start:: CreateRestorePoint: CloseProcesses: RemoveProxy: HKLM-x32\...\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe R2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe S2 AntivirProtectedService; "C:\Program Files (x86)\Avira\AntiVir Desktop\ProtectedService.exe" [X] R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys S0 avdevprot; system32\DRIVERS\avdevprot.sys [X] ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll Task: {0B81FB41-3167-4E05-8B47-DE0ABA4F7EFD} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe Task: {26639069-AA34-43F5-B5BA-FDF240923FB7} - System32\Tasks\COMODO\COMODO Maintenance {947247B5-026A-4437-9371-770782BE839D} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe Task: {40B0E0FE-5A2E-4CDA-995E-E13FE4A0F8E0} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe Task: {6A207624-218F-42B8-8C40-E584BF09DD9E} - System32\Tasks\COMODO\COMODO Telemetry {18AD3DFA-30C0-4B5F-84F7-F1870B1A4921} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe Task: {963C1974-D36E-41FF-9223-ECB066FD990A} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe Task: {BD21FEAD-EA0E-45C1-BEF6-1883943CD44B} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe Task: {FC663BB1-186B-419F-9F7B-9FE8282FEE5B} - System32\Tasks\COMODO\COMODO CMC {06A09C0F-DD9C-4191-A670-71115CD78627} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe EmptyTemp: end::