Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

7, 0, 317799, 4142 4.69%
6, 3, 297838, 2953 1.56%
6, 3, 297838, 2953 4.69%
6, 3, 294583, 2937 1.56%
6, 2, 285401, 2860 4.69%
6, 2, 285401, 2860 4.69%
6, 2, 282872, 2847 7.81%
6, 2, 282872, 2847 1.56%
6, 1, 276535, 2808 7.81%
6, 0, 264710, 2708 4.69%
5, 12, 256249, 2599 20.31%
5, 12, 256249, 2599 31.25%
5, 10, 228257, 2253 4.69%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetAce, GetAclInformation, GetKernelObjectSecurity, RegQueryInfoKeyW, RegDeleteKeyA, RegDeleteValueA, RegQueryInfoKeyA, RegSetValueExA, RegQueryValueExA, RegQueryValueA, RegEnumValueA, RegEnumKeyExA, RegOpenKeyExA, GetUserNameW, RegCreateKeyExW, RegEnumKeyExW, RegDeleteKeyW, GetLengthSid, CopySid, LookupPrivilegeValueW, EqualSid, StartServiceW, QueryServiceConfigW, ChangeServiceConfigW, RegFlushKey, OpenThreadToken, LogonUserW, SetThreadToken, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, SetServiceStatus, RevertToSelf, ImpersonateLoggedOnUser, DuplicateTokenEx, OpenProcessToken, CloseServiceHandle, QueryServiceStatus, OpenServiceW, OpenSCManagerW, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, RegDeleteValueW, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, AddAce, ReportEventW, CloseEventLog, OpenEventLogW, RegEnumKeyW, RegEnumValueW, ConvertSidToStringSidW, LookupAccountNameW, AllocateAndInitializeSid, GetSidLengthRequired, GetSidSubAuthority, IsValidSid, SetNamedSecurityInfoW, GetNamedSecurityInfoW, AddAccessAllowedAceEx, InitializeAcl, InitializeSid, AdjustTokenPrivileges, CryptGetHashParam, CryptCreateHash, CryptHashData, CryptGenRandom, CryptAcquireContextW, CryptReleaseContext, CreateServiceW, DeregisterEventSource, RegisterEventSourceW, DeleteService, ControlService, ConvertStringSidToSidW, GetTokenInformation, InitiateSystemShutdownExW, CryptDestroyHash, FreeSid, SetEntriesInAclW, RegOpenKeyW, LookupAccountSidW, GetSidSubAuthorityCount, RegConnectRegistryW, RegLoadKeyW, RegSaveKeyExW
comctl32.dll
ImageList_GetIconSize
comdlg32.dll
GetFileTitleW
crypt32.dll
CertGetNameStringW, CryptUnprotectData, CryptProtectData, CertFreeCertificateContext, CryptVerifyMessageSignature
dbghelp.dll
MiniDumpWriteDump
fltlib.dll
FilterGetMessage, FilterSendMessage, FilterReplyMessage, FilterConnectCommunicationPort
gdi32.dll
GetDeviceCaps, GetStockObject, CreateBitmap, DeleteDC, ScaleWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, PtVisible, DeleteObject, GetClipBox, SetMapMode, SetTextColor, SetBkColor, RestoreDC, SaveDC, SetWindowExtEx, CreatePolygonRgn, GetTextColor, CreateEllipticRgn, Polyline, GetBkColor, Polygon, SetDIBColorTable, SetPixel, Rectangle, OffsetRgn, GetRgnBox, EnumFontFamiliesExW, LPtoDP, GetWindowOrgEx, GetViewportOrgEx, PtInRegion, FillRgn, FrameRgn, GetBoundsRect, ExtFloodFill, SetPaletteEntries, GetTextExtentPoint32W, GetTextCharsetInfo, EnumFontFamiliesW, GetTextMetricsW, CreateCompatibleBitmap, CreateDIBitmap, DPtoLP, PatBlt, CreateRoundRectRgn, SetRectRgn, CreateRectRgnIndirect, CreateFontIndirectW, CreateHatchBrush, CreateSolidBrush, CreatePen, SelectPalette, CreatePatternBrush, ExtSelectClipRgn, OffsetWindowOrgEx, CreateDIBSection, CreateCompatibleDC, BitBlt, MaskBlt, PlgBlt, StretchBlt, CreateDCW, CombineRgn, SetWindowOrgEx, GetPixel, GetWindowExtEx, GetViewportExtEx, GetObjectW, CreateRectRgn, SelectClipRgn, GetSystemPaletteEntries, RealizePalette, GetNearestPaletteIndex, GetPaletteEntries, GetObjectType, CreatePalette, SetLayout, GetLayout, SetTextAlign, MoveToEx, LineTo, IntersectClipRect, ExcludeClipRect, SetROP2, SetPolyFillMode, SetBkMode, CopyMetaFileW, Ellipse, GetTextFaceW, SetPixelV
gdiplus.dll
GdipDrawImageI, GdipGetImageGraphicsContext, GdipBitmapUnlockBits, GdipBitmapLockBits, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStream, GdipGetImagePalette, GdipGetImagePaletteSize, GdipGetImagePixelFormat, GdipGetImageHeight, GdipFree, GdipAlloc, GdipDeleteGraphics, GdipDisposeImage, GdipGetImageWidth, GdiplusStartup, GdipCreateBitmapFromHBITMAP, GdipCreateFromHDC, GdiplusShutdown, GdipSetInterpolationMode, GdipDrawImageRectI, GdipCloneImage
imagehlp.dll
ImageGetCertificateHeader, ImageGetCertificateData
imm32.dll
ImmGetOpenStatus, ImmGetContext, ImmReleaseContext
iphlpapi.dll
GetAdapterIndex, GetAdaptersInfo, GetAdaptersAddresses, NotifyAddrChange, GetIfEntry
kernel32.dll
DllMain
mpr.dll
WNetGetUniversalNameW
msimg32.dll
TransparentBlt, AlphaBlend
netapi32.dll
NetApiBufferFree, NetShareEnum
ntdll.dll
ZwAcceptConnectPort, ZwReplyWaitReceivePortEx, ZwCreatePort, NtQueryObject, RtlCopyUnicodeString, NtQuerySystemInformation, NtSuspendProcess, NtResumeProcess, RtlCompareMemory, RtlUnwind, ZwCompleteConnectPort
ole32.dll
StringFromGUID2, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateGuid, CoUninitialize, CoInitializeSecurity, CoInitialize, CoInitializeEx, CoRegisterClassObject, CoGetCurrentLogicalThreadId, CLSIDFromString, CoCreateInstance, StringFromCLSID, CoSetProxyBlanket, CoTaskMemFree, CLSIDFromProgID, ReleaseStgMedium, OleDuplicateData, CreateStreamOnHGlobal, OleCreateMenuDescriptor, OleDestroyMenuDescriptor, OleTranslateAccelerator, IsAccelerator, OleLockRunning, DoDragDrop, OleGetClipboard, RegisterDragDrop, CoLockObjectExternal, RevokeDragDrop, CoImpersonateClient, CoRevertToSelf, CoResumeClassObjects, CoAddRefServerProcess, CoReleaseServerProcess, CoRevokeClassObject
oleacc.dll
LresultFromObject, CreateStdAccessibleObject, AccessibleObjectFromWindow
psapi.dll
EnumProcesses, EnumProcessModules, GetModuleFileNameExW, GetProcessMemoryInfo, GetModuleInformation, GetProcessImageFileNameW
rasapi32.dll
RasSetEntryPropertiesW, RasGetEntryPropertiesW
shell32.dll
SHCreateDirectoryExW, SHGetFolderPathW, SHGetFileInfoW, SHBrowseForFolderW, ShellExecuteW, SHGetPathFromIDListW, SHGetDesktopFolder, SHGetSpecialFolderLocation, DragFinish, SHAppBarMessage, CommandLineToArgvW, SHFileOperationW, DragQueryFileW
shlwapi.dll
PathFileExistsW, SHDeleteKeyW, PathStripPathW, PathRemoveBackslashW, PathAppendW, PathRemoveFileSpecW, PathRemoveExtensionW, PathFindFileNameW, PathAddBackslashW, PathUnquoteSpacesW, PathStripToRootW, PathIsUNCW, PathIsFileSpecW, PathIsDirectoryW, PathFindExtensionW, PathIsNetworkPathW, PathQuoteSpacesW
user32.dll
SetWindowLongW, SetWindowPos, CopyRect, GetWindowPlacement, IsIconic, SystemParametersInfoA, GetMenu, CallWindowProcW, DefWindowProcW, AdjustWindowRectEx, RegisterClassW, GetClassInfoW, GetClassInfoExW, CreateWindowExW, GetClientRect, SetForegroundWindow, SetMenu, MapWindowPoints, GetMessagePos, GetMessageTime, DestroyWindow, GetTopWindow, GetForegroundWindow, RemovePropW, GetPropW, SetPropW, GetClassLongW, GetCapture, WinHelpW, LoadIconW, CheckMenuItem, EnableMenuItem, ModifyMenuW, LoadBitmapW, GetMenuCheckMarkDimensions, SetMenuItemBitmaps, PostQuitMessage, DestroyMenu, DrawTextExW, DrawTextW, TabbedTextOutW, LoadCursorW, GetDC, ReleaseDC, GetSysColor, GetSysColorBrush, UnhookWindowsHookEx, GetWindowThreadProcessId, SendMessageW, GetParent, GetWindowLongW, GetLastActivePopup, IsWindowEnabled, EnableWindow, MessageBoxW, CharUpperW, GetMenuState, GetMenuItemID, GetMenuItemCount, GetSubMenu, GetClassNameW, GetWindowRect, GetSystemMetrics, IsWindow, PostMessageW, RegisterWindowMessageW, wsprintfW, CharNextW, GetDlgItem, GetFocus, GetWindow, GetDlgCtrlID, PtInRect, SetWindowTextW, SetWindowsHookExW, CallNextHookEx, DispatchMessageW, GetKeyState, PeekMessageW, ValidateRect, GetWindowTextW, ClientToScreen, GrayStringW, DllMain
userenv.dll
UnloadUserProfile
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wininet.dll
HttpSendRequestW, InternetGetLastResponseInfoW, InternetSetOptionW, InternetCloseHandle, InternetQueryOptionW, InternetOpenW, InternetConnectW, FtpRenameFileW, FtpOpenFileW, InternetReadFile, HttpEndRequestW, HttpSendRequestExW, HttpQueryInfoW, HttpOpenRequestW, InternetWriteFile
winmm.dll
timeGetTime, PlaySoundW
winspool.drv
DocumentPropertiesW, ClosePrinter, OpenPrinterW
wintrust.dll
WTHelperProvDataFromStateData, WTHelperGetProvCertFromChain, WTHelperGetProvSignerFromChain, WinVerifyTrust
ws2_32.dll
WSAAddressToStringW
wtsapi32.dll
WTSQueryUserToken, WTSFreeMemory, WTSEnumerateSessionsW

cmdagent.exe

COMODO Internet Security by Comodo Security Solutions (Signed)

Remove cmdagent.exe
Version:   5, 10, 228257, 2253
MD5:   907324001ae25ac5959c91eaa34cabae
SHA1:   e51515c6b459f73dd0916d3d20d2fff73c171771
SHA256:   405077d8d552229036b20e80a9caa59b9332224a179d2ea79d00fec776e324a4

What is cmdagent.exe?

Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Windows PC. It offers antimalware (antivirus/antispyware) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System called Defense+. GeekBuddy is a support system whereby a Comodo expert makes a remote connection to the user's computer and resolves a wide variety of technical issues.

About cmdagent.exe (from Comodo Security Solutions)

Comodo Internet Security a, multi-layered security application that keeps hackers out and personal information in. Built from the ground upwards with your security in mind, Internet Security offers 36

DetailsDetails

File name:cmdagent.exe
Publisher:COMODO
Product name:COMODO Internet Security
Typical file path:C:\Program Files\comodo\comodo internet security\cmdagent.exe
File version:5, 10, 228257, 2253
Size:1.89 MB (1,983,232 bytes)
Certificate
Issued to:Comodo Security Solutions
Authority (CA):VeriSign
Expiration date:Sunday, March 3, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
COMODO
27% remove
Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Microsoft Windows. It offers anti-malware (antivirus) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System (HIPS) called Defense+. Comodo Internet Security (CIS) is available in four editions: Comodo Internet Security (the standard edition), Comodo Internet Security Plus, Comodo Internet Security Pro ...

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'cmdAgent' (COMODO Internet Security Helper Service)
  • cmdAgent
Network connections
  • [TCP] downloads.comodo.com (178.255.82.1:80)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00522183%
    0.028634%
    Kernel CPU:0.00153116%
    0.013761%
    User CPU:0.00369068%
    0.014873%
    Kernel CPU time:413,868 ms/min
    100,923,805ms/min
    Context switches:83/sec
    284/sec
    Memory
    Private memory:155.96 MB
    21.59 MB
    Private (maximum):145.79 MB
    Private (minimum):9.09 MB
    Non-paged memory:155.96 MB
    21.59 MB
    Virtual memory:448.79 MB
    140.96 MB
    Virtual memory (peak):852.33 MB
    169.69 MB
    Working set:28.74 MB
    18.61 MB
    Working set (peak):333.12 MB
    37.95 MB
    Resource allocations
    Threads:37
    12
    Handles:564
    600

    BehaviorsProcess properties

    Integrety level:System
    Platform:32-bit
    Command line:"C:\Program Files\comodo\comodo internet security\cmdagent.exe"
    Owner:SYSTEM
    Windows Service
    Service name:cmdAgent
    Display name:COMODO Internet Security Helper Service
    Description:“COMODO Internet Security Helper Service”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    cmdagent.exe (main module)
    Total CPU:0.38960349%
    0.272967%
    Kernel CPU:0.03809437%
    0.107585%
    User CPU:0.35150912%
    0.165382%
    CPU cycles:10,049,600/sec
    5,741,424/sec
    Context switches:2/sec
    79/sec
    Memory:1.93 MB
    1.16 MB
    ntdll.dll
    Total CPU:0.00613299%
    Kernel CPU:0.00005829%
    User CPU:0.00607469%
    CPU cycles:9,858/sec
    Memory:1.23 MB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 37.50%
    Windows 7 Professional 17.19%
    Windows 7 Ultimate 15.63%
    Windows 8 9.38%
    Windows Vista Home Premium 6.25%
    Windows 8.1 Pro 3.13%
    Windows 8 Pro 3.13%
    Windows 8 Single Language 1.56%
    Windows 8.1 1.56%
    Microsoft Windows XP 1.56%
    Windows Vista Business 1.56%
    Windows 7 Ultimate N 1.56%

    Distribution by countryDistribution by country

    United States installs about 37.50% of COMODO Internet Security.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 20.69%
    Toshiba 13.79%
    Acer 10.34%
    ASUS 10.34%
    Lenovo 10.34%
    Sony 10.34%
    Medion 6.90%
    GIGABYTE 6.90%
    Hewlett-Packard 5.17%
    Samsung 5.17%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE