I’ve had a couple of my clients call over the last few days having trouble installing some new software from their bank. After some investigating it turns out that the software was sandboxed by ComodoAV and was installed into the vtroot folder.
I disabled the av protection temporarily and the program installed successfully.
This is a large bank (Lloyd) so I imagine I’ll get a lot more of this and I’m still not sure the program will run correctly once AV is reactivated. It’s certainly not an ideal fix but is there a way to disable the auto sandboxing on a permanent basis within the device profile?
For anyone else who may run into this… the program was called ‘Gemini’