Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

7, 0, 317799, 4142 4.69%
6, 3, 297838, 2953 1.56%
6, 3, 297838, 2953 4.69%
6, 3, 294583, 2937 1.56%
6, 2, 285401, 2860 4.69%
6, 2, 285401, 2860 4.69%
6, 2, 282872, 2847 7.81%
6, 2, 282872, 2847 1.56%
6, 1, 276535, 2808 7.81%
6, 0, 264710, 2708 4.69%
5, 12, 256249, 2599 20.31%
5, 12, 256249, 2599 31.25%
5, 10, 228257, 2253 4.69%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetAce, GetAclInformation, GetKernelObjectSecurity, RegQueryInfoKeyW, RegDeleteKeyA, RegDeleteValueA, RegQueryInfoKeyA, RegSetValueExA, RegQueryValueExA, RegQueryValueA, RegEnumValueA, RegEnumKeyExA, RegOpenKeyExA, GetUserNameW, RegCreateKeyExW, RegEnumKeyExW, RegDeleteKeyW, GetLengthSid, CopySid, LookupPrivilegeValueW, EqualSid, StartServiceW, QueryServiceConfigW, ChangeServiceConfigW, RegFlushKey, OpenThreadToken, LogonUserW, SetThreadToken, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, SetServiceStatus, RevertToSelf, ImpersonateLoggedOnUser, DuplicateTokenEx, OpenProcessToken, CloseServiceHandle, QueryServiceStatus, OpenServiceW, OpenSCManagerW, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, RegDeleteValueW, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, AddAce, ReportEventW, CloseEventLog, OpenEventLogW, RegEnumKeyW, RegEnumValueW, ConvertSidToStringSidW, LookupAccountNameW, AllocateAndInitializeSid, GetSidLengthRequired, GetSidSubAuthority, IsValidSid, SetNamedSecurityInfoW, GetNamedSecurityInfoW, AddAccessAllowedAceEx, InitializeAcl, InitializeSid, AdjustTokenPrivileges, CryptGetHashParam, CryptCreateHash, CryptHashData, CryptGenRandom, CryptAcquireContextW, CryptReleaseContext, CreateServiceW, DeregisterEventSource, RegisterEventSourceW, DeleteService, ControlService, ConvertStringSidToSidW, GetTokenInformation, InitiateSystemShutdownExW, CryptDestroyHash, FreeSid, SetEntriesInAclW, RegOpenKeyW, LookupAccountSidW, GetSidSubAuthorityCount, RegConnectRegistryW, RegLoadKeyW, RegSaveKeyExW
comctl32.dll
ImageList_GetIconSize
comdlg32.dll
GetFileTitleW
crypt32.dll
CertGetNameStringW, CryptUnprotectData, CryptProtectData, CertFreeCertificateContext, CryptVerifyMessageSignature
dbghelp.dll
MiniDumpWriteDump
fltlib.dll
FilterGetMessage, FilterSendMessage, FilterReplyMessage, FilterConnectCommunicationPort
gdi32.dll
GetDeviceCaps, GetStockObject, CreateBitmap, DeleteDC, ScaleWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, PtVisible, DeleteObject, GetClipBox, SetMapMode, SetTextColor, SetBkColor, RestoreDC, SaveDC, SetWindowExtEx, CreatePolygonRgn, GetTextColor, CreateEllipticRgn, Polyline, GetBkColor, Polygon, SetDIBColorTable, SetPixel, Rectangle, OffsetRgn, GetRgnBox, EnumFontFamiliesExW, LPtoDP, GetWindowOrgEx, GetViewportOrgEx, PtInRegion, FillRgn, FrameRgn, GetBoundsRect, ExtFloodFill, SetPaletteEntries, GetTextExtentPoint32W, GetTextCharsetInfo, EnumFontFamiliesW, GetTextMetricsW, CreateCompatibleBitmap, CreateDIBitmap, DPtoLP, PatBlt, CreateRoundRectRgn, SetRectRgn, CreateRectRgnIndirect, CreateFontIndirectW, CreateHatchBrush, CreateSolidBrush, CreatePen, SelectPalette, CreatePatternBrush, ExtSelectClipRgn, OffsetWindowOrgEx, CreateDIBSection, CreateCompatibleDC, BitBlt, MaskBlt, PlgBlt, StretchBlt, CreateDCW, CombineRgn, SetWindowOrgEx, GetPixel, GetWindowExtEx, GetViewportExtEx, GetObjectW, CreateRectRgn, SelectClipRgn, GetSystemPaletteEntries, RealizePalette, GetNearestPaletteIndex, GetPaletteEntries, GetObjectType, CreatePalette, SetLayout, GetLayout, SetTextAlign, MoveToEx, LineTo, IntersectClipRect, ExcludeClipRect, SetROP2, SetPolyFillMode, SetBkMode, CopyMetaFileW, Ellipse, GetTextFaceW, SetPixelV
gdiplus.dll
GdipDrawImageI, GdipGetImageGraphicsContext, GdipBitmapUnlockBits, GdipBitmapLockBits, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStream, GdipGetImagePalette, GdipGetImagePaletteSize, GdipGetImagePixelFormat, GdipGetImageHeight, GdipFree, GdipAlloc, GdipDeleteGraphics, GdipDisposeImage, GdipGetImageWidth, GdiplusStartup, GdipCreateBitmapFromHBITMAP, GdipCreateFromHDC, GdiplusShutdown, GdipSetInterpolationMode, GdipDrawImageRectI, GdipCloneImage
imagehlp.dll
ImageGetCertificateHeader, ImageGetCertificateData
imm32.dll
ImmGetOpenStatus, ImmGetContext, ImmReleaseContext
iphlpapi.dll
GetAdapterIndex, GetAdaptersInfo, GetAdaptersAddresses, NotifyAddrChange, GetIfEntry
kernel32.dll
DllMain
mpr.dll
WNetGetUniversalNameW
msimg32.dll
TransparentBlt, AlphaBlend
netapi32.dll
NetApiBufferFree, NetShareEnum
ntdll.dll
ZwAcceptConnectPort, ZwReplyWaitReceivePortEx, ZwCreatePort, NtQueryObject, RtlCopyUnicodeString, NtQuerySystemInformation, NtSuspendProcess, NtResumeProcess, RtlCompareMemory, RtlUnwind, ZwCompleteConnectPort
ole32.dll
StringFromGUID2, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateGuid, CoUninitialize, CoInitializeSecurity, CoInitialize, CoInitializeEx, CoRegisterClassObject, CoGetCurrentLogicalThreadId, CLSIDFromString, CoCreateInstance, StringFromCLSID, CoSetProxyBlanket, CoTaskMemFree, CLSIDFromProgID, ReleaseStgMedium, OleDuplicateData, CreateStreamOnHGlobal, OleCreateMenuDescriptor, OleDestroyMenuDescriptor, OleTranslateAccelerator, IsAccelerator, OleLockRunning, DoDragDrop, OleGetClipboard, RegisterDragDrop, CoLockObjectExternal, RevokeDragDrop, CoImpersonateClient, CoRevertToSelf, CoResumeClassObjects, CoAddRefServerProcess, CoReleaseServerProcess, CoRevokeClassObject
oleacc.dll
LresultFromObject, CreateStdAccessibleObject, AccessibleObjectFromWindow
psapi.dll
EnumProcesses, EnumProcessModules, GetModuleFileNameExW, GetProcessMemoryInfo, GetModuleInformation, GetProcessImageFileNameW
rasapi32.dll
RasSetEntryPropertiesW, RasGetEntryPropertiesW
shell32.dll
SHCreateDirectoryExW, SHGetFolderPathW, SHGetFileInfoW, SHBrowseForFolderW, ShellExecuteW, SHGetPathFromIDListW, SHGetDesktopFolder, SHGetSpecialFolderLocation, DragFinish, SHAppBarMessage, CommandLineToArgvW, SHFileOperationW, DragQueryFileW
shlwapi.dll
PathFileExistsW, SHDeleteKeyW, PathStripPathW, PathRemoveBackslashW, PathAppendW, PathRemoveFileSpecW, PathRemoveExtensionW, PathFindFileNameW, PathAddBackslashW, PathUnquoteSpacesW, PathStripToRootW, PathIsUNCW, PathIsFileSpecW, PathIsDirectoryW, PathFindExtensionW, PathIsNetworkPathW, PathQuoteSpacesW
user32.dll
SetWindowLongW, SetWindowPos, CopyRect, GetWindowPlacement, IsIconic, SystemParametersInfoA, GetMenu, CallWindowProcW, DefWindowProcW, AdjustWindowRectEx, RegisterClassW, GetClassInfoW, GetClassInfoExW, CreateWindowExW, GetClientRect, SetForegroundWindow, SetMenu, MapWindowPoints, GetMessagePos, GetMessageTime, DestroyWindow, GetTopWindow, GetForegroundWindow, RemovePropW, GetPropW, SetPropW, GetClassLongW, GetCapture, WinHelpW, LoadIconW, CheckMenuItem, EnableMenuItem, ModifyMenuW, LoadBitmapW, GetMenuCheckMarkDimensions, SetMenuItemBitmaps, PostQuitMessage, DestroyMenu, DrawTextExW, DrawTextW, TabbedTextOutW, LoadCursorW, GetDC, ReleaseDC, GetSysColor, GetSysColorBrush, UnhookWindowsHookEx, GetWindowThreadProcessId, SendMessageW, GetParent, GetWindowLongW, GetLastActivePopup, IsWindowEnabled, EnableWindow, MessageBoxW, CharUpperW, GetMenuState, GetMenuItemID, GetMenuItemCount, GetSubMenu, GetClassNameW, GetWindowRect, GetSystemMetrics, IsWindow, PostMessageW, RegisterWindowMessageW, wsprintfW, CharNextW, GetDlgItem, GetFocus, GetWindow, GetDlgCtrlID, PtInRect, SetWindowTextW, SetWindowsHookExW, CallNextHookEx, DispatchMessageW, GetKeyState, PeekMessageW, ValidateRect, GetWindowTextW, ClientToScreen, GrayStringW, DllMain
userenv.dll
UnloadUserProfile
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wininet.dll
HttpSendRequestW, InternetGetLastResponseInfoW, InternetSetOptionW, InternetCloseHandle, InternetQueryOptionW, InternetOpenW, InternetConnectW, FtpRenameFileW, FtpOpenFileW, InternetReadFile, HttpEndRequestW, HttpSendRequestExW, HttpQueryInfoW, HttpOpenRequestW, InternetWriteFile
winmm.dll
timeGetTime, PlaySoundW
winspool.drv
DocumentPropertiesW, ClosePrinter, OpenPrinterW
wintrust.dll
WTHelperProvDataFromStateData, WTHelperGetProvCertFromChain, WTHelperGetProvSignerFromChain, WinVerifyTrust
ws2_32.dll
WSAAddressToStringW
wtsapi32.dll
WTSQueryUserToken, WTSFreeMemory, WTSEnumerateSessionsW

cmdagent.exe

COMODO Internet Security by Comodo Security Solutions (Signed)

Remove cmdagent.exe
Version:   6, 0, 264710, 2708
MD5:   5739e651dad5ba8216ad3bb0450c2e3a
SHA1:   229e4b5b8435e0b6a6c9fb83d6f36422de94ca75
SHA256:   9ddfa1b6296f46a204597e0934a5b44d342c791f86fd86997793979375a5ce81

What is cmdagent.exe?

Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Windows PC. It offers antimalware (antivirus/antispyware) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System called Defense+. GeekBuddy is a support system whereby a Comodo expert makes a remote connection to the user's computer and resolves a wide variety of technical issues.

About cmdagent.exe (from Comodo Security Solutions)

Comodo Internet Security a, multi-layered security application that keeps hackers out and personal information in. Built from the ground upwards with your security in mind, Internet Security offers 36

DetailsDetails

File name:cmdagent.exe
Publisher:COMODO
Product name:COMODO Internet Security
Typical file path:C:\Program Files\comodo\comodo internet security\cmdagent.exe
File version:6, 0, 264710, 2708
Size:3.55 MB (3,724,472 bytes)
Certificate
Issued to:Comodo Security Solutions
Authority (CA):VeriSign
Expiration date:Sunday, March 3, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
COMODO
27% remove
Comodo Internet Security (CIS), developed by Comodo Group, is an Internet security suite available for Microsoft Windows. It offers anti-malware (antivirus) protection, a personal firewall, a sandbox and a Host-based Intrusion Prevention System (HIPS) called Defense+. Comodo Internet Security (CIS) is available in four editions: Comodo Internet Security (the standard edition), Comodo Internet Security Plus, Comodo Internet Security Pro ...

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'cmdAgent' (COMODO Internet Security Helper Service)
  • cmdAgent
Network connections
  • [TCP] downloads.comodo.com (178.255.82.1:80)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00016613%
    0.028634%
    Kernel CPU:0.00012282%
    0.013761%
    User CPU:0.00004331%
    0.014873%
    Kernel CPU time:17,815 ms/min
    100,923,805ms/min
    CPU cycles:856,500/sec
    17,470,203/sec
    Context switches:37/sec
    284/sec
    Memory
    Private memory:20.9 MB
    21.59 MB
    Private (maximum):18.99 MB
    Private (minimum):1.06 MB
    Non-paged memory:20.9 MB
    21.59 MB
    Virtual memory:193.34 MB
    140.96 MB
    Virtual memory (peak):245.07 MB
    169.69 MB
    Working set:6.37 MB
    18.61 MB
    Working set (peak):34.89 MB
    37.95 MB
    Page faults:1,088,342/min
    2,039/min
    I/O
    I/O read transfer:58.87 KB/sec
    1.02 MB/min
    I/O read operations:19/sec
    343/min
    I/O write transfer:4.74 KB/sec
    274.99 KB/min
    I/O write operations:2/sec
    227/min
    I/O other transfer:84.91 KB/sec
    448.09 KB/min
    I/O other operations:236/sec
    1,671/min
    Resource allocations
    Threads:70
    12
    Handles:668
    600

    BehaviorsProcess properties

    Integrety level:Undefined
    Platform:64-bit
    Command line:"C:\Program Files\comodo\comodo internet security\cmdagent.exe"
    Owner:SYSTEM
    Windows Service
    Service name:cmdAgent
    Display name:COMODO Internet Security Helper Service
    Description:“COMODO Internet Security Helper Service”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    cmdboost.dll
    Total CPU:0.00061587%
    0.272967%
    Kernel CPU:0.00017397%
    0.107585%
    User CPU:0.00044190%
    0.165382%
    CPU cycles:12,508/sec
    5,741,424/sec
    Memory:1.33 MB
    1.16 MB
    cmdagent.exe (main module)
    Total CPU:0.00055040%
    Kernel CPU:0.00027260%
    User CPU:0.00027780%
    CPU cycles:50,923/sec
    Memory:3.73 MB
    cmdtrust.dll
    Total CPU:0.00034131%
    Kernel CPU:0.00001699%
    User CPU:0.00032432%
    CPU cycles:4,605/sec
    Memory:1.41 MB
    ntdll.dll
    Total CPU:0.00010287%
    Kernel CPU:0.00002726%
    User CPU:0.00007561%
    CPU cycles:3,564/sec
    Memory:1.74 MB
    cmdcloud.dll
    Total CPU:0.00000741%
    Kernel CPU:0.00000000%
    User CPU:0.00000741%
    CPU cycles:2/sec
    Memory:708 KB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 37.50%
    Windows 7 Professional 17.19%
    Windows 7 Ultimate 15.63%
    Windows 8 9.38%
    Windows Vista Home Premium 6.25%
    Windows 8.1 Pro 3.13%
    Windows 8 Pro 3.13%
    Windows 8 Single Language 1.56%
    Windows 8.1 1.56%
    Microsoft Windows XP 1.56%
    Windows Vista Business 1.56%
    Windows 7 Ultimate N 1.56%

    Distribution by countryDistribution by country

    United States installs about 37.50% of COMODO Internet Security.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 20.69%
    Toshiba 13.79%
    Acer 10.34%
    ASUS 10.34%
    Lenovo 10.34%
    Sony 10.34%
    Medion 6.90%
    GIGABYTE 6.90%
    Hewlett-Packard 5.17%
    Samsung 5.17%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE