Win32/Adload/DA

Alright!

The computer is behaving very well. Like I say there weren't any major problems before but it's definitely speedier now.

I have an external hard drive and a couple thumb drives that were plugged in before I realized I had a virus. Is there anything I can do to make sure they don't reinfect me? (besides not using them)

Thanks a lot!
 
Lets check your external drives



Please download Flash_Disinfector.exe by sUBs and save it to your desktop:

  • Double-click Flash_Disinfector.exe to run it.
  • Follow any prompts that may appear.
  • Wait until the program has finished scanning, then please exit the program.
The tool may ask you to insert your flash drive, or other removable drives. Please do so and allow the tool to clean it up as well.


Please restart your computer.
 
I've tried to install it several times but nothing happens. My computer asks me if I allow it to make changes, I say yes and then... nothing. It's not on my program list and I've looked in the Task Manager and it's not running.
 
You can try plugging the drive in and then run the Full Scan with Malwarebytes being sure to check the drive letter for your device
 
Okay, I ran that and it found no threats- log pasted below.

Is my system clean now or is there anything else I should do?




Malwarebytes Anti-Malware 1.65.0.1400
www.malwarebytes.org

Database version: v2012.09.20.05

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Jason :: JASON-PC [administrator]

9/20/2012 9:59:50 AM
mbam-log-2012-09-20 (09-59-50).txt

Scan type: Full scan (E:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 210229
Time elapsed: 18 minute(s), 25 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 
Looks like your good to go, unless you want to search for left over entries for Bittorrent, if so do this

Download and Run SystemLook

Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2
64 Bit Version

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:
    Code:
    :filefind
    BitTorrentControl_v12 Toolbar
    BitTorrent
    
    :folderfind
    BitTorrentControl_v12 Toolbar
    BitTorrent
    
    :Regfind
    BitTorrentControl_v12 Toolbar
    BitTorrent
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt
 
Alright, here's the log.


SystemLook 30.07.11 by jpshortstuff
Log created at 13:36 on 20/09/2012 by Jason
Administrator - Elevation successful

========== filefind ==========

Searching for "BitTorrentControl_v12 Toolbar"
No files found.

Searching for "BitTorrent"
No files found.

========== folderfind ==========

Searching for "BitTorrentControl_v12 Toolbar"
No folders found.

Searching for "BitTorrent"
C:\Users\Jason\AppData\Local\BitTorrent d------ [12:06 29/09/2011]

========== Regfind ==========

Searching for "BitTorrentControl_v12 Toolbar"
No data found.

Searching for "BitTorrent"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2812B9D7-44F1-496F-B504-4AC54C66F43B}]
"DisplayName"="BitTorrentControl_v12 Customized Web Search"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent\OpenWithList]
"a"="BitTorrent.exe"
[HKEY_CURRENT_USER\Software\Classes\.btapp]
@="BitTorrent"
[HKEY_CURRENT_USER\Software\Classes\.btapp]
"Content Type"="application/x-bittorrent-app"
[HKEY_CURRENT_USER\Software\Classes\.btapp\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_CURRENT_USER\Software\Classes\.btapp\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_CURRENT_USER\Software\Classes\.btinstall]
@="BitTorrent"
[HKEY_CURRENT_USER\Software\Classes\.btinstall]
"Content Type"="application/x-bittorrent-appinst"
[HKEY_CURRENT_USER\Software\Classes\.btinstall\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_CURRENT_USER\Software\Classes\.btinstall\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_CURRENT_USER\Software\Classes\.btskin]
@="BitTorrent"
[HKEY_CURRENT_USER\Software\Classes\.btskin]
"Content Type"="application/x-bittorrent-skin"
[HKEY_CURRENT_USER\Software\Classes\.btskin\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_CURRENT_USER\Software\Classes\.btskin\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_CURRENT_USER\Software\Classes\Applications\BitTorrent.exe]
[HKEY_CURRENT_USER\Software\Classes\Applications\BitTorrent.exe\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_CURRENT_USER\Software\Classes\btdna\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" ",0"
[HKEY_CURRENT_USER\Software\Classes\btdna\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "/DNA""
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrent]
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-app]
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-appinst]
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-key]
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-skin]
[HKEY_CURRENT_USER\Software\Classes\MIME\Database\Content Type\application/x-bittorrentsearchdescription+xml]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-bittorrent]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/x-bittorrentsearchdescription+xml]
[HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\AppPaths\client]
"AppPath"="C:\Program Files\BitTorrent\BitTorrent.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\BitTorrent-7_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\BitTorrent-7_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\BitTorrent3_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\BitTorrent3_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\BitTorrent_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\BitTorrent_RASMANCS]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Microsoft\Internet Explorer\SearchScopes\{2812B9D7-44F1-496F-B504-4AC54C66F43B}]
"DisplayName"="BitTorrentControl_v12 Customized Web Search"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent\OpenWithList]
"a"="BitTorrent.exe"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btapp]
@="BitTorrent"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btapp]
"Content Type"="application/x-bittorrent-app"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btapp\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btapp\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btinstall]
@="BitTorrent"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btinstall]
"Content Type"="application/x-bittorrent-appinst"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btinstall\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btinstall\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btskin]
@="BitTorrent"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btskin]
"Content Type"="application/x-bittorrent-skin"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btskin\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\.btskin\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\Applications\BitTorrent.exe]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\Applications\BitTorrent.exe\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\btdna\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" ",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\btdna\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "/DNA""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\MIME\Database\Content Type\application/x-bittorrent]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-app]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-appinst]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-key]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\MIME\Database\Content Type\application/x-bittorrent-skin]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001\Software\Classes\MIME\Database\Content Type\application/x-bittorrentsearchdescription+xml]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btapp]
@="BitTorrent"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btapp]
"Content Type"="application/x-bittorrent-app"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btapp\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btapp\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btinstall]
@="BitTorrent"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btinstall]
"Content Type"="application/x-bittorrent-appinst"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btinstall\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btinstall\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btskin]
@="BitTorrent"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btskin]
"Content Type"="application/x-bittorrent-skin"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btskin\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\.btskin\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\Applications\BitTorrent.exe]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\Applications\BitTorrent.exe\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "%1""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\btdna\DefaultIcon]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" ",0"
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\btdna\shell\open\command]
@=""C:\Program Files\BitTorrent\BitTorrent.exe" "/DNA""
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\MIME\Database\Content Type\application/x-bittorrent]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\MIME\Database\Content Type\application/x-bittorrent-app]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\MIME\Database\Content Type\application/x-bittorrent-appinst]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\MIME\Database\Content Type\application/x-bittorrent-key]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\MIME\Database\Content Type\application/x-bittorrent-skin]
[HKEY_USERS\S-1-5-21-614520664-3713187643-2091120717-1001_Classes\MIME\Database\Content Type\application/x-bittorrentsearchdescription+xml]

-= EOF =-
 
This is totally up to you to try, but back up your registry first

Backup Your Registry with ERUNT:
  • Download erunt.zip to your Desktop from here:
    http://aumha.org/downloads/erunt.zip
  • Right-click erunt.zip, select Extract All... and follow the prompts to extract ERUNT to a new folder on your Desktop
  • Inside the new folder, double-click ERUNT.exe to start the program
  • OK all the prompts to back up your registry to the default location.
Note: to restore your registry, go to the backup folder and start ERDNT.exe



You can delete these
C:\Users\Jason\AppData\Local\BitTorrent
C:\Program Files\BitTorrent





Then go to Start > Run and type in Regedit,

When it opens, follow the paths clicking on each one to open

HKEY_CURRENT_USER ....than Software....and right click on BitTorrent and delete it

Then do the same here
HKEY_LOCAL_MACHINE than SOFTWARE and again right click on BitTorrent and delete it


Reboot your system and let me know how it went
 
Last edited:
For anything that doesn't work, you always have more tricks up your sleeve.

But I downloaded Revo and BitTorrent doesn't appear on the list of programs.

From what I understand were trying to get rid of some stubborn remnants of BitTorrent here? Do they affect the functioning of the computer?

I won't have access to my computer for a couple days, but if there are more steps I'd be happy to take them when I'm back online. It's up to you- I appreciate all your help but I imagine you have a lot of other people to help. Either way I'm eternally grateful. You people are heroes.
 
You can delete those two folders , the reg entries are more clutter than anything but you have Spybot Search and Destroy installed, you can run a scan with the reg cleaner searching for uninstalled programs and when it finds the ones for BitTorrent have it remove them

See you back here in a few days, let me know of any other problems
 
Back
Top