GoogleToolbarNotifier traffic blocked

Comodo firewall blocked some traffic related to GoogleToolbarNotifier (some are reported by “Application Monitor” and some by “Application Behavior Analysis”). However, GoogleToolbarNotifier.exe is listed in the firewall’s Application List as TCP/UDP out authorized.
Any ideas?

Here is a sample log:

Date/Time :2007-02-13 03:39:23
Severity :High
Reporter :Application Monitor
Description: Application Access Denied (GoogleToolbarNotifier.exe:209.85.135.103: :http(80))
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: TCP Out
Destination: 209.85.135.103::http(80)

Date/Time :2007-02-13 03:39:06
Severity :High
Reporter :Application Monitor
Description: Application Access Denied (GoogleToolbarNotifier.exe:62.219.186.7: :dns(53))
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: UDP Out
Destination: 62.219.186.7::dns(53)

Date/Time :2007-02-13 03:38:48
Severity :High
Reporter :Application Monitor
Description: Application Access Denied (GoogleToolbarNotifier.exe:62.219.186.7: :dns(53))
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: UDP Out
Destination: 62.219.186.7::dns(53)

Date/Time :2007-02-13 03:38:32
Severity :High
Reporter :Application Monitor
Description: Application Access Denied (GoogleToolbarNotifier.exe:62.219.186.7: :dns(53))
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: UDP Out
Destination: 62.219.186.7::dns(53)

Date/Time :2007-02-13 03:35:21
Severity :High
Reporter :Application Behavior Analysis
Description: Suspicious Behaviour (GoogleToolbarNotifier.exe)
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: TCP Out
Destination: 209.85.135.103::http(80)
Details: C:\Program Files\Internet Explorer\iexplore.exe has tried to use C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe through OLE Automation, which can be used to hijack other applications.

Date/Time :2007-02-13 03:35:04
Severity :High
Reporter :Application Behavior Analysis
Description: Suspicious Behaviour (GoogleToolbarNotifier.exe)
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: UDP Out
Destination: 62.219.186.7::dns(53)
Details: C:\Program Files\Internet Explorer\iexplore.exe has tried to use C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe through OLE Automation, which can be used to hijack other applications.

Date/Time :2007-02-13 03:34:47
Severity :High
Reporter :Application Behavior Analysis
Description: Suspicious Behaviour (GoogleToolbarNotifier.exe)
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: UDP Out
Destination: 62.219.186.7::dns(53)
Details: C:\Program Files\Internet Explorer\iexplore.exe has tried to use C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe through OLE Automation, which can be used to hijack other applications.

Date/Time :2007-02-13 03:34:30
Severity :High
Reporter :Application Behavior Analysis
Description: Suspicious Behaviour (GoogleToolbarNotifier.exe)
Application: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
Parent: C:\WINDOWS\explorer.exe
Protocol: UDP Out
Destination: 62.219.186.7::dns(53)
Details: C:\Program Files\Internet Explorer\iexplore.exe has tried to use C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe through OLE Automation, which can be used to hijack other applications.

I am getting the same tonite with Mozilla Thunderbird ??? ??? ??? WTHeck is going on ??
ditto with Skype …

Skype and Thunderbird have both been authorized and a rule exists for both!
CPF needs to be more consistent here.
For instance, Thunderbird dully authorized requesting DNS seems perfectly normal so why is it blocked for “suspicious behaviour”

Any ideas here or do we wait for v3.0?? :wink: