• Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
MUST READ

Russia-linked APT28 use Signal chats to target Ukraine official with malware

 | 

China-linked APT Salt Typhoon targets Canadian Telecom companies

 | 

U.S. warns of incoming cyber threats following Iran airstrikes

 | 

McLaren Health Care data breach impacted over 743,000 people

 | 

American steel giant Nucor confirms data breach in May attack

 | 

The financial impact of Marks & Spencer and Co-op cyberattacks could reach £440M

 | 

Iran-Linked Threat Actors Cyber Fattah Leak Visitors and Athletes' Data from Saudi Games

 | 

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 50

 | 

Security Affairs newsletter Round 529 by Pierluigi Paganini – INTERNATIONAL EDITION

 | 

Iran confirmed it shut down internet to protect the country against cyberattacks

 | 

Godfather Android trojan uses virtualization to hijack banking and crypto apps

 | 

Cloudflare blocked record-breaking 7.3 Tbps DDoS attack against a hosting provider

 | 

Linux flaws chain allows Root access across major distributions

 | 

A ransomware attack pushed the German napkin firm Fasana into insolvency

 | 

Researchers discovered the largest data breach ever, exposing 16 billion login credentials

 | 

China-linked group Salt Typhoon breached satellite firm Viasat

 | 

Iran experienced a near-total national internet blackout

 | 

Malicious Minecraft mods distributed by the Stargazers DaaS target Minecraft gamers

 | 

Healthcare services company Episource data breach impacts 5.4 Million people

 | 

Watch out, Veeam fixed a new critical bug in Backup & Replication product

 | 
  • Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
  • Home
  • Breaking News
  • Security
  • Beware, μTorrent is installing a Bitcoin miner software

Beware, μTorrent is installing a Bitcoin miner software

Pierluigi Paganini March 07, 2015

Internet users that have recently installed or updated the popular BitTorrent client μTorrent 3.4.2 Build 28913 may have installed a Bitcoin miner.

Internet users that have recently installed or updated the popular BitTorrent client μTorrent 3.4.2 Build 28913 had a nasty surprise, the application, in fact, installed a Bitcoin miner as explained in this advisory.

“Users of the μTorrent file-sharing service are complaining that the latest update of software used for torrent downloading is silently installing a piece of unwanted software called Epic Scale, which is basically a Bitcoin mining software.”

The Epic Scale software is cryptocurrency mining software that reportedly uses the computational resources of the host to mine Bitcoin.

μTorrent  is the most common BitTorrent client with more than 150 Million active users every month, by bundling Epic Scale mining application the μTorrent company can generate substantial gains.

μTorrent epicscale software miner

The problem is that ‘Epic Scale’ software is installed, without the explicit consent of unaware users, with the intent of generating income for BitTorrent company.

“There was no information about this during installation and I did opt out of your other bundled software.” explained the member ‘Groundrunner’ at uTorrent’s complaint forum. At the time I’m writing the administrators suspended the thread.

In the below screenshot is reported the End User License Agreement μTorrent software is displayed to the users. Users can “Accept” or “Decline” the agreement, the origin of the issue is that the Epic Scale is described as a ‘distributed computing platform‘ that perform ‘computation‘.  BitTorrent company is asking users to ‘Join us to help support organisation working to cure AIDS‘ by sharing their computational resources.

μTorrent epicscale software miner agreement

According the expert, the software “is particularly harder to remove from the system,” Epic Scale can’t be romoved by a classic Windows uninstallation procedure. By bundling the miner with μTorrent will dramatically decrease the performance of the machine and a normal user will face serious problems for its removal.

The colleagues at THEHACKERNEWS that accessed the thread confirmed that a senior manager of customer support at μTorrent explaining that they designed the update to ensure partner software downloads ‘don’t occur without approval by the user’.

“Epic Scale is a great partner for us to continue to generate revenue for the company, while contributing funds to good causes,” μTorrent employee wrote. “Feel free to delete this folder. You certainly won’t see any persistent auto-reinstalls of the software, it will be gone from your machine for good.”

In reality, the Epic Scale installation appears to happen selectively, and not on all machines.

“We have reviewed the issue closely and can confirm there is no silent install happening. We are continuing to look at the issue.” said a BitTorrent spokesperson. 

Windows users are suggested to check the presence of the Epic Scale miner by using the Task Manager (Ctrl-Shift-Esc) and looking at the Tab “Processes”.

Alternative cross platform software for Torrent download are Vuze, Deluge and qBittorrent … it’s time to change.

Pierluigi Paganini

(Security Affairs –  Bitcoin mining, μTorrent, Epic Scale )


facebook linkedin twitter

Bitcoin mining Epic Scale Torrent utorrent

you might also like

Pierluigi Paganini June 24, 2025
Russia-linked APT28 use Signal chats to target Ukraine official with malware
Read more
Pierluigi Paganini June 24, 2025
China-linked APT Salt Typhoon targets Canadian Telecom companies
Read more

leave a comment

newsletter

Subscribe to my email list and stay
up-to-date!

    recent articles

    Russia-linked APT28 use Signal chats to target Ukraine official with malware

    APT / June 24, 2025

    China-linked APT Salt Typhoon targets Canadian Telecom companies

    APT / June 24, 2025

    U.S. warns of incoming cyber threats following Iran airstrikes

    Cyber warfare / June 24, 2025

    McLaren Health Care data breach impacted over 743,000 people

    Data Breach / June 23, 2025

    American steel giant Nucor confirms data breach in May attack

    Data Breach / June 23, 2025

    To contact me write an email to:

    Pierluigi Paganini :
    pierluigi.paganini@securityaffairs.co

    LEARN MORE

    QUICK LINKS

    • Home
    • Cyber Crime
    • Cyber warfare
    • APT
    • Data Breach
    • Deep Web
    • Digital ID
    • Hacking
    • Hacktivism
    • Intelligence
    • Internet of Things
    • Laws and regulations
    • Malware
    • Mobile
    • Reports
    • Security
    • Social Networks
    • Terrorism
    • ICS-SCADA
    • POLICIES
    • Contact me

    Copyright@securityaffairs 2024

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities...
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
    Non-necessary
    Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
    SAVE & ACCEPT