URL:mal svhost

recently i’ve been having this threat detection stating that my svchost.exe is infected with URL:mal i ran 3 full scans with no result can anyone help me
FRST files attached

No, avast doesn’t say that svchost is infected.
It says that something on your system is trying to connect to a blacklisted domain/IP

The log from MBam is missing.

What is KMS doing on your system ?

I’ve got this today too,

The site its trying to load has a Microsoft account login form (the kind you see for windows 10 apps) when over https or Microsoft account unavailable over http.

I’m not sure but I’m thinking this is a false positive given the IP seems to be owned by Microsoft. (However I’m aware this isn’t the best way to judge).
https://whois.arin.net/rest/net/NET-131-253-61-0-1

I’m currently half-way through a scan with no infections detected.

P.S. I’m on Windows 10 Pro.

131.253.61.84 is also on the blacklist and it appears to be live mail from Microsoft.
avast is notified.

This was a false positive. The detection was out 13:22 - 13:45 CET. Sorry :-[

Thank you HonzaZ :wink: