Uninstalled CIS, why am I still seeing COMODO ConnectV4 in firewall logs

I know somebody asked this question years ago, but there was no answer. I installed Comodo to try it out and then uninstalled. I even used the little remover application to try to get rid of it. I never installed GeekBuddy.

Still, all of my outgoing firewall logs say Comodo - This is what was posted before, but mine look the same. How do I get rid of COMODO?

2016:08:02|11:43:17|Allowed|1|IPv4 TCP 216.58.194.110:443(51379)|Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files (x86)\slimjet\slimjet.exe
2016:08:02|11:43:22|Allowed|1|IPv4 TCP 74.125.21.19:443(51380)|Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files (x86)\slimjet\slimjet.exe
2016:08:02|11:43:22|Allowed|1|IPv4 UDP 74.125.21.19:443(51929)|Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files (x86)\slimjet\slimjet.exe
2016:08:02|11:43:26|Allowed|1|IPv4 UDP 64.233.176.132:443(60896)|Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files (x86)\slimjet\slimjet.exe
2016:08:02|11:43:26|Allowed|1|IPv4 TCP 64.233.176.132:443(51381)|Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files (x86)\slimjet\slimjet.exe
2016:08:02|11:43:26|Allowed|1|IPv4 TCP 209.85.232.132:443(51382)|Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files (x86)\slimjet\slimjet.exe

did you uninstall before 2016/8/2 ? cause your logs belongs to that date and you’re talking about still

:P0l

As I said, that was what the other person posted back in 2016. My logs look the same except today’s date and I was using Firefox instead of SlimJet.
There was no answer to the post then and I cannot find an answer now.
I did use the ciscleanuptool_x64.exe and reboot, but this is still happening. I ran the clean up tool a second time and it said there is no installation found. I searched through my registry and deleted everything “COMODO” and rebooted, and this is still happening.

2021:07:08|16:46:44|Allowed|1|IPv4 TCP push.services.mozilla.com/34.214.1.68:443(3199)|Firefox|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files\mozilla firefox\firefox.exe
2021:07:08|16:46:44|Allowed|1|IPv4 TCP firefox.settings.services.mozilla.com/99.84.173.119:443(3200)|Firefox|WindowsFirewall: COMODO ConnectV4 Outgoing|C:\program files\mozilla firefox\firefox.exe

And here are the logs with SlimJet.

2021:07:09|21:25:13|Allowed|1|IPv4 TCP www.slimjetbrowser.com/172.67.173.50:80(2202)|FlashPeak Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|E:\slimjet\slimjet.exe
2021:07:09|21:25:14|Allowed|1|IPv4 TCP www.slimjetbrowser.com/172.67.173.50:80(2203)|FlashPeak Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|E:\slimjet\slimjet.exe
2021:07:09|21:25:14|Allowed|1|IPv4 TCP www.slimjetbrowser.com/172.67.173.50:80(2204)|FlashPeak Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|E:\slimjet\slimjet.exe
2021:07:09|21:25:15|Allowed|5|IPv4 TCP www.slimjetbrowser.com/172.67.173.50:80(2205)|FlashPeak Slimjet|WindowsFirewall: COMODO ConnectV4 Outgoing|E:\slimjet\slimjet.exe

:P0l

then search for comodo/slimjet directories and delete them
maybe temp folder

https://github.com/henrypp/simplewall/issues/545 read through skycommand’s post

I did the full search on my C drive including hidden folders and the only thing it found was the registry backup I did before deleting it out so there was nothing there.

Skycommand had it right on, though. I had to use the WKE tool. Half the entries in the list were Comodo. Once I got rid of those, it was finally gone.

There should be a warning attached to this software that once you install it, it will not go away. LOL.

WKE = virus/malware?
WKE VT score = 33/64!

all kind of software has these stuff

:P0l

:-TD

if you use it’s not a malware

but if it’s used by malware it’s becomes malware

:P0l