App Review Want to try? | Comodo Antivirus Test & Review | Comodo Internet Security vs Ransomware | 2024

It is advised to take all reviews with a grain of salt. In extreme cases some reviews use dramatization for entertainment purposes.

NB InfoTech

Level 1
Thread author
Jun 18, 2023
18
Want to try? | Comodo Antivirus Test & Review | Comodo Internet Security vs Ransomware | 2024

In this video, we are testing Comodo Internet Security Antivirus vs 20 Latest Ransomware samples plus 4 Dangerous malicious scripts.

Watch video here


Visit channel
 
  • Like
Reactions: zidong

bazang

Level 6
Jul 3, 2024
265
In this video, we are testing Comodo Internet Security Antivirus vs 20 Latest Ransomware samples plus 4 Dangerous malicious scripts.
Does any of the ransomware samples you used to test Comodo actually work? Do they encrypt anything on a Windows system without Comodo?

Do the scripts you used, do they actually download functional ransomware or are they self-contained script ransomware? Did they encrypt anything on a Windows system without Comodo?

There is nothing for the viewer to reference. How can the viewer conclude that Comodo prevented anything if there is no demonstration first of what happens upon execution of each sample on a system without Comodo?

It would have been a much more clear test if the comparison was made between ransomware executed on an unprotected system versus the one with Comodo installed.
 
  • Like
Reactions: oldschool

Sandbox Breaker

Level 11
Verified
Top Poster
Well-known
Jan 6, 2022
519
Recently I've been seeing signed whitelisted samples sideloading trusted DLLs then reinjecting them. I love Xcitium but the software really sucks against APT attacks that use non malware. Recently I dealt with Volt Typhoon apt actors and they shredded Xcitium to pieces and and removed it by abusing Partizan driver.

It was only because of our DFIR efforts that the attackers were removed from the network. They were abusing creds and using 0day networking gear exploits.
 

bazang

Level 6
Jul 3, 2024
265
Recently I've been seeing signed whitelisted samples sideloading trusted DLLs then reinjecting them. I love Xcitium but the software really sucks against APT attacks that use non malware. Recently I dealt with Volt Typhoon apt actors and they shredded Xcitium to pieces and and removed it by abusing Partizan driver.

It was only because of our DFIR efforts that the attackers were removed from the network. They were abusing creds and using 0day networking gear exploits.
With all your resources the APT group got past it all. That's not a Xcitium problem. It is not even a software problem. It is a cybersecurity management problem.

If that APT got as far abusing Patizan to remove Xcitium, then there is a failure of the people implementing, monitoring, and managing the security. It is almost if there is a minimal amount of that happening.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top