Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

7, 0, 317799, 4142 4.69%
6, 3, 297838, 2953 1.56%
6, 3, 297838, 2953 4.69%
6, 3, 294583, 2937 1.56%
6, 2, 285401, 2860 4.69%
6, 2, 285401, 2860 4.69%
6, 2, 282872, 2847 7.81%
6, 2, 282872, 2847 1.56%
6, 1, 276535, 2808 7.81%
6, 0, 264710, 2708 4.69%
5, 12, 256249, 2599 20.31%
5, 12, 256249, 2599 31.25%
5, 10, 228257, 2253 4.69%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetAce, GetAclInformation, GetKernelObjectSecurity, RegQueryInfoKeyW, RegDeleteKeyA, RegDeleteValueA, RegQueryInfoKeyA, RegSetValueExA, RegQueryValueExA, RegQueryValueA, RegEnumValueA, RegEnumKeyExA, RegOpenKeyExA, GetUserNameW, RegCreateKeyExW, RegEnumKeyExW, RegDeleteKeyW, GetLengthSid, CopySid, LookupPrivilegeValueW, EqualSid, StartServiceW, QueryServiceConfigW, ChangeServiceConfigW, RegFlushKey, OpenThreadToken, LogonUserW, SetThreadToken, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, SetServiceStatus, RevertToSelf, ImpersonateLoggedOnUser, DuplicateTokenEx, OpenProcessToken, CloseServiceHandle, QueryServiceStatus, OpenServiceW, OpenSCManagerW, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, RegDeleteValueW, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, AddAce, ReportEventW, CloseEventLog, OpenEventLogW, RegEnumKeyW, RegEnumValueW, ConvertSidToStringSidW, LookupAccountNameW, AllocateAndInitializeSid, GetSidLengthRequired, GetSidSubAuthority, IsValidSid, SetNamedSecurityInfoW, GetNamedSecurityInfoW, AddAccessAllowedAceEx, InitializeAcl, InitializeSid, AdjustTokenPrivileges, CryptGetHashParam, CryptCreateHash, CryptHashData, CryptGenRandom, CryptAcquireContextW, CryptReleaseContext, CreateServiceW, DeregisterEventSource, RegisterEventSourceW, DeleteService, ControlService, ConvertStringSidToSidW, GetTokenInformation, InitiateSystemShutdownExW, CryptDestroyHash, FreeSid, SetEntriesInAclW, RegOpenKeyW, LookupAccountSidW, GetSidSubAuthorityCount, RegConnectRegistryW, RegLoadKeyW, RegSaveKeyExW
comctl32.dll
ImageList_GetIconSize
comdlg32.dll
GetFileTitleW
crypt32.dll
CertGetNameStringW, CryptUnprotectData, CryptProtectData, CertFreeCertificateContext, CryptVerifyMessageSignature
dbghelp.dll
MiniDumpWriteDump
fltlib.dll
FilterGetMessage, FilterSendMessage, FilterReplyMessage, FilterConnectCommunicationPort
gdi32.dll
GetDeviceCaps, GetStockObject, CreateBitmap, DeleteDC, ScaleWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, PtVisible, DeleteObject, GetClipBox, SetMapMode, SetTextColor, SetBkColor, RestoreDC, SaveDC, SetWindowExtEx, CreatePolygonRgn, GetTextColor, CreateEllipticRgn, Polyline, GetBkColor, Polygon, SetDIBColorTable, SetPixel, Rectangle, OffsetRgn, GetRgnBox, EnumFontFamiliesExW, LPtoDP, GetWindowOrgEx, GetViewportOrgEx, PtInRegion, FillRgn, FrameRgn, GetBoundsRect, ExtFloodFill, SetPaletteEntries, GetTextExtentPoint32W, GetTextCharsetInfo, EnumFontFamiliesW, GetTextMetricsW, CreateCompatibleBitmap, CreateDIBitmap, DPtoLP, PatBlt, CreateRoundRectRgn, SetRectRgn, CreateRectRgnIndirect, CreateFontIndirectW, CreateHatchBrush, CreateSolidBrush, CreatePen, SelectPalette, CreatePatternBrush, ExtSelectClipRgn, OffsetWindowOrgEx, CreateDIBSection, CreateCompatibleDC, BitBlt, MaskBlt, PlgBlt, StretchBlt, CreateDCW, CombineRgn, SetWindowOrgEx, GetPixel, GetWindowExtEx, GetViewportExtEx, GetObjectW, CreateRectRgn, SelectClipRgn, GetSystemPaletteEntries, RealizePalette, GetNearestPaletteIndex, GetPaletteEntries, GetObjectType, CreatePalette, SetLayout, GetLayout, SetTextAlign, MoveToEx, LineTo, IntersectClipRect, ExcludeClipRect, SetROP2, SetPolyFillMode, SetBkMode, CopyMetaFileW, Ellipse, GetTextFaceW, SetPixelV
gdiplus.dll
GdipDrawImageI, GdipGetImageGraphicsContext, GdipBitmapUnlockBits, GdipBitmapLockBits, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStream, GdipGetImagePalette, GdipGetImagePaletteSize, GdipGetImagePixelFormat, GdipGetImageHeight, GdipFree, GdipAlloc, GdipDeleteGraphics, GdipDisposeImage, GdipGetImageWidth, GdiplusStartup, GdipCreateBitmapFromHBITMAP, GdipCreateFromHDC, GdiplusShutdown, GdipSetInterpolationMode, GdipDrawImageRectI, GdipCloneImage
imagehlp.dll
ImageGetCertificateHeader, ImageGetCertificateData
imm32.dll
ImmGetOpenStatus, ImmGetContext, ImmReleaseContext
iphlpapi.dll
GetAdapterIndex, GetAdaptersInfo, GetAdaptersAddresses, NotifyAddrChange, GetIfEntry
kernel32.dll
DllMain
mpr.dll
WNetGetUniversalNameW
msimg32.dll
TransparentBlt, AlphaBlend
netapi32.dll
NetApiBufferFree, NetShareEnum
ntdll.dll
ZwAcceptConnectPort, ZwReplyWaitReceivePortEx, ZwCreatePort, NtQueryObject, RtlCopyUnicodeString, NtQuerySystemInformation, NtSuspendProcess, NtResumeProcess, RtlCompareMemory, RtlUnwind, ZwCompleteConnectPort
ole32.dll
StringFromGUID2, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateGuid, CoUninitialize, CoInitializeSecurity, CoInitialize, CoInitializeEx, CoRegisterClassObject, CoGetCurrentLogicalThreadId, CLSIDFromString, CoCreateInstance, StringFromCLSID, CoSetProxyBlanket, CoTaskMemFree, CLSIDFromProgID, ReleaseStgMedium, OleDuplicateData, CreateStreamOnHGlobal, OleCreateMenuDescriptor, OleDestroyMenuDescriptor, OleTranslateAccelerator, IsAccelerator, OleLockRunning, DoDragDrop, OleGetClipboard, RegisterDragDrop, CoLockObjectExternal, RevokeDragDrop, CoImpersonateClient, CoRevertToSelf, CoResumeClassObjects, CoAddRefServerProcess, CoReleaseServerProcess, CoRevokeClassObject
oleacc.dll
LresultFromObject, CreateStdAccessibleObject, AccessibleObjectFromWindow
psapi.dll
EnumProcesses, EnumProcessModules, GetModuleFileNameExW, GetProcessMemoryInfo, GetModuleInformation, GetProcessImageFileNameW
rasapi32.dll
RasSetEntryPropertiesW, RasGetEntryPropertiesW
shell32.dll
SHCreateDirectoryExW, SHGetFolderPathW, SHGetFileInfoW, SHBrowseForFolderW, ShellExecuteW, SHGetPathFromIDListW, SHGetDesktopFolder, SHGetSpecialFolderLocation, DragFinish, SHAppBarMessage, CommandLineToArgvW, SHFileOperationW, DragQueryFileW
shlwapi.dll
PathFileExistsW, SHDeleteKeyW, PathStripPathW, PathRemoveBackslashW, PathAppendW, PathRemoveFileSpecW, PathRemoveExtensionW, PathFindFileNameW, PathAddBackslashW, PathUnquoteSpacesW, PathStripToRootW, PathIsUNCW, PathIsFileSpecW, PathIsDirectoryW, PathFindExtensionW, PathIsNetworkPathW, PathQuoteSpacesW
user32.dll
SetWindowLongW, SetWindowPos, CopyRect, GetWindowPlacement, IsIconic, SystemParametersInfoA, GetMenu, CallWindowProcW, DefWindowProcW, AdjustWindowRectEx, RegisterClassW, GetClassInfoW, GetClassInfoExW, CreateWindowExW, GetClientRect, SetForegroundWindow, SetMenu, MapWindowPoints, GetMessagePos, GetMessageTime, DestroyWindow, GetTopWindow, GetForegroundWindow, RemovePropW, GetPropW, SetPropW, GetClassLongW, GetCapture, WinHelpW, LoadIconW, CheckMenuItem, EnableMenuItem, ModifyMenuW, LoadBitmapW, GetMenuCheckMarkDimensions, SetMenuItemBitmaps, PostQuitMessage, DestroyMenu, DrawTextExW, DrawTextW, TabbedTextOutW, LoadCursorW, GetDC, ReleaseDC, GetSysColor, GetSysColorBrush, UnhookWindowsHookEx, GetWindowThreadProcessId, SendMessageW, GetParent, GetWindowLongW, GetLastActivePopup, IsWindowEnabled, EnableWindow, MessageBoxW, CharUpperW, GetMenuState, GetMenuItemID, GetMenuItemCount, GetSubMenu, GetClassNameW, GetWindowRect, GetSystemMetrics, IsWindow, PostMessageW, RegisterWindowMessageW, wsprintfW, CharNextW, GetDlgItem, GetFocus, GetWindow, GetDlgCtrlID, PtInRect, SetWindowTextW, SetWindowsHookExW, CallNextHookEx, DispatchMessageW, GetKeyState, PeekMessageW, ValidateRect, GetWindowTextW, ClientToScreen, GrayStringW, DllMain
userenv.dll
UnloadUserProfile
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wininet.dll
HttpSendRequestW, InternetGetLastResponseInfoW, InternetSetOptionW, InternetCloseHandle, InternetQueryOptionW, InternetOpenW, InternetConnectW, FtpRenameFileW, FtpOpenFileW, InternetReadFile, HttpEndRequestW, HttpSendRequestExW, HttpQueryInfoW, HttpOpenRequestW, InternetWriteFile
winmm.dll
timeGetTime, PlaySoundW
winspool.drv
DocumentPropertiesW, ClosePrinter, OpenPrinterW
wintrust.dll
WTHelperProvDataFromStateData, WTHelperGetProvCertFromChain, WTHelperGetProvSignerFromChain, WinVerifyTrust
ws2_32.dll
WSAAddressToStringW
wtsapi32.dll
WTSQueryUserToken, WTSFreeMemory, WTSEnumerateSessionsW

cmdagent.exe

COMODO Internet Security by Comodo Security Solutions (Signed)

Remove cmdagent.exe
Version:   6, 1, 276535, 2808
MD5:   c7c3794c92578a5c2f7555ac75864eb2
SHA1:   8f0bde20548ae2526cc8a230d4136dfcd81281fb
SHA256:   58cd4f4d35ff77ca9e2ead77ba2e20aac6abb18fffeab52675489ddd85839af9

What is cmdagent.exe?

Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Windows PC. It offers antimalware (antivirus/antispyware) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System called Defense+. GeekBuddy is a support system whereby a Comodo expert makes a remote connection to the user's computer and resolves a wide variety of technical issues.

About cmdagent.exe (from Comodo Security Solutions)

Comodo Internet Security a, multi-layered security application that keeps hackers out and personal information in. Built from the ground upwards with your security in mind, Internet Security offers 36

DetailsDetails

File name:cmdagent.exe
Publisher:COMODO
Product name:COMODO Internet Security
Typical file path:C:\Program Files\comodo\comodo internet security\cmdagent.exe
File version:6, 1, 276535, 2808
Size:5.52 MB (5,784,472 bytes)
Build date:4/24/2013 6:31 PM
Certificate
Issued to:Comodo Security Solutions
Authority (CA):VeriSign
Expiration date:Sunday, March 3, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
COMODO
7% remove
Comodo's free Firewall is your first layer of defense against viruses, worms, Trojans, hackers and all Internet threats. Comodo's Firewall uses Default Deny Protection to prevent threats from occurring, rather than just detecting them when it's already too late. Whenever an unknown piece of software is introduced to your system, Comodo Firewall cross-references it with a white-list of over 15 million trusted files and applications. If t...
COMODO
27% remove
Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Microsoft Windows. It offers anti-malware (antivirus) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System (HIPS) called Defense+. Comodo Internet Security (CIS) is available in four editions: Comodo Internet Security (the standard edition), Comodo Internet Security Plus, Comodo Internet Security Pro ...
COMODO
22% remove
Comodo Internet Security is the free, multi-layered, security application that offers complete protection from viruses, Trojans, worms, buffer overflows, zero-day attacks, spyware and hackers. Built from the ground upwards with your security in mind, Comodo Internet Security combines powerful Antivirus protection, an enterprise class packet filtering firewall, advanced host intrusion prevention, application control and anti-spyware in o...
COMODO
7% remove
Comodo Antivirus is the free way to rid your computer of viruses, malware, Trojans, worms, hackers, and other Internet threats. Scan any drive or file. Get in-depth reports on viral activity. Detect suspicious files that behave like viruses do. Even scan compressed .zip files, where viruses often hide. The latest version sees a major leap forward in security and usability with the addition of cloud based virus-scanning and behavior anal...
COMODO
9% remove
Comodo Internet Security Complete 2013 guarantees protection against viruses and malware by focusing on prevention not simply detection. Our patent pending prevention based technology creates an impenetrable shield that identifies safe, unsafe and questionable files. Comodo Internet Security Complete 2013 offers real-time protection against Viruses, Trojans, Adware, Spyware and other Malware threats. Other Antivirus products depend on s...
COMODO
37% remove
Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Microsoft Windows. It offers anti-malware (antivirus) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System (HIPS) called Defense+. Comodo Internet Security (CIS) is available in four editions: Comodo Internet Security (the standard edition), Comodo Internet Security Plus, Comodo Internet Security Pro ...

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'cmdAgent' (COMODO Internet Security Helper Service)
  • cmdAgent
Network connections
  • [TCP] downloads.comodo.com (178.255.82.1:80)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00018911%
    0.028634%
    Kernel CPU:0.00009137%
    0.013761%
    User CPU:0.00009774%
    0.014873%
    Kernel CPU time:29,292,927 ms/min
    100,923,805ms/min
    CPU cycles:3,453,432/sec
    17,470,203/sec
    Context switches:6/sec
    284/sec
    Memory
    Private memory:20.1 MB
    21.59 MB
    Private (maximum):24.24 MB
    Private (minimum):934.67 KB
    Non-paged memory:20.1 MB
    21.59 MB
    Virtual memory:193.42 MB
    140.96 MB
    Virtual memory (peak):257.99 MB
    169.69 MB
    Working set:5.24 MB
    18.61 MB
    Working set (peak):39.92 MB
    37.95 MB
    Page faults:1,946,765/min
    2,039/min
    I/O
    I/O read transfer:840.69 KB/sec
    1.02 MB/min
    I/O read operations:398/sec
    343/min
    I/O write transfer:20.13 KB/sec
    274.99 KB/min
    I/O write operations:10/sec
    227/min
    I/O other transfer:175.16 KB/sec
    448.09 KB/min
    I/O other operations:657/sec
    1,671/min
    Resource allocations
    Threads:65
    12
    Handles:678
    600

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:"C:\Program Files\comodo\comodo internet security\cmdagent.exe"
    Owner:User
    Windows Service
    Service name:cmdAgent
    Display name:COMODO Internet Security Helper Service
    Description:“COMODO Internet Security Helper Service”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    ntdll.dll
    Total CPU:0.00757033%
    0.272967%
    Kernel CPU:0.00252344%
    0.107585%
    User CPU:0.00504689%
    0.165382%
    CPU cycles:578,255/sec
    5,741,424/sec
    Memory:1.75 MB
    1.16 MB
    cmdagent.exe (main module)
    Total CPU:0.00304673%
    Kernel CPU:0.00187114%
    User CPU:0.00117560%
    CPU cycles:177,831/sec
    Memory:5.71 MB
    cmdtrust.dll (COMODO Internet Security by COMODO)
    Total CPU:0.00068743%
    Kernel CPU:0.00009253%
    User CPU:0.00059490%
    CPU cycles:18,763/sec
    Memory:3.22 MB
    cmdboost.dll (COMODO Internet Security by COMODO)
    Total CPU:0.00004758%
    Kernel CPU:0.00004758%
    User CPU:0.00000000%
    CPU cycles:1,384/sec
    Memory:3.18 MB
    cmdavcen.dll (COMODO Internet Security by COMODO)
    Total CPU:0.00001575%
    Kernel CPU:0.00000000%
    User CPU:0.00001575%
    CPU cycles:2/sec
    Memory:3.2 MB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 37.50%
    Windows 7 Professional 17.19%
    Windows 7 Ultimate 15.63%
    Windows 8 9.38%
    Windows Vista Home Premium 6.25%
    Windows 8.1 Pro 3.13%
    Windows 8 Pro 3.13%
    Windows 8 Single Language 1.56%
    Windows 8.1 1.56%
    Microsoft Windows XP 1.56%
    Windows Vista Business 1.56%
    Windows 7 Ultimate N 1.56%

    Distribution by countryDistribution by country

    United States installs about 37.50% of COMODO Internet Security.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 20.69%
    Toshiba 13.79%
    Acer 10.34%
    ASUS 10.34%
    Lenovo 10.34%
    Sony 10.34%
    Medion 6.90%
    GIGABYTE 6.90%
    Hewlett-Packard 5.17%
    Samsung 5.17%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE