helps with default deny but I don't see how it could hurt.
Sounds like Comodo needs to work on their whitelisting more than I realized. If @Maxwell Sien is right about the whitelisting, Comodo is almost pushing users to turn off Cloud Lookup by whitelisting that kind of program.
Well, this is what I did, but would this work well for @TheMalwareMaster since he is creating a template for new users?
Maybe you can see all blocking activities here: Manage Blocked Items, Blocked Applications, Comodo Internet Security | COMODOThat did it @AtlBo
Cloud lookup and trusted vendors on, with all option selected in command line analysis: A lot of command lines were bloked (I don't show all in the photos) and, in the end, no bundled programs. Why the bundled programs were blocked, this time?
HIPS were Always off
View attachment 159042 View attachment 159043 View attachment 159044 View attachment 159045 View attachment 159046View attachment 159047
HIPS blocked the bundled programs without alert, even if they were set to alert. Here is the utorrent file @Maxwell Sien
uTorrent.exe
What are these? Last lines of firewall settings. Is it Worth enabling them? View attachment 159050