Two new rules seem to be generating false positives, and indeed I think they are flagging something non malicious in the first place. The signature IDs are 32174 and 32173, which are flagging DNS requests for sr & s2.symcd.com as known malware domains.
Hi I also had this happen multiple times yesterday. So it is after all a false positive? It happened when I went to twitter over and over, and then again when I tried to do software update for java from within Avast itself. It also kept giving the url as http: //s2[dot]symcb[dot]com