uTorrentControl_v6 Toolbar for IE

uTorrentControl_v6 Toolbar for IE

Known Toolbar

by Conduit Ltd.

What is uTorrentControl_v6 Toolbar for IE?

uTorrentControl_v6 Toolbar for IE is software application developed by Conduit Ltd.. It is most commonly found on computers running Windows 7 with nearly 56.94% of installations running this operating system. uTorrentControl_v6 Toolbar for IE's installer is typically 1.00 MB in size and installs around 14 files. The most common release is 6.17.2.8 with 64.35% of all installations currently using this version.

uTorrentControl_v6 Toolbar for IE is most popular in the United States with 12.36% of installations residing in this country.

uTorrentControl_v6 Toolbar for IE adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, uTorrentControl_v6 Toolbar for IE is known to create 2 firewall exceptions to allow inbound and outbound connectivity.

About uTorrentControl_v6 Toolbar for IE?

The uTorrentControl_v6 Toolbar for IE is a web browser extension and Browser Helper Object developed by Conduit Connect for Internet Explorer. It is typically distributed using the Conduit/Perion monetization platform and is often included as an optional offer with 3rd party software installations. During setup, this toolbar may modify the home page and new tab pages to a Conduit controlled search portal using Bing as the primary search engine. Additionally, it may change the default search provider to use Bing as well. According to the license agreement, the installation process of the Conduit Software and/or the Customized Software may include changes to Internet Browser settings, the ability to opt-in to making changes to mobile device settings and/or social network account settings. This includes the default search engine, software updates, and access to information contained on social network accounts, provided users explicitly and separately opt-in to these changes.

Multiple virus scanners have detected malware in uTorrentControl_v6 Toolbar for IE.

uninstall.exe (MD5: b728fa6a309e5d18141947b95b730e95) has been flagged by 2 scanners:
Scanner Software Result
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
tbuTor.dll (MD5: 975993043e355206a1fba5a702044f0c) has been flagged by 17 scanners:
Scanner Software Result
Comodo Security Application.Win32.Conduit.~A
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Malwarebytes PUP.Optional.Conduit
Panda Antivirus Adware/Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
VIPRE Antivirus Conduit (fs)
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.Agent.azm
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.M
Cyren W32/Conduit.TTAU-0102
F-Prot W32/Conduit.A
G Data Win32.Application.Conduit.F
K7 AntiVirus Trojan ( 004b219d1 )
K7GW Trojan ( 004b219d1 )
Kaspersky not-a-virus:WebToolbar.Win32.Agent.azm
Dr.Web Adware.Conduit.16
Bkav FE W32.Clod749.Trojan.f5fa
tbuTo0.dll (MD5: 90a1b31ba3d3c1fd73b6021c1d8c1c8f) has been flagged by 6 scanners:
Scanner Software Result
Comodo Security Application.Win32.Conduit.r
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Panda Antivirus Adware/Conduit
VIPRE Antivirus Conduit (fs)
Dr.Web Adware.Toolbar.202
Malwarebytes PUP.Optional.Conduit.A
prxtbuTor.dll (MD5: d0133250565180c9dc8ee0aecccbfd53) has been flagged by 16 scanners:
Scanner Software Result
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.Agent.azm
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.M
Cyren W32/Conduit.TTAU-0102
ESET-NOD32 Win32/Toolbar.Conduit.N potentially unwanted
F-Prot W32/Conduit.A
G Data Win32.Application.Conduit.F
K7 AntiVirus Trojan ( 004b219d1 )
K7GW Trojan ( 004b219d1 )
Kaspersky not-a-virus:WebToolbar.Win32.Agent.azm
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Dr.Web Adware.Conduit.16
Bkav FE W32.Clod749.Trojan.f5fa
Comodo Security Application.Win32.Conduit.r
Malwarebytes PUP.Optional.Conduit.A
prxtbuTo0.dll (MD5: 5d3244b4d54e28af5c10015195e6479a) has been flagged by 10 scanners:
Scanner Software Result
Dr.Web Adware.Conduit.16
ESET-NOD32 a variant of Win32/Toolbar.Conduit.X
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Antiy-AVL Virus/Win32.Slugin
Bkav FE W32.Clod749.Trojan.f5fa
K7 AntiVirus Riskware ( 0040f0f51 )
K7GW Riskware ( 0040f0f51 )
Comodo Security Application.Win32.Conduit.r
Malwarebytes PUP.Optional.Conduit.A

Software Behaviors

Firewall:
  • uTorrent.exe is added as a firewall exception for 'C:\Documents and Settings\user\Application Data\uTorrent\uTorrent.exe'.
  • uTorrentControl_v6ToolbarHelper.exe is added as a firewall exception for 'C:\Program Files\eTvOnline.ro\eTvOnline.roToolbarHelper.exe'.
Scheduled tasks:
  • uninstall.exe is scheduled as a task with the class '{C247631C-606C-44F8-9B4E-C25B77177427}' (runs on registration).
  • uTorrent.exe is scheduled as a task with the class '{C3A98A3C-7DB9-46C8-807F-3E2647A34D7F}' (runs on registration).

Startup Entries

Registry entries:
  • uTorrent.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'uTorrent' and executes as C:\users\user\appdata\Roaming\uTorrent\uTorrent.exe /MINIMIZED.
Registry entries (User):
  • uTorrent.exe is loaded once in the current user (HKCU) registry as a startup file name 'Application Restart #4' which loads as C:\users\user\appdata\Roaming\uTorrent\uTorrent.exe.

Software Details

URL:
https://utorrentcontrolv6.ourtoolbar.com
Support:
https://utorrentcontrolv6.ourtoolbar.com/help
Installation path:
C:\ProgramData\conduit\ie\ct3289075
Uninstaller:
C:\ProgramData\Conduit\IE\CT3289075\UninstallerUI.exe -ctid=CT3289075 -toolbarName=uTorrentControl_v6 -toolbarEnv=conduit -type=IE
Size:
1.00 MB
Language:
English

uTorrentControl_v6 Toolbar for IE Executable Details

Primary executable:
tbuTor.dll
Name:
uTorrentControl_v6 Toolbar for IE
Path:
C:\ProgramData\conduit\ie\ct3289075\tbuTor.dll
MD5:
975993043e355206a1fba5a702044f0c
SHA-1:
–
SHA-256:
–
Files installed by uTorrentControl_v6 Toolbar for IE
File Type Filename MD5
EXE
b728fa6a309e5d18141947b95b730e95
EXE
858f3da915253079dbebc950efa427fb
EXE
b23d301e29f53c9c8ebe007f17812170
DLL
tbuTor.dll
Malware
975993043e355206a1fba5a702044f0c
DLL
tbuTo0.dll
Malware
90a1b31ba3d3c1fd73b6021c1d8c1c8f
DLL
d0133250565180c9dc8ee0aecccbfd53
DLL
5d3244b4d54e28af5c10015195e6479a
DLL
e94cd032c188546fd629b194364f19c4
DLL
e94cd032c188546fd629b194364f19c4
DLL
f7057821b040a7d169711ce27c55012a