Fake Italian uTorrent Website and Malicious Application

July 28, 2008

Hi,

Just yesterday I’ve searched the newest uTorrent client, and the first record appeared in google
by searching “uTorrent” is

This is a Fake uTorrent Website, cause the real one is:

As you can see the page looks pretty well engineered apart the repetitions of “Download Here” in the same page.

Let’s see the application..

MALWARE MALWAREMALWARE MALWAREMALWARE MALWAREMALWARE MALWAREMALWARE

MALWARE MALWAREMALWARE MALWAREMALWARE MALWAREMALWARE MALWAREMALWARE

Really suspicious

install_utorrent1.8rc6.upx.exe.exe

First of all because uTorrent is a Standalone Executable and second for the strange final name
upx.exe.exe

By Virus scan with Jotti service we can see that this application is

Kaspersky: Found Backdoor.Win32.Small.exw

See you to the next post.. 🙂