When I started my computer this morning at around 6:40am, I connected to internet at 6:50am, around 7:00am my Comodo Firewall showed a window that it was learning a new process for lsass.exe connecting to 65.205.249.108.
lsass.exe is not infected, and it is in proper place C:\Windows\System32.
When I checked the ip address it shows, either MCI Communications...or...thwate.com
I have used Comodo for over 1 year, and have never seen this happen.
Also, the connection was shown for only about 2 minutes. And has not done this since.
Besides Avast!, I use Spybot S&D, along with its teatimer.exe, and Superantispyware Free Edition, and Malwarebytes' Anti-Malware, along with using Spyware Terminator as a manual scanner for secondary choice of scanning.