URL:Mal on uTorrent

This appear this morning when I start my computer.


Object:     http://trololololololololololo.com/
Infection :	URL:Mal
Process :	  C:\Program Files\uTorrent\uTorrent.exe

As far as I remember, I didn’t add any suspicious torrent or tracker yesterday.

hi Vincent893,

Appears to be a notification from Avast! re a live torrent connection as far as I can tell, from what you have posted here.

Assuming the possible risks of infection are made higher by the use of torrents, as the basic nature of a torrent is to gather from multiple sources at one time concurrently the data or file requested, one cannot know whether the system is contacting a series of malicious or infected computers or not; that uncertainty does increase the risk of becoming infected.

So, if you think your system is infected, follow the guidelines here: http://forum.avast.com/index.php?topic=53253.0

Programs to run and attach the logs produced: AdwCleaner, Malwarebytes, OTL, and aswMBR.exe

EDIT: You can skip OTL as that has already been attached.

@ Vincent893
Try clearing your utorrent seeding URLs cache, it looks like you have a bad one in there and see if that resolves it. Though my searches for hXXp://trololololololololololo.com doesn’t find anything adverse as to why avast doesn’t like it.

Though I see one which considers it an emerging threat, ‘Suricata /w Emerging Threats Pro’ http://urlquery.net/report.php?id=244768.

There also appears to be other domains located on that server and one other domain in that IP foodcartsportland.com. So there may be other reasons why this is blocked by IP address rather than domain name.

So I would suggest you clear your utorrent seeding cache and monitor your system for any further alerts or suspect activity.

try clearing your utorrent seeding URLs cache

What’s that? I don’t see any ref to it in the Utorrent menus.

(also getting the trololo warning)

I poked around the active torrents. Don’t notice any funny trackers - at least, none that weren’t there a month ago (starting getting the trololo messages a few days ago)

I don’t use utorrent, so I’m not sure of the correct wording for it, that I have to find exactly what it is in utorrent. Try your friend yahoo/google.

Something like this http://uk.search.yahoo.com/search?p=clear+utorrent+seeding+cache&ei=UTF-8&fr=moz35.